4 ms·
It is very common to arrange your life so that you are able to 'hand in' all work devices and walk away. Its a seperation of work and home life that is very hea
by Normal_gaussian 5y ago
It is very common to arrange your life so that you are able to 'hand in' all work devices and walk away. Its a seperation of work and home life that is very healthy, and a reasonable self-protective measure.
- jacquesm 5y agoSuch assumptions are the root of all evil.
- andreareina 5y agoI don't understand what you're saying here. What's wrong with wanting to keep work stuff out of my personal machines?
- jacquesm 5y agoNo, that's perfectly fine. But where it goes wrong is in the assumption that it is 'common'. It isn't common at all to see the opposite either (not everybody wants to carry two phones around, not all phones are dual SIM). The whole work/personal line is blurring more and more and our devices and thought patterns have not kept up with this. You could probably write one of those 'Things programmers assume about online identity' articles by now.
- andreareina 5y agoOh yes work/personal commingling is definitely common in my circles unfortunately.
- CarelessExpert 5y agoThis doesn't explain the comment. If you have a Google account for work you also have a work issued computer at minimum, so install a TOTP authenticator there. If you also have a work issued phone it's a total non-issue as you can use that for 2FA. If you access your work Google account from a personal device in circumstances where you don't have access to work equipment, then install an authenticator there.
- vidarh 5y ago> If you have a Google account for work you also have a work issued computer at minimum I have a Google account for work. I don't have a work issued computer. I think you're assuming too much about how other people might work. I agree there are enough options that it shouldn't really be a big problem, but it's not surprising that not everyone are aware of the options.
- CarelessExpert 5y ago> I have a Google account for work. I don't have a work issued computer. Which must mean you're using personal equipment and you're not doing what the previous person was talking about, which was: > It is very common to arrange your life so that you are able to 'hand in' all work devices and walk away. Context matters. I was arguing a specific point based on a scenario the previous individual was posing. That scenario apparently doesn't apply to you, in which case, go argue with that person, because it wasn't my claim. Now, if we want to talk about your specific circumstance, if you're using personal equipment to access a work account, stick a TOTP authenticator on your personal device. I honestly don't understand what's confusing about this.
- vidarh 5y agoDoing work on my personal laptop does not mean I can't just hand in the work devices and walk away. My credentials would be disabled. The work data remains on work machines. > I honestly don't understand what's confusing about this. I didn't argue it was confusing. I argued against your assumption. And there's no need to use that tone - it comes across as aggressive and condescending. EDIT: I note this is not your only comment in this thread that comes across this way. Looking at your comment history suggests you're just direct, so I'll assume you don't mean anything by it, but it rarely goes over well here.
- Normal_gaussian 5y agoAt a previous position I regularly used a variety of company issued hardware (alongside my standard workstation). The only company device I had consistently was the phone. In my current position I can be called up for an emergency at any time. I'm not going to cart my desktop or laptop around on my day off, but carrying a phone for use with any reasonably secure machine I can find is a good solution. People with responsibility for operations systems will find themselves in this kind of situation somewhat regularly. These are also the people most likely to seperate work and personal devices due to usage policies or risk profiles.
- weird-eye-issue 5y agoJust install Authy on your computer with a master password for the personal account. No second phone needed. Or install Authy on your phone, but I can't tell if you are saying you only have a work phone and no personal phone? Or is it visa versa? I'm having trouble picturing your setup Edit: If you already have two phones due to your work life separation, then 2FA isn't really causing you to get a second phone is it?
- qwerty10001 5y agoYou are replacing one privacy nightmare with another: https://www.twilio.com/legal/privacy/authy https://www.twilio.com/legal/privacy/authy The only privacy friendly method is no 2FA, just long secure passwords. Which is why 2FA is pushed so hard ...
- CarelessExpert 5y ago> The only privacy friendly method is no 2FA, just long secure passwords. Which is why 2FA is pushed so hard ... This is absolutely ridiculous and so clearly false I can't help but wonder if it's intentional misinformation. There are numerous open source TOTP authenticators for both the desktop and mobile that require absolutely no data to be stored in the cloud or shared with third parties. I myself use KeepassXC and Keepass2Android.
- joshuamorton 5y agoNot to mention, like, fido/u2f based systems which don't have any privacy concerns I can think of, even theoretically.
- megapatch 5y agoSo you store the password and the TOTP in KeePass? Seems that you have 1FA, hacking your KeePass is enough to own you.
- CarelessExpert 5y ago