[Koha-bugs] [Bug 19886] Two Factor Authentication: Yubikey

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Wed Nov 27 02:41:59 CET 2019


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=19886

--- Comment #5 from David Cook <dcook at prosentient.com.au> ---
(In reply to Ray Delahunty from comment #3)
> Koha needs additional layers of authentication. With the spread of equipment
> such as Amazon-locker type units to hold (often expensive) items obtained
> for interlibrary loan, and kit such as laptop loan units, there is the
> danger of unauthorised use via SIP2. Sites using RFID user cards with the
> cardnumber embedded on them are vulnerable to stock loss if a user card is
> lost and then found and used maliciously. Adding PIN functionality (for
> example) would reduce this risk.

Additional layers of authentication could be used for Staff Client login or
OPAC login, but I don't think the layers you describe are very realistic for
most libraries (ie I worked on the front lines of libraries for years and
getting patrons to remember a number or a card is hard enough in itself). I
also think they're a different use case than what is being described in this
bug report. But an interesting idea.

-- 
You are receiving this mail because:
You are watching all bug changes.
You are the assignee for the bug.


More information about the Koha-bugs mailing list