• 1 Post
  • 2 Comments
Joined 1Y ago
cake
Cake day: Apr 13, 2024

help-circle
rss

Read the The rollout of Login 2.0 for our customers se tion in the linked post


I think they resell https://www.open-xchange.com/ so they were dependent on them accomodating Keycloak (identity solution used by mailbox)


Mailbox.org now has normal 2FA
Before today, mailbox.org's 2FA mechanism was unorthodox. In the login screen, you typed in the TOTP in the password field and then added a 4 digit static pin at the end. This got people confused, as it's different than the usual login+password then TOTP. Now it's just like that. There's also other goodies, like separate passwords for IMAP and SMTP, WebDAV, CardDAV/CalDAV (one password for both), Exchange Sync. Before today, you'd be using your main mailbox.org password for all of the above. Looks like IMAP access is not even possible without creating a separate password https://kb.mailbox.org/en/private/account-article/how-to-use-two-factor-authentication-2fa/ There doesn't seem to be support for the YubiKey TOTP anymore. No passkeys or hardware webauthn either for now. mailbox.org is based on OpenXchange.
fedilink
130