• MaggiWuerze@feddit.org
    link
    fedilink
    arrow-up
    240
    arrow-down
    2
    ·
    2 months ago

    Also This strange trend to split username and password on to two separate pages, or only showing the password field after confirming the username

    • neidu3@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      72
      arrow-down
      8
      ·
      edit-2
      2 months ago

      Not that strange. Different users may belong to different groups which may have different authentication backends. The associated authentication method is brought up once a username has been provided.

      • atomicbocks@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        26
        ·
        2 months ago

        You can do that as part of an OAuth workflow. You don’t need to have them on separate pages for that to happen.

    • bobo@lemmy.ml
      link
      fedilink
      arrow-up
      47
      ·
      2 months ago
      1. Username
      2. Password
      3. MFA
      4. Do the whole process all over again because the remember this device is on step 2 and it’s impossible to go back

      Bonus stage 0: special login URL decided to crap out, and going back to any point in history automatically redirects to the error page that you can’t use to log in, so you need to keep going back and trying to copy the URL before it redirects becausw Firefox interprets pressing “stop” as “do whatever you want idk”

      Fucking aws…

    • Iced Raktajino@startrek.website
      link
      fedilink
      arrow-up
      46
      ·
      edit-2
      2 months ago

      And the auto-submitting TOTP entry form where you’re apparently not allowed to make a typo. And obscuring the TOTP number like it’s a password or state secret.

    • ricecake@sh.itjust.works
      link
      fedilink
      arrow-up
      8
      ·
      1 month ago

      That ones because users like choice. They need to look up who you are to know how you’ve chosen to authenticate. At least, that’s how it started. Some could be doing it because the big kids are, but that’s why the big kids do.
      And they support choice because businesses want to use their login infrastructure and refuse to share. So you enter “user@businessOrUniversity.com.edu” and it forwards you to your institutional login.