Comment by Firehed on 06/05/2019 at 20:54 UTC

5 upvotes, 1 direct replies (showing 1)

View submission: How to keep your Reddit account safe

View parent comment

Worth noting that other implementations do share across devices, intentionally trading some security for convenience.

I personally find this a fair trade, but do understand the implications. I’d much prefer that 2FA (specifically TOTP) supporting sites allowed you to register multiple token devices, which would greatly reduce the need to do this.

Replies

Comment by electricity_is_life at 06/05/2019 at 22:19 UTC

2 upvotes, 1 direct replies

Yeah one of the things that has made me hesitant to buy a YubiKey is that there's no way to get an identical pair so I could take one with me and leave one at home, for instance. And as you said, in theory a site could let you register several but that's rarely supported.