Different countries have different systems. In Sweden, our “banking app” is not really for doing bank tasks, it’s everywhere in society as a 2FA app. Buying a bus ticket, booking a medical appointment, paying bills, logging in to various government and non-government web sites, signing a contract, etc. They all use the banking 2FA app. It’s really really difficult to have a normal life without this app.
True. I was more talking about “banking apps” being more than seeing the balance of my accounts in a web browser instead of using their app. BankID is used for much more than that.
The system works through a series of redirects. Say if I have to prove my identity to some government website, it offers different authentication methods, one of which is my bank. I 2F authenticate with my bank the way we agreed, then it redirects me back to the originating site.
Different banks offer different systems for 2FA. Most also offer an app. Google services are not always required. If you don’t want to use an app, there are ways; in addition to username/password, usually a SMS for strong auth, or some code from a database that I have for weak auth.
No app, OS-independent.
If my bank forced my to use an app that only works with google services, I’d change banks. As I did, actually.
That’s actually very similar to what we have, minus the option to change to a different bank, since all our banks are using the same 2FA app and there’s not really any other options or at least not better options. This is a very bad system, building our society on a proprietary app from a private company, but… that’s where we are unfortunately. Actually, recently our government has realized this and is developing a neutral state controlled 2FA app, but it will only run under android and iOS, so… yeah.
Also Kivra being the only way to get lönespecifikation from some communes (Skellefteå) unless accessing the intraservice from approved connection, then accessing the schedule app, then printing the lönespec
In finland there is also Mobile authentication that is as strong as bank authentication, though I’m not sure how exactly it works. You need to activate it with your operator
I actually started using that recently.
It’s super simple.
Just set it up with your provider, usually just a few clicks and a 2FA on their website or app. After that you can just type your phone number, click ok and tap in a pin instead of the whole bank app rigmarole.
Different countries have different systems. In Sweden, our “banking app” is not really for doing bank tasks, it’s everywhere in society as a 2FA app. Buying a bus ticket, booking a medical appointment, paying bills, logging in to various government and non-government web sites, signing a contract, etc. They all use the banking 2FA app. It’s really really difficult to have a normal life without this app.
It’s always hilarious when I see Europeans complaining about the U.S. government when their own does shit like this.
The U.K. doesn’t have jury trials anymore [for “less serious” crimes]…
As a swede not living in sweden (so I don’t have a Swedish bank account) it is literally bureaucracy hell to do anything in sweden for me.
And I live in France, with its insane bureaucracy.
It does not require Play Integrity though… yet.
True. I was more talking about “banking apps” being more than seeing the balance of my accounts in a web browser instead of using their app. BankID is used for much more than that.
This also works in abrowser. At least in Finland.
Then we have different systems. How do you prove that you are you online in Finland? Do you use usernames+passwords or some 2FA ID system?
The system works through a series of redirects. Say if I have to prove my identity to some government website, it offers different authentication methods, one of which is my bank. I 2F authenticate with my bank the way we agreed, then it redirects me back to the originating site.
Different banks offer different systems for 2FA. Most also offer an app. Google services are not always required. If you don’t want to use an app, there are ways; in addition to username/password, usually a SMS for strong auth, or some code from a database that I have for weak auth.
No app, OS-independent.
If my bank forced my to use an app that only works with google services, I’d change banks. As I did, actually.
That’s actually very similar to what we have, minus the option to change to a different bank, since all our banks are using the same 2FA app and there’s not really any other options or at least not better options. This is a very bad system, building our society on a proprietary app from a private company, but… that’s where we are unfortunately. Actually, recently our government has realized this and is developing a neutral state controlled 2FA app, but it will only run under android and iOS, so… yeah.
Also Kivra being the only way to get lönespecifikation from some communes (Skellefteå) unless accessing the intraservice from approved connection, then accessing the schedule app, then printing the lönespec
How exactly do you 2FA with the bank without the bank’s 2FA app?
Source, from Finland.
In finland there is also Mobile authentication that is as strong as bank authentication, though I’m not sure how exactly it works. You need to activate it with your operator
I actually started using that recently.
It’s super simple.
Just set it up with your provider, usually just a few clicks and a 2FA on their website or app. After that you can just type your phone number, click ok and tap in a pin instead of the whole bank app rigmarole.
Highly recommend.