Hacker News new | ask | show | jobs
by sarciszewski 4143 days ago
I'm personally looking forward to something like SQRL.

https://www.grc.com/sqrl/sqrl.htm

1 comments

That's also a nice protocol, but I think it requires too many extra things (mobile phone, net connection, etc). Plus, what if your key gets stolen?
It doesn't require a mobile phone. A client on your desktop can handle the authentication.

There's also a mechanism[1] to change your master key should it become compromised. Looks like a huge drawback is that it requires you to store an offline "Identity Unlock Key" somewhere.

[1] https://www.grc.com/sqrl/idlock.htm