User Tools

Site Tools


services:2fa:timeline

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
services:2fa:timeline [2021/03/16 10:35] – [Timeline two-factor authentication implementation] deulservices:2fa:timeline [2021/03/26 14:10] (current) – [TBD (near future): Mail Client access] deul
Line 1: Line 1:
-======Timeline two-factor authentication implementation======+======Timeline two-factor authentication implementation STRW======
 ^ 2FA ^  Week number  ^^^^^^^^^^ ^ 2FA ^  Week number  ^^^^^^^^^^
 ^Service ^11^12^13^14^15^16^17^18^19^20^ ^Service ^11^12^13^14^15^16^17^18^19^20^
Line 30: Line 30:
  
  
-=====TBD (near future): Mail Client access===== 
-When you run your own mail client program, you are effectively autheticating yourself for each read and write operation to you mailbox folders. This is done through the ''%%imap%%'' and ''%%smtp%%'' protocols. We currently have a test environment setup to debug any problems introduced by 2FA on these protocols. When we are confident that this test server is ready for production, the configuration will be copied to the production mail server. It is at this moment unclear on what timescale this will happen. 
  
-=====TBD (near future): Linux Console Login=====+=====Monday April 19: Linux Console Login=====
 Each time to sit at your desk and want to login on the main screen(s) of your desktop computer, you need to authenticate yourself to the system. This too will be converted to two-factor authentication. We currently have a test setup and will investigate its stability and user friendliness before it will be rolled out to all desktops and VNC login screens. You will be informed well in advance when this change will be implemented system wide.  Each time to sit at your desk and want to login on the main screen(s) of your desktop computer, you need to authenticate yourself to the system. This too will be converted to two-factor authentication. We currently have a test setup and will investigate its stability and user friendliness before it will be rolled out to all desktops and VNC login screens. You will be informed well in advance when this change will be implemented system wide. 
  
 =====TBD (more distant future): VPN services===== =====TBD (more distant future): VPN services=====
 We are evaluating the current VPN setups at the different institutes, STRW, Physics and Institute Lorentz. The currently different implementation can best be interated to one service. Once that is done two-factor authetication will also be introduced here. We are evaluating the current VPN setups at the different institutes, STRW, Physics and Institute Lorentz. The currently different implementation can best be interated to one service. Once that is done two-factor authetication will also be introduced here.
 +
 +
 +
 +=====TBD (near future): Mail Client access=====
 +When you run your own mail client program, you are effectively autheticating yourself for each read and write operation to you mailbox folders. This is done through the ''%%imap%%'' and ''%%smtp%%'' protocols. We currently have a test environment setup to debug any problems introduced by 2FA on these protocols. When we are confident that this test server is ready for production, the configuration will be copied to the production mail server. It is at this moment unclear on what timescale this will happen.
 +
services/2fa/timeline.1615890958.txt.gz · Last modified: by deul