Industry guru Dave Taylor offers tech support on technical and business topics, including iPhone, iPod, Microsoft Windows, Sony PSP, cellphones, online advertising, CSS, Web design, business, Unix, Linux, SEO, Mac OS X, and shell script programming.     


Set up "Login Approvals" 2-step account security on Facebook?

I really like how Google has a new 2-step login process [see Enable Google 2-Step Account Verification] and am wondering if Facebook has something similar, where my account and password are insufficient for someone to log in to my account?


Dave's Answer:

There's no question, poorly-thought-out passwords and account security systems are a problem for everyone. Even a fairly daft hacker can download a wifi sniffer and grab account and password pairs off the airwaves in a cafe or other public place. Indeed, I believe that the current era of login + password pairs is going to fade away, replaced by better and more robust identity verification systems.

My personal favorite is biometrics -- I have a Windows laptop that I log in to by swiping my index finger across a sensor, for example -- but that's hard to deploy widely.

What we do all seem to have, however, are cellphones, and therein lies the secret to 2-step verification systems (or what Facebook calls "login approvals"): you need your password and access to your previously registered mobile device, which is sent a unique one-time numeric code that you also enter to demonstrate you're you. Google has an even slicker system with a one-time number pad application that generates six-digit codes based on the time, date and your account credentials. As I write this, for example, "Authenticator" is showing me 857832.

Facebook was a bit late on the bandwagon, but they too now have a similar system and I strongly encourage everyone to sign up for it and add the additional layer of security to your Facebook account. Called login approvals it requires the additional numeric code only when you try to log in to your account from a computer that Facebook's never seen you use before. This is optimal if you think about it because your work and home machines? They're well known and it doesn't get in the way. Someone grabs your password information at a local Starbucks, however, and when they try to log in it fails. Better, you then get a text message associated with an unknown login attempt and can take corrective action (like changing your password).

Sound smart? Yeah, it is. So let me show you how to enable it!

Log in to your Facebook account, then choose "Account Settings" from the "Account" menu on the top right:

facebook login cellphone sms 1

On the Account Settings page, scroll down until you find the section called "Account Security":

facebook login cellphone sms 2

As you can see, the option you want is labeled "Login Approvals", though I'll make a slight sidetrack here and highlight that the first is also smart to set up and quite possibly the second too. Take a close look at both: it's easier to keep things tightly battened down than to close the barn door after the mixed metaphor cows escape. :-)

Choose "Require me to enter a security code sent to my phone" and it'll pop up a window that explains what you're enabling and confirm you really want to do it. You do. Here's what you'll see:

facebook login cellphone sms 3

Okay, that's fair. Click on "Next" to proceed...

facebook login cellphone sms 4

Now enter your cellphone number, and remember that you're responsible for any text message charges, not Facebook, but if you don't use lots and lots of different computers, you'll rarely if ever see these messages anyway. Click "Continue".

On your cellphone -- I have an Apple iPhone 4 -- you'll very quickly receive a text message from Facebook that'll look like this:

facebook login cellphone sms 5

Meanwhile, on your computer screen, it'll have switched to a window that requests you enter that verification code:

facebook login cellphone sms 6

Enter the verification code -- it'll look like "pxd7tr" or similar -- and click on "Continue". For future reference, it'll ask you to assign a name to the computer you're currently on:

facebook login cellphone sms 7

I suggest something mnemonic like "MacBook @ Work" or "Vaio" or similar. Enter your choice then click "Continue" one last time...

facebook login cellphone sms 8

That's all there is to enabling 2-step sms-based account verification in Facebook. Now, stop reading and go do it! Someday you'll thank me.


More Useful Facebook Help Articles:
✔   How can I block event invites on Facebook?
I have a friend who keeps inviting me to webinars where he pitches his make-money programs. I really like the guy, but hate...
✔   Shortcut for blocking games on Facebook?
I saw your article from a while back about blocking Coasterville notifications on Facebook and was wondering if you had a shortcut or...
✔   Update Facebook profile picture without notifying friends?
Hey Dave! Whenever I change my profile picture on Facebook all my friends are notified of this change. Not good. How do I...
✔   How do I permanently block CoasterVille on Facebook?
My brother is really into Facebook games and the latest that he seems obsessed with is called CoasterVille. I think it's all about...
✔   Disable audio notification sound in Facebook?
This is something new: When I'm logged in to Facebook I now get an annoying audio beep every time someone posts something new...

Let's stay in touch!
Sign up for my weekly AskDaveTaylor Newsletter and you'll receive even more tech and gadget help right to your inbox, along with exclusive news and industry updates. It's good stuff. I promise!
    Enter your name: and your email addr:  





Categorized: Facebook Help   (Article 9927, Written by )
Tagged: account security, facebook privacy, facebook security, logins, passwords
Previous: What's my Foursquare account number?
Next: How do I connect my Google AdSense and Analytics accounts?




Reader Comments To Date: 5

yoga anand said, on August 29, 2011 1:34 AM:

pls my account open it

Tony said, on August 30, 2011 12:59 AM:

Hello,
I have completed all of the steps required to enable login approival codes to be sent to my cellphone but I keep getting the login approvals are not required message.....any ideas??

Jamal said, on January 18, 2012 1:24 PM:

When i tray to log in is telin me my account is temporarily unavailable

Sabina Bavon said, on February 23, 2012 12:35 PM:

Open my account

Ahmed Khan said, on October 31, 2012 2:00 PM:

i like this website :)

Starbucks coffee cup I do have a lot to say, and questions of my own for that matter, but first I'd like to say thank you, Dave, for all your helpful information by buying you a cup of coffee!

I do have a comment, now that you mention it!











I will never send you any unsolicited email. Ever.






Check This Out Too...

 
Look for Answers
Need Help? Ask Dave Taylor!


Follow Me on Pinterest

Find Me on Google+
ADT on G+
© 2002 - 2013 by Dave Taylor. All Rights Reserved.

Note: This web site is for the purpose of disseminating information for educational purposes, free of charge, for the benefit of all visitors. We take great care to provide quality information. However, we do not guarantee, and accept no legal liability whatsoever arising from or connected to, the accuracy, reliability, currency or completeness of any material contained on this web site or on any linked site. Further, please note that by submitting a question or comment you're agreeing to my terms of service, which are: you relinquish any subsequent rights of ownership to your material by submitting it on this site. My lawyer says "Thanks".
"Ask Dave Taylor®" is a registered trademark of Intuitive Systems, LLC.