EmailDiscussions.com  

Go Back   EmailDiscussions.com > Email Service Provider-specific Forums > FastMail Forum
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read
Stay in touch wirelessly

FastMail Forum All posts relating to FastMail.FM should go here: suggestions, comments, requests for help, complaints, technical issues etc.

Reply
 
Thread Tools
Old 18 Jul 2016, 03:41 PM   #1
FredOnline
Master of the @
 
Join Date: Apr 2011
Location: Manchester UK
Posts: 1,927
New features to keep your FastMail account even more secure

https://blog.fastmail.com/2016/07/18...n-more-secure/
FredOnline is offline   Reply With Quote

Old 18 Jul 2016, 06:55 PM   #2
janusz
The "e" in e-mail
 
Join Date: Feb 2006
Location: EU
Posts: 4,455
From the blog:
Quote:
When you set up third party apps to access your FastMail account (such as Outlook or Mail.app on your phone or desktop), in the future you will need to log in to the web first and get a special app password.
I strongly suspect that, when this is implemented, something nasty is going to hit the fan....
janusz is offline   Reply With Quote
Old 18 Jul 2016, 07:32 PM   #3
edu
Member
 
Join Date: Jun 2016
Posts: 98
I hope I will be able to use FreeOTP app with it...
edu is offline   Reply With Quote
Old 18 Jul 2016, 08:42 PM   #4
GeraldR
Essential Contributor
 
Join Date: Apr 2007
Location: Canada
Posts: 224
2FA via SMS to Two different cell phones

Consider someone who is frequently in two countries with a cell phone number for each one (because roaming charges are too high). How do they use 2FA with SMS under the new system?
GeraldR is offline   Reply With Quote
Old 18 Jul 2016, 08:48 PM   #5
janusz
The "e" in e-mail
 
Join Date: Feb 2006
Location: EU
Posts: 4,455
In all cases I know of (not that many, actually), receiving SMS messages is free while roaming.
janusz is offline   Reply With Quote
Old 18 Jul 2016, 09:12 PM   #6
DumbGuy
Senior Member
 
Join Date: Oct 2008
Posts: 157
While I'm quite happy with the current Alternative Logins structure, I'm also looking forward to this new password system revamp. I know the FM folks have been planning and developing this new system for a while now, so great to see it's ready for launch.

@GeraldR: Maybe get a free Google Voice phone#. Incoming SMSs there you can set to forward to various destinations simultaneously.
DumbGuy is offline   Reply With Quote
Old 18 Jul 2016, 09:24 PM   #7
janusz
The "e" in e-mail
 
Join Date: Feb 2006
Location: EU
Posts: 4,455
Google Voice can be forwarded to US numbers only
janusz is offline   Reply With Quote
Old 18 Jul 2016, 09:36 PM   #8
DumbGuy
Senior Member
 
Join Date: Oct 2008
Posts: 157
Quote:
Originally Posted by janusz View Post
Google Voice can be forwarded to US numbers only
Ok, but they also forward to email addresses. Maybe use a 2nd/free email account just to receive those SMSs from Google Voice? Or, maybe somewhere out there is a email-to-SMS gateway service for the relevant country mobile# being used.
DumbGuy is offline   Reply With Quote
Old 18 Jul 2016, 09:55 PM   #9
robn
Master of the @
 
Join Date: May 2012
Location: Melbourne, Australia
Posts: 1,007

Representative of:
Fastmail.fm
Quote:
Originally Posted by GeraldR View Post
Consider someone who is frequently in two countries with a cell phone number for each one (because roaming charges are too high). How do they use 2FA with SMS under the new system?
You can add both numbers. You'll then be offered a choice of number to send to during login.
robn is offline   Reply With Quote
Old 18 Jul 2016, 10:14 PM   #10
fmail_fan
Senior Member
 
Join Date: Feb 2015
Location: USA
Posts: 115
Additional security isn't really a requirement for me. I'm perfectly happy with the current authentication process so I'm hoping that this 2FA change is optional. That's not clear to me based on what I've read so far unless I've missed it.
fmail_fan is offline   Reply With Quote
Old 18 Jul 2016, 10:16 PM   #11
FredOnline
Master of the @
 
Join Date: Apr 2011
Location: Manchester UK
Posts: 1,927
Quote:
Originally Posted by robn View Post
You can add both numbers. You'll then be offered a choice of number to send to during login.
Presumably Fastmail will charge for SENDING the SMS Text?
FredOnline is offline   Reply With Quote
Old 18 Jul 2016, 10:35 PM   #12
robn
Master of the @
 
Join Date: May 2012
Location: Melbourne, Australia
Posts: 1,007

Representative of:
Fastmail.fm
Quote:
Originally Posted by FredOnline View Post
Presumably Fastmail will charge for SENDING the SMS Text?
No. We're wearing the cost on this one. Being locked out of your account because you didn't have any SMS credit would not be cool.
robn is offline   Reply With Quote
Old 18 Jul 2016, 10:40 PM   #13
BritTim
The "e" in e-mail
 
Join Date: May 2003
Location: mostly in Thailand
Posts: 2,550
Change is not always good but, on first reading, these seem like well thought out and excellent enhancements.

Will we able to use U2F to secure access to file storage?
BritTim is offline   Reply With Quote
Old 18 Jul 2016, 10:49 PM   #14
robn
Master of the @
 
Join Date: May 2012
Location: Melbourne, Australia
Posts: 1,007

Representative of:
Fastmail.fm
Quote:
Originally Posted by BritTim View Post
Will we able to use U2F to secure access to file storage?
U2F can be used to secure access to the web interface as a whole, including the files app. It can't be used for WebDAV or FTP because those protocols do not have support for it.
robn is offline   Reply With Quote
Old 18 Jul 2016, 11:14 PM   #15
pjwalsh
Essential Contributor
 
Join Date: Dec 2008
Location: Canada
Posts: 251
U2F and app-specific passwords are great advances in FM login security.

A post comparing U2F with the standard Yubikey OTP:
http://www.emaildiscussions.com/show...7&postcount=24

Chrome supports U2F, Firefox does not.
Sadly, Mozilla has yet to implement U2F support.
Others might list other browsers that support U2F.

Amazon links for U2F capable keys:
Yubikey U2F only 18 USD
Yubikey 4 40 USD
Yubikey NEO 50 USD
pjwalsh is offline   Reply With Quote
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Forum Jump


All times are GMT +9. The time now is 03:32 PM.

 

Copyright EmailDiscussions.com 1998-2013. All Rights Reserved. Privacy Policy