Webauthn support

It is going to be very interesting to see if you can enter your faceid on the phone and login using the web browser on the desktop. We are probably going to need some creative changes to support that.

@martin worth bookmarking this to have a look in say 2 months when iOS 14 is released.

3 Likes

I am not sure we will need to do anything, because we already support multiple security keys (it annoys me very much now that sites like AWS do not support multiple 2FA methods…). Falco’s lovely face is just considered another key :slight_smile:. Nevertheless I will try it out and see whether I need to do anything when iOS 14 comes out, setting a reminder. I am excited for this feature!

3 Likes

I was more thinking that people with iPhones get double plus security, cause the can use the iPhone for free with no Yubikey or anything to perform 2fa for them.

How it could work is that we would “simulate” it using the app. EG:

  • You log in with username / password
  • You would pick your iPhone for 2fa
  • Desktop would pop up, please authorize usage by typing 173405 into you mobile app
  • You would type that on the phone, it would do a face id, then authorize access for the desktop

Something crazy like that, still very much in the brainstorming phase.

3 Likes

Ah I see, like how if you have the Gmail app on your phone you can use the popup it shows as a 2FA device with approval to log into Gmail.

2 Likes

4 posts were split to a new topic: QR Code Login method

14 months later…

Username-less and Password-less logins will be natively supported on iOS devices, making this method accessible to a much wider audience now:

Login by FaceID without having to type anything (nor username or password) would make sessions more secure and less cumbersome.

12 Likes

I just set up my face as a “security key” 2FA method here on Meta, this is so cool and works really well! I would love to work on the passwordless auth for this at some point cc @sam . Crazy that it has been a year since I first worked on this!

9 Likes

I am closing this as done, we completed this so long ago!

6 Likes