Heads up that we’ve bumped the UI up to 0.18.2-rc.1, which should resolve the current exploit that was seen on lemmy.world.

We’ve also logged out all currently logged in users as part of it, so you’ll need to login again.

  • neb@lemmy.ca
    link
    fedilink
    English
    arrow-up
    2
    ·
    3 years ago

    I went looking to re-attempt 2FA setup. After enabling it in the options, the link that for 0.18.0 would trigger an event to add it to AndOTP (instead of just providing the secret) isn’t showing up at all. (If that makes any sense in my current decaffeinated state)

    • Shadow@lemmy.caOPM
      link
      fedilink
      English
      arrow-up
      3
      ·
      edit-2
      3 years ago

      I’ll take a look in a bit but might be a new bug.

      Edit: I can see the link just fine, even without deactivating it first. Can you try clearing your browser cache?

      • neb@lemmy.ca
        link
        fedilink
        English
        arrow-up
        2
        ·
        3 years ago

        Weird, opening in my browser now, it’s there. (And I’ve finally figured out how to make bitwarden handle sha256.) In any case, I’m all good and properly using 2FA.

    • durablenapkin@lemmy.ca
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 years ago

      It’s currently a little awkward, after you enable + save the first time you need to refresh the page in order to see the button which contains the otpauth:// link.

    • n2burns@lemmy.ca
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 years ago

      FYI, andOTP is no longer maintained, so I’d recommend switching to an alternative and there are many options. My transition to Aegis was very smooth.

      • neb@lemmy.ca
        link
        fedilink
        English
        arrow-up
        2
        ·
        3 years ago

        Yeah, it’s not my primary, I just happen to still have it installed.