which change every 30 secs
which change every 30 secs
like the best would be email + password + TOTP
4 Replies
Okay but what if you have 50 user all using TOTP? If someone is spamming codes to your login then they only need to get a code.
one TOTP token for every user
like you put an email in the login page and then it asks about TOTP code OR even better would be an email + password and after that TOTP code
I mean it sounds like you just want to use SAML or OAuth for login
maybe, i don't have any experience in it and i don't know really what these 2 methods are and how to set them up
but i know that i use icloud keychain TOPT for everything i can and i would like to use it there too