Two Factor Authentication
Posted by Tim Benest
I have always been concerned about just using a username / password combination for access to online resources.
Ok, I use a strong password generator, to create stupidly ugly passwords that I them have to commit to memory. This works well, in most cases, but sometimes I need a little help remembering them, which means my password need to be stored in some kind of key chain, more of less safe. The issue then comes when you want access to a financial side, and want just that extra level of protection.
Well in steps good old “two factor authentication”. This used to mean carrying round a separate “authenticator”. Well it seems VeriSign have come to the rescue and launched some authentication software for mobile phones. I have installed the iPhone version from the Apple App Store, and set it up with both PayPal and eBay. Now every time I send a payment from PayPal, I need to load up the application on my Phone and enter the magic number it gives me, after I enter my usual username and password.
This gives me a feeling of comfort, knowing there is that extra level of protection baked in. One hopes that these devices can be opened up to a larger number of organisations. The current list is somewhat small and includes mainly US based financial institutions.
