<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Students that use 2-Step in Peer-Peer Topics</title>
    <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78413#M2926</link>
    <description>&lt;P&gt;Within our division we enforce 2-Step for all non-student accounts, and leave it optional for all students. We have a few hundred of our junior and senior high students that have enabled this feature to protect their account, which is a good thing. I would personally like that number in the tens of thousands compared to the hundreds that we have now.&lt;BR /&gt;&lt;BR /&gt;For the upcoming school year, our Government is moving to ban cellphones in classrooms.&lt;BR /&gt;&lt;BR /&gt;So is there a way to allow our students to continue to have 2-Step enabled but if they are using a Chromebook or accessing their Google Workspace environment on our corporate network, they are not prompted for 2-Step.&lt;BR /&gt;&lt;BR /&gt;I would like to have some type of 2-Step exception policy for our students when they are on our network, compared to disabling it totally. As I can foresee a huge uptake of 2-Step for students once they find out they can keep their cellphones at their desk, as the device will be needed for verification.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 26 Jul 2024 21:20:02 GMT</pubDate>
    <dc:creator>PatrickM</dc:creator>
    <dc:date>2024-07-26T21:20:02Z</dc:date>
    <item>
      <title>Students that use 2-Step</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78413#M2926</link>
      <description>&lt;P&gt;Within our division we enforce 2-Step for all non-student accounts, and leave it optional for all students. We have a few hundred of our junior and senior high students that have enabled this feature to protect their account, which is a good thing. I would personally like that number in the tens of thousands compared to the hundreds that we have now.&lt;BR /&gt;&lt;BR /&gt;For the upcoming school year, our Government is moving to ban cellphones in classrooms.&lt;BR /&gt;&lt;BR /&gt;So is there a way to allow our students to continue to have 2-Step enabled but if they are using a Chromebook or accessing their Google Workspace environment on our corporate network, they are not prompted for 2-Step.&lt;BR /&gt;&lt;BR /&gt;I would like to have some type of 2-Step exception policy for our students when they are on our network, compared to disabling it totally. As I can foresee a huge uptake of 2-Step for students once they find out they can keep their cellphones at their desk, as the device will be needed for verification.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jul 2024 21:20:02 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78413#M2926</guid>
      <dc:creator>PatrickM</dc:creator>
      <dc:date>2024-07-26T21:20:02Z</dc:date>
    </item>
    <item>
      <title>Re: Students that use 2-Step</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78505#M2927</link>
      <description>&lt;P&gt;If you're using Chromebooks, my understanding is that 2 factor is built into the power button on most modern devices.&lt;/P&gt;&lt;P&gt;&lt;A href="https://security.googleblog.com/2019/11/using-built-in-fido-authenticator-on.html?m=1#:~:text=Once%20the%20user%20is%20successfully,device%20is%20to%20be%20trusted" target="_blank"&gt;https://security.googleblog.com/2019/11/using-built-in-fido-authenticator-on.html?m=1#:~:text=Once%20the%20user%20is%20successfully,device%20is%20to%20be%20trusted&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Sun, 28 Jul 2024 21:11:11 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78505#M2927</guid>
      <dc:creator>Bill_Gibson</dc:creator>
      <dc:date>2024-07-28T21:11:11Z</dc:date>
    </item>
    <item>
      <title>Re: Students that use 2-Step</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78768#M2928</link>
      <description>&lt;P&gt;That is true, and if the student used the same Chromebook from the cart each time it wouldn't be an issue. They would only be prompted for 2SV the first time using that device. But we all know that it is a free-for-all when it comes to retrieving a Chromebook from the cart in the classroom.&lt;BR /&gt;&lt;BR /&gt;Too bad there was an exception policy bases on IP address, much like what Microsoft Entra ID has.&lt;/P&gt;</description>
      <pubDate>Mon, 29 Jul 2024 18:54:54 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78768#M2928</guid>
      <dc:creator>PatrickM</dc:creator>
      <dc:date>2024-07-29T18:54:54Z</dc:date>
    </item>
    <item>
      <title>Re: Students that use 2-Step</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78903#M2931</link>
      <description>&lt;P&gt;We use a third party MFA which has many of those features.&lt;/P&gt;&lt;P&gt;I am unsure if Google has this built in.&lt;/P&gt;</description>
      <pubDate>Tue, 30 Jul 2024 16:44:38 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/78903#M2931</guid>
      <dc:creator>kaned</dc:creator>
      <dc:date>2024-07-30T16:44:38Z</dc:date>
    </item>
    <item>
      <title>Re: Students that use 2-Step</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/80149#M2949</link>
      <description>&lt;P&gt;If the chromebooks are being managed by you there is a setting that allows the chromebook to "trust" the user after the first time they use 2FA. Settings -&amp;gt; Device Settings -&amp;gt; Sign-In Screen -&amp;gt; "Always show user names and photos". We're going to be testing this ourselves for a handful of devices that our staff use so I don't know if it will occasionally request the 2FA handshake again but I was able to log in without using my 2FA key after the first log in, if I wipe the chromebook then I have to do 2FA on first login.&lt;/P&gt;</description>
      <pubDate>Wed, 31 Jul 2024 22:15:28 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/80149#M2949</guid>
      <dc:creator>MattDPenn</dc:creator>
      <dc:date>2024-07-31T22:15:28Z</dc:date>
    </item>
    <item>
      <title>Re: Students that use 2-Step</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/80919#M2967</link>
      <description>&lt;P&gt;It does work, and we have no issues with Staff as they have been assigned a Chromebook or Chromebox.&amp;nbsp; They are prompted once, then all is fine afterwards. Unfortunately with our students, they do not always use the same Chromebook from the cart, so they will get prompted for MFA on the new device.&lt;BR /&gt;&lt;BR /&gt;Guess we will wait and see how much of an issue this will be in a few weeks when school starts and students need to leave their phones at the front of the classroom.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Aug 2024 14:36:16 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/80919#M2967</guid>
      <dc:creator>PatrickM</dc:creator>
      <dc:date>2024-08-02T14:36:16Z</dc:date>
    </item>
    <item>
      <title>Re: Students that use 2-Step</title>
      <link>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/81188#M2971</link>
      <description>&lt;P&gt;I'm not aware of a method to IP filter 2FA prompting and don't think it exists. Other options are to use 2SV is to print recovery codes or use a hardware dongle. Good luck. It's happening in lots of places.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Aug 2024 04:36:32 GMT</pubDate>
      <guid>https://www.googleforeducommunity.com/t5/Peer-Peer-Topics/Students-that-use-2-Step/m-p/81188#M2971</guid>
      <dc:creator>BrandonB</dc:creator>
      <dc:date>2024-08-05T04:36:32Z</dc:date>
    </item>
  </channel>
</rss>

