Friday, 2011-12-02

*** nowen (~nowen@adsl-74-176-212-133.asm.bellsouth.net) has joined #wikid13:30
*** prowlah has quit (Ping timeout: 244 seconds)15:46
*** Tony_ (c0e7a202@gateway/web/freenode/ip.192.231.162.2) has joined #wikid16:14
Tony_hello?16:14
nowenhi16:14
Tony_anyone working with Sonicwall and Wikid?16:16
nowenprobably not at the moment, but it does work16:16
Tony_yeah I have it working but I am a little confused on how it is truly 2 Factor Authentication16:16
nowenThe two factors are possession of the private key embedded in the token and knowledge of the PIN.16:17
nowenyou can thing of WiKID like certs, except more secure b/c the PIN is validated on the server16:18
nowenand there is no 'infrastructure'  just flat public/private keys16:19
Tony_so the PIN is not just a stored key on the client device it is also stored on the server?16:19
*** prowlah (~prowlah@unaffiliated/prowlah) has joined #wikid16:19
nowenthe PIN is not stored on the client at all, only on the server16:19
Tony_oh really?16:19
Tony_nice16:19
Tony_Ok we are planning on using the smart phone apps for token retrieval.  If the phone is lost and the PIN is compromised, we are vulnerable right?16:21
nowenwhen the PIN is entered, it is encrypted and sent to the server,  if the encryption is valide, the account active and the PIN correct, the OTP is generated on the server, encrypted and returned to the users16:21
nowenYes - if both factors are compromised, the system is compromised16:21
Tony_very cool.  Gotta say this was a breeze to setup.  I have also setup the Self Registration for the users as well16:22
nowenawesome - usually people ask way more questions during setup16:23
Tony_works really well.16:23
Tony_the documentation was very straight forward.16:23
Tony_though it seemed that the lines in the JSP mentioned in the doc were not a one to one with the JSPs I have but I found them16:24
nowenhmm  - yes - updates to code come faster than to the docs ;)16:24
nowenwe should probably just removed the line numbers16:25
Tony_but it wasn't too bad16:25
Tony_ok thank you for the help on the 2 Factor.  One more question.....16:26
nowenyep16:26
Tony_Is Wikid PCI certified?  or partnered?16:26
nowennothing official, but we have tons of PCI customers.16:26
nowenI don't think there is an official vendor approved program16:27
nowendo you need an invoice or quote?  or will you buy online?16:27
Tony_We actually already have a quote in hand we are getting our docs together to purchase.16:28
nowenok16:28
Tony_Are there any references for the PCI customers?16:28
nowenyou want to talk to someone that has been through PCI with WiKID?16:29
Tony_that would be great16:29
nowenshouldn't be an issue16:29
Tony_how can I get the contact info?16:32
nowenemail me at nowen @ wikidsystems.com16:35
*** Tony_ has quit (Quit: Page closed)16:41
*** prowlah has quit (Ping timeout: 244 seconds)16:51
*** prowlah (~prowlah@unaffiliated/prowlah) has joined #wikid16:53
*** nowen has quit (Quit: Leaving.)21:54
*** relix_ (266f9a61@gateway/web/freenode/ip.38.111.154.97) has joined #wikid23:03
relix_Hello23:03
relix_Can Wikid be used - with either an LDAP or RADIUS server - to produce an authentication requirement of username & password+OTP?23:04
relix_Instead of just username & OTP?23:04
asofrankanything is possible I suppose23:33
asofranknick isnt here right now, he could probably answer that for you23:34
asofrankyou might try the contact form on the site23:34
relix_ok, thx23:37
*** relix_ has quit (Quit: Page closed)23:38

Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!