Hacker News new | ask | show | jobs
by dec0dedab0de 2974 days ago
You could do client ssl certs and just skip the password. It would be more work for the user though.
1 comments

That would transfer it from something you know (a password) to something you have (a device with SSL cert installed) which are meant to protect against different problems.