TUM-Dev / gocast

TUMs lecture streaming service.
https://live.rbg.tum.de/
MIT License
183 stars 42 forks source link

F2A Login #1002

Open joschahenningsen opened 1 year ago

joschahenningsen commented 1 year ago

Is your feature request related to a problem? Please describe. Some accounts have high privilege (e.g. creating, editing and deleting lectures). If such accounts are compromised our service is at risk.

Describe the solution you'd like It would be nice to offer time based 2 factor authentication (TOTP) and support for hardware keys for them.

Describe alternatives you've considered Wait for login.tum.de to support these. This will likely take a long time.

max-ae commented 1 year ago

You can also consider Passkeys with WebAuthn 😃