On 7/3/23 16:39, Michael Thomas wrote:
As far as what else can be done, I think quite a lot these days can be done.Agree. As far as can tell there's a glaring hole in current IETF authentication protocols in that we don't have general purpose protocol support (not something that requires or expects a web browser) for (a) multi-factor authentication and (b) hardware keys.