Everything you need to know about two-factor authentication

Back to blog

Everything you need to know about two-factor authentication

A few weeks ago, we wrote 2 tips on creating better, more secure passwords that are easier to remember. You've gone to your accounts, upgraded your passwords, but still wish there was something else you could do. We don't blame you - with more and more of our most personal information moving online, it seems a simple password is hardly enough. That's why we're here to talk about the next level of Internet security: Two-Factor Authentication.

A computer logging in and a phone authorizing that login

Two-factor what?

Two-Factor Authentication (2FA) is an additional layer of security that makes your accounts significantly more difficult to compromise. Simply put, 2FA requires 2 sets of verification: both "something you know" (like a password) and "something you have" (like your phone, or an email account). As an example, think of a spy movie where someone enters a pin code at the door (something they know), and then goes in for a retinal scan (something they have).

An example

We'll demonstrate the 2FA process with a Google Login.

  1. You start by entering your email address and password like normal. (something you know)
    A Google signin dialog username A Google signin dialog password
  2. But once your password is entered, instead of being logged into your account, you will be asked for a second, unique, one-time use pin.
    A dialog requesting an authentication code
  3. Within seconds, you will receive a text message on your phone with that unique pin (something you have). Enter it and you will now have access to your account.
    A phone text message showing authentication code

As you can see, Two-Factor Authentication improves your security significantly since even in the event someone compromises the password to your account, it would be very rare that they would have access to your phone at the same time.

We should note as well that 2FA isn't restricted to just sending SMS messages. Depending on which service you are logging into, the service provider could offer SMS, Phone Call, Email, Hardware or Software token as options to authenticate for login.

Where can I use it?

Most service providers recognize the need to improved access security, so many have been working on 2FA implementation in the last few years. You can use this website: https://twofactorauth.org/ to check what services you use that currently offers 2FA.

The most popular productivity and retail services including Google (YouTube, Mail, Google Drive), Twitter, Facebook, Dropbox, Evernote, Amazon, PayPal & eBay already offer Two-Factor Authentication and if you're a Start customer, you can expect two-factor authentication coming to you soon on our new, more robust customer portal as well. Not everyone is there yet, notably missing are major Canadian banks as well as the Canadian Revenue Agency.

For every service you use that supports Two-Factor Authentication, head over right now and enable it. It's one of the best ways to keep your data safe on top of your unique, secure password.

Interested in Start Internet?

Click here to see our plans, and to find out
what's available at your address.

Learn More
Learn More

You may also like...

Start Talk Ep. 17 - Start TV, CRTC, Hardware and Public WiFi

In this episode of Start Talk we cover all the updates you've been looking for! Pete and Sarah will update you on Start TV, CRTC pricing decision, when you should upgrade your internet hardware, and the risks of using Public WiFi.

Modem Makeover

DIY tips to keep the tech you love hidden in plain sight

What Community Means to Me by Janet Smith

As we prepare for the upcoming Continental Cup, of which we are the Community and Stage Sponsors for, I stopped to reflect on what these sponsorship's really mean.

Where do you want service?

Type in your address to find out what services are available there.

Are you an existing customer?

Where do you want service?

Type in your address to find out what services are available there.

Start.ca Live Chat