git/list[1] front-page[2] threads[3] people[4] search[5] about
 

Re: feature request

From
DNDrew Northup <n1xim.email@gmail.com>
Date
Feb 19, 2013, 03:26 UTC
Message-ID
<CAM9Z-n=2vWS0MXx8GWZ0UpkfDQapRcHFhWKhiVvXx5oaz=YQ4w@mail.gmail.com>
In-Reply-To
<20130218204511.GA27308@sigill.intra.peff.net>
On Mon, Feb 18, 2013 at 3:45 PM, Jeff King <peff@peff.net> wrote:
Show 15 quoted lines
> On Mon, Feb 18, 2013 at 02:54:30PM -0500, James Nylen wrote:
>> > Just would like to request a security feature to help secure peoples github
>> > accounts more by supporting 2 factor authentication like the yubikey more
>> > information can be found from this link www.yubico.com/develop/ and googles
>> > 2 factor authentication. Hope it gets implemented as I think it would make a
>> > great feature
>>
>> I like the idea, and I would probably use it if it were available.
>> Jeff, what do you think?
> [1] I don't know if Google's system is based on the Google Authenticator
>     system. But it would be great if there could be an open,
>     standards-based system for doing 2FA+cookie authentication like
>     this. I'd hate to have "the GitHub credential helper" and "the
>     Google credential helper". I'm not well-versed enough in the area to
>     know what's feasible and what the standards are.

I don't know what the specific infrastructure they (Google's engineers) are using is (something written in python if I'm not mistaken), but @$dayjob we've managed to authenticate to Google Apps using SAML 1.1 & SAML2 wrappers "living" in both CAS and Shibboleth. SAML is a standard and is supported (in whole or in part) by a lot of systems and SSOs out there. Given the way that systems like that work I don't see Git authenticating that way any time soon (but I've been surprised before).

-- 
-Drew Northup
--------------------------------------------------------------
"As opposed to vegetable or mineral error?"
-John Pescatore, SANS NewsBites Vol. 12 Num. 59
Previous: Jeff KingNext: Shawn Pearce
Message 4 of 5 in “feature request”
  1. Jay TownsendFeb 18, 2013
  2. James NylenFeb 18, 2013
  3. Jeff KingFeb 18, 2013
  4. Drew NorthupFeb 19, 2013
  5. Shawn PearceFeb 19, 2013

Read the whole thread, see it on lore, or plain text.

$ cat FOOTERMessages come from the public archive at lore.kernel.org/git, fetched every hour. The front page is chosen and written each morning by an AI editor and can be wrong; the threads themselves are the record. About and API. For agents: an MCP server at https://gitlist.dev/mcp, and any thread, story or person page as Markdown by adding .md to its URL (or sending Accept: text/markdown). Details in /llms.txt.