Advertisement
If you have a new account but are having problems posting or verifying your account, please email us on hello@boards.ie for help. Thanks :)
Hello all! Please ensure that you are posting a new thread or question in the appropriate forum. The Feedback forum is overwhelmed with questions that are having to be moved elsewhere. If you need help to verify your account contact hello@boards.ie

Securing your Linux machine with two factor verification

  • 20-09-2015 2:03pm
    #1
    Closed Accounts Posts: 720 ✭✭✭


    Just read a couple of excellent articles on securing login to your Linux Desktop and to your SSH server using Google Authenticator.

    As I'm sure you're all aware, this means when either sitting down or connecting remotely to log in to your machine, you're asked for a verification code in addition to your password, which makes your machine much safer and also helps you feel a little better about having a short password(!)

    Google Authenticator itself is open source, so the code can be reviewed to make sure there are no flaws or backdoors. However the corresponding app for your cellphone which generates the verification codes for some reason is not.

    For this reason I use FreeOTP Authenticator which works in exactly the same way and is available both for iPhones and Android devices.

    A word of caution if you do this : be sure to write down the scratch codes and put them in a safe place so you can log in if you lose your phone!

    Naturally this is not an absolute defence but it does increase the number of devices an adversary will have to compromise before getting to your data!


Comments

Advertisement