2FA | Two-Factor Authentication (2024)

2FA | Two-Factor Authentication (1)


Starting November 2020, we implement two-factor authentication on all CrewLounge AERO apps.

What is 2FA?

Two-Factor authentication (2FA) refers to a login process that requires more than just a user name with a password. If your password is compromised somehow, 2FA can prevent an attacker from logging into your account by requiring a second form of verification.

Why do we implement 2FA?

Usernames are often easy to discover, especially when you use your company email address to create an account with CrewLounge AERO. In this scenario, the only real protection you have against someone logging in to your account, is the strength of your password.

There are different ways that bad guys can get your password. The first way is to simply guess your password... Too many crew members use simple passwords like anna1972 (year of birth) or john12345 (the non-worried guy).

Hackers may get access to your password, because it was stored in an unsafe location on your phone, on the internet, or in your email inbox. This is especially dangerous when you reuse a single password across different services, like online shopping, your company crew roster or social media channels. Passwords can also be stolen when inserted on non-secure websites.

Worst case scenario, an attacker gets access to the CrewLounge AERO cloud server and steals the login credentials of all users. As per GDPR regulations, we would have the obligation to notify you about such data breach. As a side note, we do not store any credit card or other financial data about you in our system - all payments are handled by external parties (read our Terms of Use - Privacy Policy - Data Collection - How do we collect this data?).

2FA is an extra layer of protection against the human frailty of creating weak passwords and reusing them across services. It also protects against account data being stolen. 2FA requires an extra PIN number to login in addition to your password. This PIN number is different every time and can only be used once. Therefore, a bad person managing to get your password won’t be able to log into your account, unless he or she also managed to obtain your current 2FA PIN number.

How does it work?


CrewLounge AERO
requires entering a PIN number when logging in from a new device (phone, tablet, computer).

Note:

Notice the difference between PIN code and PIN number. PIN code is a fixed number (usually 4 digits) that you choose yourself and reuse every time again. PIN number is an ever-changing number (usually 6 digits) that is generated randomly. In the context of 2FA, we use a PIN number!

Launching a CrewLounge AERO App

This is how it works:

  1. launch the app on your phone / tablet / computer
  2. insert you login credentials (username and password)
  3. you receive an email with a PIN number
  4. insert the PIN number in the app

When completed, your device is automatically listed as "Trusted Device". You will no longer be challenged for a PIN number when connecting to CrewLounge AERO from this device. You will still be challenged for your login credentials, if you did not use the device for more than 7 days.

In case you run multiple CrewLounge AEROapps on the same device, you are challenged for 2FA when launching the first app. Once the device is trusted, you can use all other CrewLounge AEROapps without additional 2FA.

Login to My CrewLounge from a web browser

The login process is identical to launching an app. However, web browsers do not automatically become a trusted device after successful login. This is to avoid that a browser is being added when you login to My CrewLoungefrom a computer that is not yours.

You must select the "Trust this browser" checkbox during the login process to mark the browser as "Trusted Device". You will no longer be challenged for 2FA once the browser is trusted. You must accept website cookies in order to recognize and trust the browser.

Trusted Devices

A device can be any hardware (phone/tablet/computer) on which you run any of the CrewLounge AERO apps, or any web browser through which you access the CrewLounge AERO web portal. You can manage the list with devices (trusted and non-trusted) from the My Account panel in My CrewLounge (here).

Devices that are not used for more than 7 days and that are not trusted, are automatically removed from the list.

How to turn-off 2FA?


Two-factor authentication is an extra step in the login process, and usually comes together with the hassle of initial registration. You may therefore be inclined to turn-off 2FA.
Yes, two-factor authentication is cumbersome. But take it from us, cleaning-up the mess after an attack on your account, is worse!


CrewLounge AEROtakes your privacy and data protecting very seriously. We recommend to not turn-off 2FA. Notice that 2FA is needed one time only per device, while it elevates your security more than double (1+1 = 3).

Should you still want to dis 2FA on your account, you can do so from the My Account panel in My CrewLounge (here).

2FA | Two-Factor Authentication (2024)

References

Top Articles
1 Million in Numbers: Writing It Down, Counting the Zeroes, and Insights You Didn't Know!
Rules for Writing Numbers | When to Spell Out Numbers
Sdn Md 2023-2024
Is Paige Vanzant Related To Ronnie Van Zant
Cottonwood Vet Ottawa Ks
Le Blanc Los Cabos - Los Cabos – Le Blanc Spa Resort Adults-Only All Inclusive
CLI Book 3: Cisco Secure Firewall ASA VPN CLI Configuration Guide, 9.22 - General VPN Parameters [Cisco Secure Firewall ASA]
craigslist: kenosha-racine jobs, apartments, for sale, services, community, and events
Ghosted Imdb Parents Guide
Www.politicser.com Pepperboy News
Jeremy Corbell Twitter
Find All Subdomains
Sissy Hypno Gif
Calamity Hallowed Ore
Urinevlekken verwijderen: De meest effectieve methoden - Puurlv
You can put a price tag on the value of a personal finance education: $100,000
Edgar And Herschel Trivia Questions
All Obituaries | Ashley's J H Williams & Sons, Inc. | Selma AL funeral home and cremation
Slmd Skincare Appointment
Nj Scratch Off Remaining Prizes
Local Collector Buying Old Motorcycles Z1 KZ900 KZ 900 KZ1000 Kawasaki - wanted - by dealer - sale - craigslist
Bad Moms 123Movies
Pac Man Deviantart
Pricelinerewardsvisa Com Activate
U Of Arizona Phonebook
Bn9 Weather Radar
Spiritual Meaning Of Snake Tattoo: Healing And Rebirth!
Abga Gestation Calculator
Black Lion Backpack And Glider Voucher
manhattan cars & trucks - by owner - craigslist
Xxn Abbreviation List 2023
Ts Modesto
24 Hour Drive Thru Car Wash Near Me
Puffin Asmr Leak
Spy School Secrets - Canada's History
JD Power's top airlines in 2024, ranked - The Points Guy
2012 Street Glide Blue Book Value
Games R Us Dallas
Paperless Employee/Kiewit Pay Statements
Indio Mall Eye Doctor
9 oplossingen voor het laptoptouchpad dat niet werkt in Windows - TWCB (NL)
M Life Insider
21 Alive Weather Team
boston furniture "patio" - craigslist
Jammiah Broomfield Ig
All Buttons In Blox Fruits
Greg Steube Height
Wieting Funeral Home '' Obituaries
Compete My Workforce
Raley Scrubs - Midtown
Sdn Dds
Latest Posts
Article information

Author: Carmelo Roob

Last Updated:

Views: 6500

Rating: 4.4 / 5 (45 voted)

Reviews: 84% of readers found this page helpful

Author information

Name: Carmelo Roob

Birthday: 1995-01-09

Address: Apt. 915 481 Sipes Cliff, New Gonzalobury, CO 80176

Phone: +6773780339780

Job: Sales Executive

Hobby: Gaming, Jogging, Rugby, Video gaming, Handball, Ice skating, Web surfing

Introduction: My name is Carmelo Roob, I am a modern, handsome, delightful, comfortable, attractive, vast, good person who loves writing and wants to share my knowledge and understanding with you.