Like spambait throwaway email accounts, but visible to the world indefinitely. Shouldn't use with any service that allows account reset through SMS alone, or who has your real identity or payment info. Think: logins you would put on BugMeNot
Also:
https://sms-hero.com
https://textverified.com/free
[other paid services exist]
Multi-factor authentication keeps your accounts secure. You can use Apple’s authenticator app with iCloud Keychain to make managing your codes easy.
suggested: block smartlock.google.com
The differences of SAML vs Oauth2 relate specifically around authentication and authorization. Learn how these two protocols help secure your identity goals.
Clicking on the login button always redirects the page to about:blank. I installed admin using bin/gpm install admin Using Grav v0.9.43 and nginx 1.6.2
[I had to add the weird if statement for the location / block to get login to work on my server. It kept redirecting to / instead of /admin.]
A reverse proxy that provides authentication with Google, Azure, OpenID Connect and many more identity providers. - GitHub - oauth2-proxy/oauth2-proxy: A reverse proxy that provides authentication with Google, Azure, OpenID Connect and many more identity providers.
[fork of the Bitly proxy; works with Nextcloud as the identity provider]
Describes the best practices, location, values, and security considerations for the Interactive logon Do not display last user name security policy setting.
It looks like they can be reset, but it may depend on the device.
We invite you to learn more about how Duo Security and FEITIAN work together to provide flexible and strong authentication options for organizations of all sizes with a variety of security tokens to fit your needs.
IPBan: https://www.digitalruby.com/ipban/ [Windows/Linux only]
SSHguard: http://www.sshguard.net
Sentry? https://github.com/msimerson/sentry/ [Perl, not sure how automated it is]
Still trying to figure out if this sort of gateway works with apps that are not OAuth-aware.
Learn how to add an app to run automatically at startup.
requires Linux and runs DNS and Postfix in a Docker node
The SMS option (playSMS.org) might be a starting point for developing a zero-trust 2-factor authentication gateway.