Make sure you are logged in to multiple browsers before enabling 2 factor
We've had several people reach out to us who have accidentally locked themselves out of their account whilst trying to setup 2 factor authentication.
Whilst it is possible for us to disable 2fa for an account directly from the database, for privacy and security reasons, we won't do this at the request of an external/second account.
However, all is not lost! Enabling 2fa will not log you out of existing sessions, so if you make sure you are logged in to a second browser before enabling 2fa, you will be able to disable it again if you run in to any issues.
Yeah, that didn't work for me. Do you have any recommendations, as the administrator of this instance, on how a user can remediate a 2fa implementation that is failing so wildly that it requires this thread to exist? Do you have a "whoops, do over" button?
I feel bad for you on this one, clearly some 2FA is better than no 2FA, but the implementation of this from the Lemmy devs leaves a lot to be desired. Ah well, they are clearly trying, and I am sure it will get better