July 20, 2023, 5:03 p.m. | /u/Grunt030

cybersecurity www.reddit.com

The voices in my head are arguing. Is the following authentication 2FA or MFA?

2-step authentication, 1st step
Username
Password

Success on step 1 invokes step 2, challenge for an OTP (HOTP, TOTP, SMS, etc...).

The voices are arguing over classification of the username. Is it considered 'something I am' or 'something I know'?

Edit: Edited for grammar and spelling.

2fa authentication challenge classification cybersecurity edit etc head mfa otp password sms totp username

Lead Security Specialist

@ Fujifilm | Holly Springs, NC, United States

Security Operations Centre Analyst

@ Deliveroo | Hyderabad, India (Main Office)

CISOC Analyst

@ KCB Group | Kenya

Lead Security Engineer – Red Team/Offensive Security

@ FICO | Work from Home, United States

Cloud Security SME

@ Maveris | Washington, District of Columbia, United States - Remote

SOC Analyst (m/w/d)

@ Bausparkasse Schwäbisch Hall | Schwäbisch Hall, DE