|
Two-factor authentication is good, but doesn't make it impossible for someone to hack into your system. It might make breaking into the system harder, or it might merely make you feel better (which is not without merit). In general, two factor is better than one factor -- no one would dispute that. On the other hand, improperly setting up a two-factor system may just make easier for someone to continue to use a stolen credential. This is the same as the classic single sign-on problem: If someone compromises a credential, they can do more with it. The system may be stronger, yet more brittle.
All factors have problems with them. Here are some overviews:
READ JON CALLAS' COMPLETE RESPONSE HERE.
|