18F / brutus

DEPRECATED - Doing heavy lifting in the land of government hiring.
Other
0 stars 4 forks source link

Add "2FA" secondary password with role for management #37

Closed amoose closed 10 years ago

amoose commented 10 years ago

Pseudo-two factor authentication via a 'master password' with custom role for management.

NoahKunin commented 10 years ago

Ty!

amoose commented 10 years ago

Acceptance:

NoahKunin commented 10 years ago

Looks good.

NoahKunin commented 10 years ago

Circling back on this one.

amoose commented 10 years ago

@NoahKunin can we test this on staging? http://brutus.staging.gsa.io Log in, I will promote your user, and then you can enable 2FA.

NoahKunin commented 10 years ago

Alright, I'm in!

On Tue, May 6, 2014 at 2:38 PM, amoose notifications@github.com wrote:

@NoahKunin https://github.com/NoahKunin can we test this on staging? http://brutus.staging.gsa.io Log in, I will promote your user, and then you can enable 2FA.

— Reply to this email directly or view it on GitHubhttps://github.com/18F/brutus/issues/37#issuecomment-42341641 .

Noah Kunin - Delivery Architect @noahkunin http://twitter.com/noahkunin | @18f https://twitter.com/18F

amoose commented 10 years ago

Promoted! You will see a 2FA link in the menu bar now. Currently, the active flag is set to false. Choose 'edit' to set to Active and set the password.

NoahKunin commented 10 years ago

Saving the new password generated an error.

We're sorry, but something went wrong.

If you are the application owner check the logs for more information.

On Tue, May 6, 2014 at 3:08 PM, amoose notifications@github.com wrote:

Promoted! You will see a 2FA link in the menu bar now. Currently, the active flag is set to false. Choose 'edit' to set to Active and set the password.

— Reply to this email directly or view it on GitHubhttps://github.com/18F/brutus/issues/37#issuecomment-42345277 .

Noah Kunin - Delivery Architect @noahkunin http://twitter.com/noahkunin | @18f https://twitter.com/18F

NoahKunin commented 10 years ago

Working now! What is the complexity requirement?

On Tue, May 6, 2014 at 3:58 PM, Noah Kunin - Q0B noah.kunin@gsa.gov wrote:

Saving the new password generated an error.

We're sorry, but something went wrong.

If you are the application owner check the logs for more information.

On Tue, May 6, 2014 at 3:08 PM, amoose notifications@github.com wrote:

Promoted! You will see a 2FA link in the menu bar now. Currently, the active flag is set to false. Choose 'edit' to set to Active and set the password.

— Reply to this email directly or view it on GitHubhttps://github.com/18F/brutus/issues/37#issuecomment-42345277 .

Noah Kunin - Delivery Architect @noahkunin http://twitter.com/noahkunin | @18f https://twitter.com/18F

Noah Kunin - Delivery Architect @noahkunin http://twitter.com/noahkunin | @18f https://twitter.com/18F

NoahKunin commented 10 years ago

Still curious on the complexity requirement, but just came in via fresh on an incognito window and it works! Closing, thank you!

amoose commented 10 years ago

Currently, the complexity requirement is only minimum 8 characters. Let me know if it needs adjusting.

I pushed up a fix after your last comment, thanks for checking!

NoahKunin commented 10 years ago

That's fine. I'm going to be using a much more complex password than 8 chars. :lock: