generated from makeopensource/repo-template
-
Notifications
You must be signed in to change notification settings - Fork 9
Open
Description
While researching methods to bypass Duo, I discovered this page: https://help.duo.com/s/article/6924?language=en_US
Duo (which also supports typical TOTP/etc codes in addition to push codes) always starts their codes with 30 seconds remaining, taking advantage of the RFC recommendation to accept 1-3 codes ahead and behind to account for clock drift and network delay.
Having a similar feature would be a good QoL feature: if a code is near expiration, the user has to wait for the time to expire and a new code to be provided before they can begin. An option to make sure codes are fresh when the user opens the app would a good improvement to the UX.
Metadata
Metadata
Assignees
Labels
No labels