Choose authentication methods
Compare authenticators, MFA, recovery, and stronger sign-in practices.
- Explain authentication factors and select methods appropriate to risk.
An authenticator provides evidence used during sign-in. Common factor categories are something you know, something you have, and something you are. Multi-factor authentication combines distinct factors; asking for two passwords is not two-factor authentication. Choose methods based on risk, usability, recovery, and phishing resistance. Authentication guidance evolves, so use current standards for deployment details.
A small example
factors = {"password": "know", "security_key": "have", "biometric": "are"}
for name, category in factors.items():
print(name, "is a factor you", category)password is a factor you know security_key is a factor you have biometric is a factor you are
MFA can reduce the impact of a stolen password, but methods differ in resistance to phishing and account recovery attacks. Secure enrollment, lost-device recovery, and authenticator revocation are part of the authentication system. NIST’s Digital Identity Guidelines describe assurance levels and authenticator lifecycle requirements for their scope.
Key takeaways
Explain authentication factors and select methods appropriate to risk.
Treat access as a lifecycle: grant deliberately, review regularly, and revoke promptly.
Lesson quiz
5 questions · pass with 4 correct · up to 50 XP
Passing this quiz completes the lesson and keeps your streak going. Questions you miss come back in review sessions later.
Questions about this lesson
Stuck? Ask. Figured something out? Share it. Explaining is one of the best ways to learn.
Loading posts…