Two factor authentication for linked accounts

Problem to solve

Two factor authentication asking a second factor authentication when you try to authenticate using a linked account, which had already asked you a second factor authentication.

Intended users

All users logging-in on Gitlab

Further detail

When we link a third-party account to authenticate on Gitlab, we expect a fast and single click authentication.

Example: Someone's Google account is linked to Gitlab account; They had already logged in to Google; Google had already validated its second factor authentication; They try to log in to Gitlab it shouldn't ask them for its second factor authentication.

Proposal

Maybe, we could set when Gitlab should ask us for a second factor authentication, and not just turn it on/off. Like, for all authentication sources or just user+password of Gitlab accounts, or even in more fine grain settings we could turn it on/off for each source of authentications.

Edited Apr 05, 2019 by Luciano Moreira
Assignee Loading
Time tracking Loading