this post was submitted on 11 Jul 2023
7 points (100.0% liked)

Ask Lemmy

1 readers
1 users here now

Welcome to AskLemmy

^___^

Ask any questions about anything, and get answers from the community!

founded 1 year ago
MODERATORS
7
2FA for Lemmy (lemmy.fmhy.ml)
submitted 1 year ago* (last edited 1 year ago) by [email protected] to c/[email protected]
 

So I've just been locked out of the first Lemmy account I created at Lemmy.world because sign in won't accept my 2FA token that I have with MS Authenticator. I want 2FA enabled for obvious reasons but hesistent until I know which Auth software definitely works. Couldn't really find a clear answer online so I thought I'd asklemmy! Hopefully an answer may help others too. I did see some info on my searching about there being 2FA issues with Lemmy, something about Auth software needing SHA256 which apparently MS Auth has? TIA!

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 2 points 1 year ago (1 children)

Check if other codes from this app/device work and check if other device would show you a different code. My old laptop now has its time a few minutes off so my TOTPs from KeePassXC don't work anymore.

And, most important thing you didn't mention, did 2FA ever work for this account? Did it suddenly stop working?

[–] [email protected] 2 points 1 year ago (1 children)

Hey, yes I did try other apps and both on my phone and PC. I don't think it ever worked, I'd only been registered for a couple of days, decided to sign out and back in after the lemmy.world attack and couldn't get back in. Nevertheless, lemmy.world admin has helped by removing 2FA for me on the account so I've signed back in but I do want 2FA enabled still, just not sure which app to use for it.

[–] [email protected] 1 points 1 year ago* (last edited 1 year ago)

I use KeePassXC for TOTP on computer and Aegis on Android, but I didn't check if Aegis can change to sha256 like KeePassXC can.

Edited: I just checked and found the option for sha256 in Aegis, so 2FA must work with code generated by this app.