Hacker News new | ask | show | jobs
by brianmartinek 3379 days ago
I really wish domain registers offered a Google Authenticator option for 2FA. All of the ones I have seen that offer 2FA are SMS based.
11 comments

www.nearlyfreespeech.net (mainly a host but you can register domains with them) offers Google Authenticator 2fa and control over what recovery options are allowed, including none, which is something I wish anyone that supports 2fa would offer.
NFS also emails you if someone tries an incorrect password on your account. Kind of a nice feature.
Just another happy customer giving those guys a big thumbs-up!
https://www.name.com lets you use Google Authenticator for 2FA.
https://www.gandi.net/ does as well and has been pretty great in my (somewhat limited) experience.
https://www.dynadot.com offers both Google 2fA and SMS, with a big push toward the Google solution. Dynadot has been a great all-around solution in my experience. Gandi is also excellent.
http://www.namecheap.com offers their own 2fa service, as well.
Yeah, that's the point. Everyone tries to re-invent 2FA or use SMS, both of which are bad for the end user. Even 2FA companies like Duo use some non-standard protocol which only their client can implement.
Of my registrars, Namecheap does not but Gandi.net and Hover.com both offer the standard TOTP option.
SMS is far better than nothing. Your average script kiddie is not going to be able to intercept your SMS messages. If you are specifically targeted by sophisticated attackers, maybe.
My biggest gripe with SMS 2FA is that it is prone to locking me out of my accounts on travel, if I suddenly need to log in to something and my phone number isn't the same abroad.
is it such a pain taking a small burner phone? Alternately, you can install 2FA app in your smartphone. And if you traven that frequently you need to revisit your security choices. There is no security without any efforts from _you_. Google/MS/Apple can only do so much.
They'll just social engineer your carrier into the transfer of your phone number to a different SIM card
Is it only me who is surprised that in the US no one has the notion of buying pre-paid SIM cards - which are unconnected to your SSN or credit card or bank account?
PairNIC (https://pairnic.com) now offer TOTP 2FA (use Google Authenticator or whatever else you want).
name.com offers a choice between Google Authenticator and SMS for 2FA.
If only it were available in Germany. :(
Hover supports 2FA with authenticator apps.
hover.com offers both SMS and TOTP (authenticator).
Amazon does ..
siteground.com