Bug 4626 - Implement Multi-factor authentication (MFA) in Claws Mail or a Plugin
Summary: Implement Multi-factor authentication (MFA) in Claws Mail or a Plugin
Status: RESOLVED INVALID
Alias: None
Product: Claws Mail
Classification: Unclassified
Component: Other (show other bugs)
Version: 4.1.1
Hardware: PC Windows 10
: P3 enhancement
Assignee: users
URL:
Depends on:
Blocks:
 
Reported: 2022-09-21 02:30 UTC by Svetlana T
Modified: 2022-09-21 08:58 UTC (History)
0 users

See Also:


Attachments

Description Svetlana T 2022-09-21 02:30:17 UTC
Hi,

I got email from my employer that says the following:

> "Legacy authentication typically describes a method of accessing an application using basic authentication, with only a username and password. This method of accessing an application doesn’t support the use of Multi-Factor Authentication (MFA), allowing a potential attacker to compromise an account using only a username and password."
> 
> "With the enhanced security and capabilities, ‘Modern Authentication’ has been developed as the successor to ‘Legacy Authentication’ and the enhanced  capabilities of Modern Authentication help mitigate password guessing attacks and enables other security controls like multi-factor authentication, that help protect the University against email phishing. If your email application doesn’t support modern authentication, you will be unable to connect to Office 365 applications"

Currently I am using Claws Mail 3.17.4 on Windows 10, and I think it is the program that the employer says is not compatible with the new authentication.

Could you please put a note whether Claws supports MFA in some way, and if it doesn't, then what would be the best approach for a programmer to get started with implementing it.

Many thanks.
Comment 1 Paul 2022-09-21 08:58:09 UTC
You should upgrade, version 3.17.4 is six releases behind.

AFAIK, it is already possible to use 2FA with office 365, or OAUTH2 (once you upgrade).

Note You need to log in before you can comment on or make changes to this bug.