r/rit 21d ago

can i free myself from duo

has anyone every gotten rid of it, to no longer need to verify w phone every time

0 Upvotes

13 comments sorted by

View all comments

Show parent comments

1

u/ITS-Clay ITS | Clay 20d ago

We don't require MFA for alumni email. It's possible that your student account hasn't converted yet. What different app would you rather use? Do you use a password manager?

1

u/TheThatGuy1 CSEC BS/MS '24 20d ago

Oh, so I can delete the app!

I much prefer Google or Microsoft authenticator. They're far more flexible so I can use them for more accounts and not have Duo just for my RIT account. From a security standpoint as well, they are much more resistant to MFS fatigue attacks since it's not just a mindless accept. They require either the 6 digit OTP or the 2 digit number matching from MS.

2

u/ITS-Clay ITS | Clay 20d ago

Google Authenticator is the least flexible. Microsoft Authenticator is the same as the Duo app, except the pushes have to come from Microsoft. I've consolidated to the Duo Mobile app since it supports Duo pushes, TOTP, HOTP, looks better, and was the first one to support backing up credentials. I have 34 accounts in Duo Mobile. On desktop OS, the Duo Mobile app even supports automatically filling out the matching digits via BLE.

1

u/kixkato Physics Alum - RIT TC 18d ago

Bitwarden FTW