[WordPress] 外掛分享: Encourage User Activation for Google Authenticator

首頁外掛目錄 › Encourage User Activation for Google Authenticator
70+
安裝啟用
★★★★
4.3/5 分(3 則評價)
1791 天前
最後更新
問題解決
WordPress 3.1+ v0.2 上架:2013-12-14

內容簡介

Google Authenticator 外掛是在你的網站上增加雙重身分驗證的好方法,但為了讓它發揮功效,使用者必須自行啟用它。他們可能不知道這個選項,或者沒有動機啟用。

這個外掛可以幫助管理員鼓勵使用者啟用雙重身分驗證。它有三種不同的方法,取決於你想要多嚴格:

輕微提示使用者:一個警告訊息會在儀表板和個人資料畫面的頂部出現,詢問他們是否要啟用雙重身分驗證。當使用者啟用它後,該訊息就會消失。這是預設的行為。
持續提示使用者:警告訊息將在所有畫面的頂部顯示,直到使用者啟用雙重身份驗證。
強制使用者:警告訊息將顯示在所有畫面中,使用者也將無法在 wp-admin 內做任何操作,直到他們啟用雙重身分驗證。他們暫時被指定為訂閱者,每當他們嘗試訪問其他畫面時就會被重新導向到個人資料頁面。一旦他們啟用雙重身分驗證,他們的原始角色就會恢復,他們可以再次訪問其他畫面。
需要注意的是,Google Authenticator 外掛在啟用過程中並不要求使用者輸入有效的 2FA 代碼,因此有些使用者可能無法正確設定,將自己鎖在帳戶外。這很不幸,可能會導致更多的支援要求,但這是為了增加安全性所付出的微不足道的代價。

外掛標籤

開發者團隊

⬇ 下載最新版 (v0.2) 或搜尋安裝

① 下載 ZIP → 後台「外掛 › 安裝外掛 › 上傳外掛」
② 後台搜尋「Encourage User Activation for Google Authenticator」→ 直接安裝(推薦)
📦 歷史版本下載

原文外掛簡介

The Google Authenticator plugin is a great way to add two-factor authentication to your site, but in order for it to work, users have to activate it for their account themselves. They may not know that it’s available, or may not be motivated to enable it.
This plugin helps administrators to encourage users to activate it, and has three different methods for doing that, depending on how strict you want to be:

Gently Nag the user: A warning message will appear at the top of the Dashboard and Profile screens, asking them to enable two-factor authentication. The message goes away when they enable it. This is the default behavior.
Persistently Nag the user: The warning will appear at the top of all screens until they enable two-factor auth.
Force the user: The warning will appear on all screens, and the user will also be prevented from doing anything inside wp-admin until they activate two-factor auth. They’re temporarily assigned the role of a Subscriber, and redirected to their profile whenever they try to access another screen. Once they enable two-factor auth, their original role is restored and they can access other screens again.
Keep in mind that the Google Authenticator plugin doesn’t require users to enter a valid 2FA code from their phone during the activation process, so some users may not set it up correctly and lock themselves out of their account. This is unfortunate and may result in more support requests, but it’s a small price to pay for increased security.

延伸相關外掛

文章
Filter
Apply Filters
Mastodon