• Hey, guest user. Hope you're enjoying NeoGAF! Have you considered registering for an account? Come join us and add your take to the daily discourse.

Two Step Verification Is Now Live For US and EU PSN accounts

Auto_aim1

MeisaMcCaffrey
I'm on the old firmware btw and it showed up. Pretty nice that I don't have to remove my CC details after each purchase now.
 

Dart

Member
I'm on the old firmware btw and it showed up. Pretty nice that I don't have to remove my CC details after each purchase now.


Yeah it is!

So does this mean the 2 step verification work everytime you sign in on PS4 or when making a purchase/account details?
 
I really wish they would use something like google authenticator. SMS 2 step-verification can be spoofed and is no longer considered secure.

I agree they should use/make 2FA can be used with Authenticator.

Sorry I am still curious about how SMS can be spoofed. AFAIK phone networks cannot be hijacked unless your phone network is connected into user-made network. Last thing I heard is SS7 issue.

You have Youtube videos I can watch for reference?
 

styl3s

Member
Yeah it is!

So does this mean the 2 step verification work everytime you sign in on PS4 or when making a purchase/account details?
Normally two-step works when someone tries to log into a new location right or different machine right?

My xbox/steam never makes me do it locally on my pc/xbox when i sometimes get asked the question when logging onto the website because of the IP change same with gmail/amazon.
 

micster

Member
Major props to Sony for letting you choose any country phone number. Means I can protect my UK account with my Japanese phone number.
 
I'm on the old firmware btw and it showed up. Pretty nice that I don't have to remove my CC details after each purchase now.

That's assuming you trust them to be storing your CC details on their server safely. But kudos to them for finally joining the modern world and giving us 2FA.
 

Demoskinos

Member
I agree they should use/make 2FA can be used with Authenticator.

Sorry I am still curious about how SMS can be spoofed. AFAIK phone networks cannot be hijacked unless your phone network is connected into user-made network. Last thing I heard is SS7 issue.

You have Youtube videos I can watch for reference?

Yeah I don't understand either. You're getting an automated message not putting any information in and also even if they could do it they would have to know your number which seems... unlikely.
 

inner-G

Banned
I got this?:

8emqxdO.jpg

It takes me to a 404 error page when I try to get more info. Kinda need to know how it would work since I'd be using it on a PS3.

It's a funny error page though:
 
Done. I'm sure it will become a pain in the ass when I access the store via the web, but it's worth the very minor inconvenience.
 

Qvoth

Member
I live in Indonesia though my account is Region 1 which is US.

Can I use this with my Indonesian phone number...?

yep
choose the indonesian flag, and then take out the 0 in front of your mobile number
so if your number is 081XXX
it becomes indonesian flag 81XXX
 

joebruin

Member
Don't forget to generate and save your backup codes in case you ever lose your phone or otherwise don't have access to it..
 

OmegaFax

Member
Google Voice numbers work in any region I've tried so far (US, EU, JPN) ... eh, word of caution. Do not sign up for multiple accounts too fast. I got a page that said I accessed PSN too frequently.
 

DragoonKain

Neighbours from Hell
For PS4 if you ever completely log out yes you'll need a code to sign back in keep in mind though that the PS4 will stay "signed in" as long as you never actually go to the menu and hit log out.

For older devices you need to generate a device password which is basically a way for them to make you verify that you own the devices that your trying to log in from. Once you use the generated device passwords you can then use your regular password any time after that from what ive gathered.

Just tested it and nope. Apparently for all older devices you can no longer use your original PSN password after you activate this. You have to use their generated PW each time you log in.

Was it this way for everyone else?
 

watdaeff4

Member
Just tested it and nope. Apparently for all older devices you can no longer use your original PSN password after you activate this. You have to use their generated PW each time you log in.

Was it this way for everyone else?

But you can stay signed in though correct?
 

TheSeks

Blinded by the luminous glory that is David Bowie's physical manifestation.
Correct.

What I haven't tested is if you have to generate a new PW if you try to log into Vita also or if you just use the same one you generate for PS3 or vice versa.

You need a new one for each device. But AFAIK if you set it to "auto-signin" it'll use that password alone. It's similar to the old Google-account password permissions you'd give non-Google account authorization stuff to, like Sony's e-mail account on their handheld.
 

Chille

Member
I agree they should use/make 2FA can be used with Authenticator.

Sorry I am still curious about how SMS can be spoofed. AFAIK phone networks cannot be hijacked unless your phone network is connected into user-made network. Last thing I heard is SS7 issue.

You have Youtube videos I can watch for reference?

I heard some famous YouTubers got hacked by having the phone company send them a sim card replacement.
 

DragoonKain

Neighbours from Hell
You need a new one for each device. But AFAIK if you set it to "auto-signin" it'll use that password alone. It's similar to the old Google-account password permissions you'd give non-Google account authorization stuff to, like Sony's e-mail account on their handheld.

I'm assuming the website login is always your original PW though, right?
 

Kyrios

Member
Sony has a FAQ page up about everything

https://www.playstation.com/en-au/get-help/help-library/my-account/access-and-details/information-about-2-step-verification.psvita/

When you need to sign-in with 2SV

You need to sign-in with 2SV:

When you first sign-in to PSN after enabling 2SV.
When you sign-in to PSN after signing-out.
Every time you sign-in to PSN if auto sign-in is switched off.
Occasional security checks when signing-in on web browser/PS App.

You do not need to sign-in with 2SV if:

2SV is switched off.
Automatic sign-in is enabled and you have previously signed-in with 2SV.
If you are signed-into PSN and you are accessing account management (you only need your account password).
If Password at Checkout is switched on and you are making a PlayStation Store purchase (you only need your account password).

Device Setup Password
If you have 2SV switched on, your PS3, PS Vita, PS TV, PSP or Xperia devices need to be authorised using a Device Setup Password before you can sign-in on them. You need to generate a new device setup password to authorise a new device or for re-authorising a device. You can use the same device setup password every time you sign in on that device.

Backup codes

If you can’t receive a verification code, you can use a backup code to sign-in on PS4 or web/PS App. Make sure you keep a copy of your Backup codes in a safe place. See our ‘Issues signing-in’ article for more help with this.

Account password

This is your usual account password. You need it to access account management functions once you are signed in on any device and for the first step of 2SV sign-in on:

PS4,
web browser,
PS App, or
Bravia.
You do not need your account password to sign in on any other device - only the device setup password.
 
Top Bottom