# 无需协助即可强制启用多因素认证锁定

**URL:** <https://meta.discourse.org/t/multi-factor-authentication-enforcement-lock-in-without-help/399836>\
**Category:** UX\
**Tags:** 2fa\
**Created:** [2026年四月2日 19:35 UTC](https://meta.discourse.org/t/multi-factor-authentication-enforcement-lock-in-without-help/399836 "2026-04-02T19:35:58Z")\
**Posts on this page:** 1\
**Showing post:** 1

<div class="post-metadata">

**Author:** ![Eviepayne](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/eviepayne/32/352733_2.png) [@Eviepayne](https://meta.discourse.org/u/Eviepayne)\
**Post date:** [2026年四月2日 19:35 UTC](https://meta.discourse.org/t/multi-factor-authentication-enforcement-lock-in-without-help/399836/1 "2026-04-02T19:35:58Z")

</div>

我最近开始在论坛上对所有用户强制启用多因素认证（MFA），有人告诉我，许多用户将无法查看提供 MFA 使用建议的帖子（因为很多用户并不懂技术）。

虽然该文章对匿名用户开放，但如果用户已登录但未注册 MFA，他们将无法访问网站的任何内容。他们会被卡在用户安全偏好设置页面，看到如下提示：

 ![image](https://global.discourse-cdn.com/meta/original/4X/5/9/f/59fdfd8a608bd907377a5aa07f7030673cb4d067.png)

就我个人而言，我认为用户应该能够处理这种情况，但我已经向那些不使用身份验证器应用的用户以及极度注重隐私的用户提供了关于如何“更私密地使用 MFA"的建议。  
请别再说教了，我明白。

如果能让我在强制启用消息中嵌入一些信息来帮助这些用户就好了，例如推荐一款密码管理器或身份验证器应用，或者提醒用户确保使用身份验证器的设备上时间准确。否则，许多自认缺乏相关知识的用户将会体验糟糕，从而比现在更加抵触我。

* * *

另外顺便一提，通行密钥（passkeys）也属于 MFA，这个问题应该已经解决了。

---

_[View the full topic](https://meta.discourse.org/t/multi-factor-authentication-enforcement-lock-in-without-help/399836)._
