Security feature of trusting a device for 30 days

Welcome to Another Admin Forum!

Welcome to Another Admin Forum! Join our community of forum creators today. Register for a free account and get tips, resources, and support to build and grow your forum. Let's create better forums together!

Heatman

Senior Member
Joined
Jan 8, 2025
Messages
110
Reaction score
35
I've come across forums where you will always get a prompt to trust the device you're using to access it for 30 days. In accepting to do that, you will be retired to put a 2FA code to activate it. After 30 days, you're going to redo the whole process again.

Do you have this feature enabled in your forum?
 
Yes, but in addition to the standard software since I use XF I also have the passkeys enabled.
I have seen a few sites push that out to either 45 or 60 days.
I am one that pushes it to 45 days. I figure if the user is going to be smart enough to use additional security, I could extend their time of redoing it a few weeks.
 
I don't use 2FA.

I wonder if I should but most of the time, I don't use it.

I always figured if I allowed admin panel access, then I should enable it at least for admins but I've always kept the one admin, the rest moderators ideology.
 
Yes, but in addition to the standard software since I use XF I also have the passkeys enabled.
I have seen a few sites push that out to either 45 or 60 days.
I am one that pushes it to 45 days. I figure if the user is going to be smart enough to use additional security, I could extend their time of redoing it a few weeks.
Personally, I don't like it when it's forced on users. I don't think I've ever read or seen it in any forum's TOS that it will be required for them to do it every month or thereabout.

Don't get me wrong, it's a good thing but I love being the person who chooses to enable it from my profile setting and not being forced out to use it.
 
Back
Top Bottom