AuthMe / AuthMeReloaded

The best authentication plugin for the Bukkit/Spigot API!
https://www.spigotmc.org/resources/authmereloaded.6269/
GNU General Public License v3.0
628 stars 515 forks source link

Force two-factor authentication with one permission and pw check #2568

Open ColorsASD opened 2 years ago

ColorsASD commented 2 years ago

What feature do you want to see added?

Force two-factor authentication with a permission that I would use on staff members.

Are there any alternatives?

They aren't there yet, I'm smoothly checking my staff to see if they have totp.

Anything else?

Security is always important and I think it’s a good thing to say in order to keep your server secure.

ColorsASD commented 2 years ago

In addition, if we are talking about security, "/authme checkpassword" can also be used, which would check the strength of the password.

The aspects can be lower/uppercase letters, or numbers and special characters and even the length of the password. (This would determine the strength.)

For me, it would be useful because I would respect passwords, but I would still see that the person's password is not 12345.

As a result, you could think further and reach a level when entering the password, thus improving this whole thing. Players can be forced not to use 12345 as a password. Like a smart password watcher.

Who needs to achieve which security level can vary by group or right.