ghacks Technology News

Facebook Login Approvals, Optional Two-Factor Authentication

Facebook about a month ago began to roll out a two-factor authentication system designed to protect user accounts from unauthorized access. Two-Factor authentication is designed to add a second form of authentication to the login process, usually in form of a code that is send to the user.

PayPal for instance is offering VeriSign ID Protection devices that act as a second layer of authentication. Google recently introduced two-step verification for Google accounts as well.

The company confirmed today on the official Facebook blog that the feature has been rolled out to all Facebook users. Every Facebook user has now the option to enable two factor authentication on Facebook. The protection is called Facebook Login Approvals, and designed to add a second layer of protection to the log in process on the social networking site.

Facebook users can enable the new security feature under Account > Account Settings > Account Security.

facebook login approvals

This launches a wizard that guides the user through the activation of the security service. Login Approvals works in the following way:

You link a mobile phone number to your Facebook account. This mobile phone number receives a code via SMS whenever someone with the correct username and password tries to log in from an unauthorized computer.

login approvals

This means that you do not get a code when you log in from your home computer. Attackers do not get to see the code either when they do not enter the right login credentials.

The only two scenarios where the code is displayed are unauthorized login attemps by attackers who have your username and password, and first time log ins on new computer systems or devices.

Facebook users will furthermore be notified of log in attempts from unauthorized computer systems. An unsuccessful attempt usually means that someone else is in possession of a user’s Facebook username and password. Users get options to change their account password right away to protect their account further.

Back to the configuration. Codes are currently only send to mobile phones via SMS. This means that you need to add at least one mobile phone number to your Facebook account.

Users who have not done that already are asked to add a mobile phone number to their account to complete the Login Approvals setup.

confirm your phone

It is afterwards necessary to confirm the phone by entering a code that is send to it by Facebook. The mobile phone number and Facebook account are from that moment on linked.

What happens if you lose your phone? You still have the option to log in from computer systems that have been authorized previously.

Facebook users who want to add an extra layer of protection to their account should consider enabling login approvals. Some users may not want to add a mobile phone number to their Facebook account on the other hand. There is unfortunately no way around this currently if you want to make use of Login Approvals. (via Facebook Login Approvals)

Related Articles:

Facebook Adds (Optional) Two-Factor Authentication
How To Properly Protect Your Facebook Account, Login
Facebook Improves Security, One-Time Login, Remote Logout
Facebook Login Page Help And Troubleshooting
Facebook Login Page

Enjoyed the article?: Then sign-up for our free newsletter or RSS feed to kick off your day with the latest technology news and tips, or share the article with your friends and contacts on Facebook, Twitter or Google+ using the icons below.



About the Author:Martin Brinkmann is a journalist from Germany who founded Ghacks Technology News Back in 2005. He is passionate about all things tech and knows the Internet and computers like the back of his hand. You can follow Martin on Facebook or Twitter.

Author: , Friday May 13, 2011 -
Tags:, ,


Responses so far:

  1. Unfortunately, it doesn’t appear to work with Google Voice

    - Dave

  2. Andrea says:

    DO NOT USE THE FB APPROVAL SYSTEM!!! It has had me locked out of my account AND my business account for four days now!! The system does not work! It would not save my computer as a home device so I deleted my number thinking that would shut it off…. well it doesnt. Instead it makes you completely stuck because log in approvals are still on BUT my number is not in there to send me a code. soooo now I’m unable to get on my FB or my business page which is REALLY taking a hit because of this. I’ve reported the bug repeatedly and emailed the FB team over and over again and have not recieved anything except one automated message that said “We cannot offer support for this issue”

    DO NOT USE LOG IN APPROVALS!

    • anonGHacks says:

      Instead of deleting your number thinking it would turn it off, why didn’t you just turn it off properly by unchecking “Require me to enter a security code sent to my phone”?

  3. Hannah says:

    Andrea I wish I’d seen your message about this before I opted for approved logins…. Exactly the same has happened to me. Have you been able to get back on yours now?

  4. Rajesh says:

    thank god for not blocking my account it only was disactivated

  5. Michael says:

    I too can no longer log into my account because this system is not working, I been trying to find a solution but I have had not feedback what so ever from Facebook, and I confirmed that other services that use functions like this do work.

    • hannah says:

      Michael, I was locked out for a week but managed rto get back in my addind a new email address onto my facebook (you can do this if you remember your security question and answer from when you first registered. It takes 24hours for you to be able to regain access, it then allows you to log in, and add a new mobile number (I used a friends) and got the security code phoned through to me, I was then able to get back in! Good luck, hope this helps!

  6. Babar khan says:

    dear,
    sir,my account is deactivate bcoz i lost my mobile and ow i can”t get security code and i also an”t add reconized device to active my account please tell me what can i do ?there is no rplyy from facebooki too can no longer log into my account because this system is not working, I been trying to find a solution but I have had not feedback what so ever from Facebook, and I confirmed that other services that use functions like this do work
    kingofkhan_2006@yahoo.com

  7. Julie says:

    I’ve sign up for a login approval but I’ve lost my phone and I don’t have a recognized device. What will I do? Help me! I’ve locked out for four months :( email me here juriechan@yahoo.com if there’s a solution thank u!!

  8. masab gondal says:

    hi,
    i am a user of facebook.i have been facing problem to get my login approval code on my mobile for last 2days.i tried many resends of the approval code but did not receive it.neither Facebook admin did not reply my issue neither they responded via anyemail regarding the issue.can any body tell my how to access my code or facebook account without code.
    thnx

  9. R.Aditya Srikanth says:

    The mobile number registered in my account is inactive , so when
    Facebook does security check and sends the security code in my mobile number I couldn’t get it , so how am I going to change my mobile number ? Coz I couldn’t log in because of security check procedures?

  10. Monster says:

    I think it could be a good idea if Facebook develops its own Two Factor Authentication app for smart phones – Similar to the Google Authenticator App available for iPhones at the iTunes store. That way, the authentication tokens are created on the the smart phone locally – Instead of relying exclusevely in their SMS Gateaway which may become unstable, as well as the Mobile network of the users. The smart phones could even be out of celular network reach but as long as it has battery it can still serve authentication tokens through the app itself.

  11. milos says:

    security code mobile face

  12. Sharon Stephens Hicks says:

    I am having the same problem? So why hasn’t anyone correctly answered this question? Why can’t we turn login approvals off? And why does fb totally ignore our emails? I’ve been off for 4 days and slao deleted fb from my phone thinking that would help but no . so now I cant even login from my mobile phone. Can anyone please help???? Thank you in advance.

Leave a Reply   Follow Ghacks   Subscribe To Comment Rss

Subscribe without commenting

© 2005-2012 Ghacks.net. All Rights Reserved. Privacy Policy - About Us