Hi… When I login to FlightAwareI am getting prompted twice for two different multifactor mechanisms… The first is an alphabetical code that is sent to my email addressand then I am prompted again on a secondary page with the value in my authenticator app… How can this be fixed? I am a contributor with an Enterprise account - not sure if that makes a difference.

Same here. Also I get an email telling me that a login has occurred.

If you do not want the MFAI can remove it from your account. FlightAware has gone passwordlessso access to the email registered on the account is requiredbut the MFA is optional.

2 Likes

Hellocan you advise with these related questions please? I’ve not seen any comms from FA about these changes.

Is it possible to access MFA settings as a user? I have seen them offeredbut if not accepted I cannot find a setting for them.

I’ve seen some people say they are phone-basedothers saying they have TOTP MFA. Can you clarify please?

Is it possible for an account to return to a password login? I always have access to my password manager but I don’t always have access to email.

Is the original account password used for anything at all now or can it be removed from password managers?

Is it the data breach last year which prompted these changes?

This post may answer some questions for some folks.

3 Likes

Can you please remove the MFA from my account?

1 Like

I haven’t found a solution to this double-MFA either. Super annoying. I think it’s been bungled on the back end. We only need one or the other not the alpha code to the email AND a numeric code from the authenticator app to login. Sheesh!

1 Like

I’m ok with some form of MFAbut I’m getting TWO requests for verificationa 6-letter code to emailand then a second prompt for the 6-digit numeric code from MSFT Authenticator. It’s a real challenge trying to do this from a mobile device. Trusted devices would be a nice optionbut I’ll settle for one mode of MFA. Thanks in advance!

1 Like

The information in this post might help:

1 Like

I emailed contact@flightaware.com stating that “I want to discontinue using my existing authentication app.”

Within two hoursI received the following response from support@flightaware.com

“I have reset your secondary authentication setting. You should now only require the 6-digit code sent to your email to log in to your account. Please noteonce you are logged ineach session should last 30 days. Every time you access your accountthe 30-day session will reset. So in other wordsyou should not have to go through the sign-in process each time so long as you are signing in frequently and not logging yourself out of the account manually.”

1 Like

Interesting. Thank you

This email-only login trend is user-hostile. I have a password managerso requiring email codes to log in slows down the process significantly.

Even worsethere is a built-in way for apple devices to pick up those codes from your email and enter them automaticallybut somehow your emails are formatted so it doesn’t detect the codes in my email. So I’m stuck manually jumping back and forth.

Why not implement passkeys as an option so people don’t have to deal with this painful email process?

1 Like

thank you for this very helpful link

1 Like