Two-factor authentication
Two-factor authentication
Posted Sep 1, 2011 15:01 UTC (Thu) by Cato (guest, #7643)In reply to: Don't give out ssh access by ebirdie
Parent article: kernel.org compromised
The Fedora project seems to have switched to using this for its project infrastructure, so there is some precedent: http://www.yubico.com/fedora-uses-yubikey-for-strong-two-...
There are many other things that should be done (e.g. intrusion detection to discover injected trojans, ideally on client systems as well) but this is a simple action to take that helps protect against compromised client systems to some degree.
I have no connection with Yubikey, but I have just ordered a couple for use with the excellent LastPass, so I don't feel so paranoid when using its passwords on a Windows PC. Though perhaps I should enable it on Linux as well...
