Discussion Forum: Suggestions(Post New Message)
Redisplay Messages: Compact | Brief | All | Full      Show Messages: All | Without Replies

 Author: qwertyboy View Messages Posted By qwertyboy
 Posted: Jan 23, 2020 20:08
 Subject: Re: 2FA or some other additional login security
 Viewed: 55 times
 Topic: Suggestions
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

qwertyboy (7862)

Location:  Canada, Alberta
Member Since Contact Type Status
Apr 9, 2013 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
Store: Maple Bricks
In Suggestions, SylvainLS writes:
  In Suggestions, patpendlego writes:
  […]
Obviously the idea behind 2FA is that you're NOT using the same device.

Yeah, that’s the idea but unfortunately, that’s not the common practice.


   I
personally never use the same device. Also, besides SMS there are authentication
apps which are secured by a pincode. In general, 2FA is regarded as the standard
safe login method today whereas 1FA is considered not safe enough anymore. Hence
the suggestion.

I understand the suggestion. I’m just pointing one pitfall.

“Regarded” is the problem here: people feel confident when in reality the implementation
is generally flawed.
How many websites check you’re not using the same device?
None, because it can’t be done.

2FA is also referred to "something you know, and something you have". 2FA is
not meant to make sure it is you that is using your phone. Rather, it is meant
to do a second check after "someone" logged in (and used the "something you know")
by making sure that person also clears the "something you have" hurdle.

Saying 2FA implementations are generally flawed because they don't check
you are using the same device makes no sense. It is not meant to do that check.
It is meant to prevent "SylvainLS" in France to log into account "qwertyboy".
Good luck doing that if 2FA sends my Canadian phone a txt.

Niek.
 Author: SylvainLS View Messages Posted By SylvainLS
 Posted: Jan 23, 2020 17:27
 Subject: Re: 2FA or some other additional login security
 Viewed: 69 times
 Topic: Suggestions
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

SylvainLS (46)

Location:  France, Nouvelle-Aquitaine
Member Since Contact Type Status
Apr 25, 2014 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
Store Closed Store: BuyerOnly
BrickLink Discussions Moderator (?)
In Suggestions, patpendlego writes:
  […]
Obviously the idea behind 2FA is that you're NOT using the same device.

Yeah, that’s the idea but unfortunately, that’s not the common practice.


   I
personally never use the same device. Also, besides SMS there are authentication
apps which are secured by a pincode. In general, 2FA is regarded as the standard
safe login method today whereas 1FA is considered not safe enough anymore. Hence
the suggestion.

I understand the suggestion. I’m just pointing one pitfall.

“Regarded” is the problem here: people feel confident when in reality the implementation
is generally flawed.
How many websites check you’re not using the same device?
None, because it can’t be done.
 Author: leggodtshop View Messages Posted By leggodtshop
 Posted: Jan 23, 2020 16:58
 Subject: Re: 2FA or some other additional login security
 Viewed: 57 times
 Topic: Suggestions
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

leggodtshop (3862)

Location:  Netherlands, Overijssel
Member Since Contact Type Status
Aug 11, 2006 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
Store: Leggodt.nl
In Suggestions, SylvainLS writes:
  In Suggestions, patpendlego writes:
  Admin,

Please implement 2FA or some other additional login security to BrickLink account.

2FA = 2-Factor-Authentication

It could help prevent hacking or stealing of accounts and account & inventory
information.

Of course this could be set as optional on the account.

The main problem I have with 2FA is that, most of the time, the implementation
consists in sending an SMS on the same phone the user is already using to browse
the website, and that makes it 1FA (we’re checking the person holding the phone
can use the phone’s browser and read SMS on the same phone, whoopee).
This gives a false sense of security.

Obviously the idea behind 2FA is that you're NOT using the same device. I
personally never use the same device. Also, besides SMS there are authentication
apps which are secured by a pincode. In general, 2FA is regarded as the standard
safe login method today whereas 1FA is considered not safe enough anymore. Hence
the suggestion.
 Author: SylvainLS View Messages Posted By SylvainLS
 Posted: Jan 23, 2020 16:14
 Subject: Re: 2FA or some other additional login security
 Viewed: 70 times
 Topic: Suggestions
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

SylvainLS (46)

Location:  France, Nouvelle-Aquitaine
Member Since Contact Type Status
Apr 25, 2014 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
Store Closed Store: BuyerOnly
BrickLink Discussions Moderator (?)
In Suggestions, patpendlego writes:
  Admin,

Please implement 2FA or some other additional login security to BrickLink account.

2FA = 2-Factor-Authentication

It could help prevent hacking or stealing of accounts and account & inventory
information.

Of course this could be set as optional on the account.

The main problem I have with 2FA is that, most of the time, the implementation
consists in sending an SMS on the same phone the user is already using to browse
the website, and that makes it 1FA (we’re checking the person holding the phone
can use the phone’s browser and read SMS on the same phone, whoopee).
This gives a false sense of security.
 Author: leggodtshop View Messages Posted By leggodtshop
 Posted: Jan 23, 2020 14:36
 Subject: 2FA or some other additional login security
 Viewed: 171 times
 Topic: Suggestions
 Status:Open
 Vote:[Yes|No]
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

leggodtshop (3862)

Location:  Netherlands, Overijssel
Member Since Contact Type Status
Aug 11, 2006 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
Store: Leggodt.nl
Admin,

Please implement 2FA or some other additional login security to BrickLink account.

2FA = 2-Factor-Authentication

It could help prevent hacking or stealing of accounts and account & inventory
information.

Of course this could be set as optional on the account.

Thank you.
 Author: calsbricks View Messages Posted By calsbricks
 Posted: Jan 23, 2020 12:25
 Subject: Re: multiple shipping addresses ?
 Viewed: 40 times
 Topic: Suggestions
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

calsbricks (8513)

Location:  United Kingdom, England
Member Since Contact Type Status
Aug 12, 2008 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
Store: CalsBricks
In Suggestions, bje writes:
  In Suggestions, Rarah writes:
  Is it possible to create 2 addresses that I can always choose from when completing
an order? I have one address in Slovakia for most orders and one in Czech Republic
for CZ orders. Now the only way around is to simply edit my address and after
order placed change it back. because some stores have automated payment for shipping
and if I don´t change the country i don´t get the right options. I know people
in US will probably not understand why I need something but specifically for
people in SK/CZ many people have address in both countries to optimize shipping
cost etc. It´s from the past but that country difference makes me save 7 EUR
on shipping when I instead of 9€ pay just 2€.

Not possible, despite it making complete sense. In fact on every webstore I've
used I get a billing and delivery address, even the certified store has that
here so it is nothing strange.

You will have to continue changing the address here every time
https://www.bricklink.com/pref_address.asp

I do not think sellers can see your history any longer so it is just inconvenient.

We agree - it is strange and very old fashioned. It is a strong reason why we
do not use stores where online payment (paypal is used) the addres validation
does not work properly.

We need at least 2 addresses . We can have as many addresses as we need on Paypal
why not here?
  I've had 21 of them since September last year
 Author: calsbricks View Messages Posted By calsbricks
 Posted: Jan 23, 2020 12:23
 Subject: Re: multiple shipping addresses ?
 Viewed: 27 times
 Topic: Suggestions
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

calsbricks (8513)

Location:  United Kingdom, England
Member Since Contact Type Status
Aug 12, 2008 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
Store: CalsBricks
In Suggestions, Rarah writes:
  Is it possible to create 2 addresses that I can always choose from when completing
an order? I have one address in Slovakia for most orders and one in Czech Republic
for CZ orders. Now the only way around is to simply edit my address and after
order placed change it back. because some stores have automated payment for shipping
and if I don´t change the country i don´t get the right options. I know people
in US will probably not understand why I need something but specifically for
people in SK/CZ many people have address in both countries to optimize shipping
cost etc. It´s from the past but that country difference makes me save 7 EUR
on shipping when I instead of 9€ pay just 2€.

We share your issue with 2 locations for our store but nothing like this is going
to be done until the new owners are in and settled and reach out to the membership
for priorities etc.
 Author: bje View Messages Posted By bje
 Posted: Jan 23, 2020 12:09
 Subject: Re: multiple shipping addresses ?
 Viewed: 30 times
 Topic: Suggestions
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

bje (1577)

Location:  South Africa, Western Cape
Member Since Contact Type Status
May 24, 2010 Contact Member Seller
No Longer RegisteredNo Longer Registered
Store: JE Bricks
No Longer Registered
In Suggestions, Rarah writes:
  Is it possible to create 2 addresses that I can always choose from when completing
an order? I have one address in Slovakia for most orders and one in Czech Republic
for CZ orders. Now the only way around is to simply edit my address and after
order placed change it back. because some stores have automated payment for shipping
and if I don´t change the country i don´t get the right options. I know people
in US will probably not understand why I need something but specifically for
people in SK/CZ many people have address in both countries to optimize shipping
cost etc. It´s from the past but that country difference makes me save 7 EUR
on shipping when I instead of 9€ pay just 2€.

Not possible, despite it making complete sense. In fact on every webstore I've
used I get a billing and delivery address, even the certified store has that
here so it is nothing strange.

You will have to continue changing the address here every time
https://www.bricklink.com/pref_address.asp

I do not think sellers can see your history any longer so it is just inconvenient.
I've had 21 of them since September last year
 Author: Rarah View Messages Posted By Rarah
 Posted: Jan 23, 2020 11:57
 Subject: multiple shipping addresses ?
 Viewed: 78 times
 Topic: Suggestions
 Status:Open
 Vote:[Yes|No]
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

Rarah (573)

Location:  Slovakia, Trnavský Kraj
Member Since Contact Type Status Collage
Dec 2, 2004 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
View Collage Pic
Store: ELFIK Minifigures
Is it possible to create 2 addresses that I can always choose from when completing
an order? I have one address in Slovakia for most orders and one in Czech Republic
for CZ orders. Now the only way around is to simply edit my address and after
order placed change it back. because some stores have automated payment for shipping
and if I don´t change the country i don´t get the right options. I know people
in US will probably not understand why I need something but specifically for
people in SK/CZ many people have address in both countries to optimize shipping
cost etc. It´s from the past but that country difference makes me save 7 EUR
on shipping when I instead of 9€ pay just 2€.
 Author: SylvainLS View Messages Posted By SylvainLS
 Posted: Jan 23, 2020 11:04
 Subject: Re: Search for multiple pieces shops
 Viewed: 28 times
 Topic: Suggestions
View Message
View
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

SylvainLS (46)

Location:  France, Nouvelle-Aquitaine
Member Since Contact Type Status
Apr 25, 2014 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
Store Closed Store: BuyerOnly
BrickLink Discussions Moderator (?)
In Suggestions, seclimar writes:
  yes, this can help and solve partially...
would be nice to have all the shops that are fully (or partially) covering the
wanted list

That’s what Wanted Lists are for.

When you have made a Wanted List, go to the Buy page ( https://www.bricklink.com/v2/wanted/buy.page
).
Select your WL and it will show you all the stores that have some (or all) your
wanted items.

There are many options on the page.

Next Page: 5 More | 10 More | 25 More | 50 More | 100 More