otpasswd-talk
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Otpasswd-talk] Using OTP to kind of fix MITM.


From: Luke Faraone
Subject: Re: [Otpasswd-talk] Using OTP to kind of fix MITM.
Date: Tue, 22 Dec 2009 11:19:52 -0500

On Tue, Dec 22, 2009 at 10:52, Tomasz bla Fortuna <address@hidden> wrote:
Problem is with size. Passcards would have to be reorganized somehow.
Label can be currently only 29 character long, which is not enough to
fit fingerprint [...]
Is it hard to create a key with same 6 fields of fingerprint?

It is computationally feasible with today's technology.

Would it be acceptable to split the key along multiple lines?

Also we can place randomart on the back of passcard. It might be a bit tricky to
print still. Can PuTTY display randomart?

Not currently. I'll send in a feature request, and will see if the algorithm can be extracted from OpenSSH. 
 
We can put whole fingerprint at the end of each passcard; still I've
got no idea how to retrieve it from ssh in a program.

$ ssh-keygen -lf /etc/ssh/ssh_host_rsa_key.pub
2048 0f:8a:4e:23:89:74:92:6c:1a:d1:7b:2f:0b:f0:d1:cf /etc/ssh/ssh_host_rsa_key.pub (RSA)

--
Luke Faraone
http://luke.faraone.cc

reply via email to

[Prev in Thread] Current Thread [Next in Thread]