What is Google 2FA?
2FA stands for two factor authentication.
To make every account on the internet secure, usually we need to protect
multiple security layers, in technical term we called multi-factor authentication.
But having strong security, will lead to difficulty in usage.
Remember, security and convinient usually walks against each other.
High security , Difficult to use.
Low security, Easy to use.
Why do I need to use Google 2FA?
There are many bad guys who always looking to steal your account,
there are many reasons and motivations behind it, but the goal is to take over
your account. So if you only using password, and your password is easy to guess,
or easy to get, your account is a simple target to steal.
If your account don't have valuable thing, it is ok for them to steal,
and you can create a new account, but some account is very valuable
for example your email address which links to multiple account, or your bank
account, or serey wallet. In that case you might want to use
Google 2FA, to protect your account even more stronger,
so that attacker is having a hard time to steal your account.
How does Google 2FA work?
Normally, when you using Google 2FA, your device (mobile phone) is the client
of google, and google is your server. So when you click on enable
2FA, google will generate share private key and store it in google server,
and your mobile phone. So that both google server and your mobile phone
will have the same share key.
Whenever you want to log into any account that enable 2FA, google server
will use the share key, together with global time and put into a function,
after that it will output 6 digits number in the google server,
only the person who know that 6 digits number will allow to log in.
So how do you know that 6 digits number?
remember your mobile phone also know the share private key,
so your mobile phone application "google authenticator" will
do the same like google server, it use the private key with the global time
and put it into a function and output the same 6 digits number on google server,
so when you type that 6 digits number which is the same number in the server,
google will allow you to log into your account.
How to setup google 2FA in serey wallet?
STEP 1. Log in to your wallet and click on setting icons
STEP 2. Click on Enable button
STEP 3. Scan the QR Code
That QR code is the share private key that google server,
and your mobile phone need to keep.
How can you scan it?
You need to download an application called "Google Authenticator"
from playstore or appstore depend on your mobile operating system.
So if you use android phone, click on google play button.
It will redirect you to google play store, click on installed.
Once you installed, open the app and scan the QR Code and Click finish.
Now, you are successfully enable gogole 2FA, and you will see the status
Active. From now on, when you log in to your account, the system will
ask you for your password and the 6 digits number from your google authenticator app.
You can also disable it by clicking on the button Disable
enter the 6 digits number from your google authenticator app and Click on Disable button.
The 6 digits number will refresh every 30s, so if you not input on time the number will
change to another 6 digits numer.
Consider before using it
Remember, by enable Google 2FA it is hard for attacker to steal your account,
but it is also hard for you to log in to your account.
Without Google 2FA, you just need a password to log in.
But with google 2FA, you need password and also 6 digits token number,
from your mobile phone. So in case you lost your phone, or your phone
fall into water, or broken, even you can't access to your account.
So I recommend you to create a fake account anywhere, and learn to use it first,
be familiar with it, before you enable it in your valuable account,
otherwise, you might block your self from log in to your own account.
@Cryptopreneur - Cambodia Serey Community

