Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
Maybe Apple will switch to this method for two-step-verification instead of pinging all of my devices on a sign in?
I think it will look really similar, maybe even there is an API to ping the keychain and you approve the sing in request from your device without typing the code.
Since i'm mostly on windows PC's now, think i'm going to move away from iPhone & iPad.

this news solidifies it as how the hell are you suppose to get apple 2FA on windows if Sarfari isn't on windows.
Well the note said it will fill automatically but that's applicable to apple devices and apps which support a new api (not sure) but it said also that you will have codes in the keychain so you will be able to check them as you do now with any other app even maybe with the chrome extension. Let me add they should do a keychain app already.
 
  • Like
Reactions: mhnd
I think it will look really similar, maybe even there is an API to ping the keychain and you approve the sing in request from your device without typing the code.

Well the note said it will fill automatically but that's applicable to apple devices and apps which support a new api (not sure) but it said also that you will have codes in the keychain so you will be able to check them as you do now with any other app even maybe with the chrome extension. Let me add they should do a keychain app already.
Its impractical unless they do have a keychain app with WatchOS support.
 
Storing passwords online in the cloud is already a bad idea...
Giving all your 2FA codes and passwords to the hands of one manufacturer is even worse.

Be warned, don't cry later!

That’s not exactly truthful. In fact in many ways, local storage can be risky as well, even when using a local key vault such as Keepass.

Personally I’m in favor of separate 2FA mechanisms in conjunction with Cloud storage.
 
Last edited:
should include a 3rd party selling utility feature that signs out of appleid, wipes, etc

getting tough to buy iOS devices and making sure ready to sell
Doesn’t “Erase All Content and Settings” do that?
 

Attachments

  • 7E45CD83-E82D-4E78-A9D2-395B2206E720.jpeg
    7E45CD83-E82D-4E78-A9D2-395B2206E720.jpeg
    512 KB · Views: 85
Its impractical unless they do have a keychain app with WatchOS support.
I use Ping ID for work and I did remove the WatchOS app because I can approve from the notification, so there is no point for me in having the app in the Watch. Although I use Authy for home and I keep the WatchOS app installed but I barely use it.
 
Storing passwords online in the cloud is already a bad idea...
Giving all your 2FA codes and passwords to the hands of one manufacturer is even worse.

Be warned, don't cry later!
It isn't much better with being stuck with only being able to have codes active in one app. If Authy, OTP Auth, or another 2FA app goes down and you use that app, it makes life very messy. It would be nice to be able to have codes loaded in 2 different apps to help prevent a bad scenario.
 
  • Like
Reactions: nCode and Skoal
this is good - the more automation we can get for 2FA the better.
Once this is cloud-synced (like in 1Password) it somehow defies the idea of the 2nd factor,
but personally I don't care and it makes device changes so much more convenient ...
 
  • Like
Reactions: snek
Storing passwords online in the cloud is already a bad idea...
Giving all your 2FA codes and passwords to the hands of one manufacturer is even worse.

Be warned, don't cry later!
I think you are wrong, I switch to Authy which store in the cloud after losing all my codes in a iPhone restore using google authentication, it was so painful to do it all again that I promise never again. Honestly I think (with no real evidences) iCloud keychain is more secure that Authy.
 
  • Like
Reactions: FindingAvalon
should include a 3rd party selling utility feature that signs out of appleid, wipes, etc

getting tough to buy iOS devices and making sure ready to sell
Settings > General > Reset > Erase All Content & Settings

That's all you need to do. It then asks you to turn off Find My and confirms you want to delete everything and then resets it to factor settings.
 
  • Like
Reactions: Santiago and chabig
Wait so it says "with Google Authenticator," does that mean that the client (in this case iOS 15) will work with Google's service? That's nice.
Any time based one-time-authenticator (OTA) code. There was never anything proprietary about the generation of pins from google authenticator and a number of intercompatible competitors that can scan those QR key codes.
 
jeez what a waste of developertime... just integrate with authy. it's near perfect and works 100% of the time. syncs to windows, linux, android & the web with strong e2e-encryption.

but hey apple had to make their own version yet again. the not-invented-here-syndrome at it's best
 
  • Disagree
Reactions: FindingAvalon
Settings > General > Reset > Erase All Content & Settings

That's all you need to do. It then asks you to turn off Find My and confirms you want to delete everything and then resets it to factor settings.
you would think but no

would be nice to have this be setting. For instance, selling a watch involves unpairing, revoking from devices, etc. However, it also involves going to iCloud.com and removing there in addition from phone. Not intuitive and has impacted me both selling and buying

I would also think a check of devices unlocked or paid off could be done in iOS. You may not agree, but I would find these things helpful
 
  • Like
Reactions: peanuts_of_pathos
I use Ping ID for work and I did remove the WatchOS app because I can approve from the notification, so there is no point for me in having the app in the Watch. Although I use Authy for home and I keep the WatchOS app installed but I barely use it.
Oh anything does pushes is magical. Okta Verify, Duo, Ping ID are great. I actually get super annoyed at Google MFA and Microsoft Authenticator that give you the push but then have to launch the app to "approve". Authy on my watch is used heavily for when I'm signing into apps like my home control that need that 2FA authentication token. Keep watching WebAuthn development hoping it catches on. The biggest question I always ask for that technology is how to easily manage more than one token.
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.