Friday, 2012-05-25

*** R\Peaceman has quit (Ping timeout: 272 seconds)00:24
*** laszlof_ (~laszlof@wookie.tvog.net) has joined #wikid00:33
*** joevano has quit (*.net *.split)00:38
*** laszlof has quit (*.net *.split)00:39
*** joevano (~joevano@bzflag/developer/JoeVano) has joined #wikid00:44
*** R\Peaceman (~CharlieCe@mail1.limhamn.com) has joined #wikid07:22
R\PeacemanAnyone knows how to get PfSense's OpenVPN server working with WiKID?07:22
*** Nicola (d55c1dfe@gateway/web/freenode/ip.213.92.29.254) has joined #wikid07:41
NicolaHello. I have a question about wikid architecture07:41
NicolaI don't understand where is the "two factor"07:41
NicolaIf a user sends a PIN, gets an OTP back and then send username and OTP, which is the 2nd factor?07:42
Nicolathe user sent a PIN and an uername: the OTP is received based on these 2 infos07:42
Nicolaanybody?09:22
joevanoNicola: public/private keys10:33
joevanonowen will be in here in a few hours he definatelly has a much better understanding of it than me10:36
joevanohere is some info he wrote in a blog post about the security of software tokens http://www.wikidsystems.com/WiKIDBlog/more-on-the-security-of-software-tokens10:37
joevanoheaded to work... be back in about an hour10:38
*** nowen (~nowen@adsl-74-176-163-56.asm.bellsouth.net) has joined #wikid12:12
joevanonowen: Nicola had some questions overnight... he is still in channel, but I don't think he is activelly around12:20
nowenthanks12:21
nowenNicola: are you around?12:21
nowenNicola: there is are private encryption keys embedded in the token. the two factors are possession of the keys and knowledge of the PIN.12:22
*** laszlof_ is now known as laszlof12:34
*** R\Peaceman has quit ()13:13
nowenok - I am off for the weekend.  see you guys on Tuesday most likely13:52
*** nowen has quit (Quit: Leaving.)13:53
Nicolathank you14:06
*** Eduardo_ (bea74608@gateway/web/freenode/ip.190.167.70.8) has joined #wikid14:15
NicolaI still don't understand what the OTP sent by the server adds in terms of security14:26
Nicolaif I have the private key and I know the PIN, I can use those 2 factors to autenticate14:27
Eduardo_Good morning Nicola14:32
Eduardo_I have a question about the J2ME token client14:34
Eduardo_The J2ME tokens doesn't work in offline mode, just in online mode14:35
Eduardo_I need the offline mode feature. Is there a way i could get it?14:35
*** Eduardo_ has parted #wikid (None)14:39
joevanoNicola: that is true, but then you would need every system you use to support using both a key and a pin14:40
*** Eduardo_ (bea74608@gateway/web/freenode/ip.190.167.70.8) has joined #wikid14:40
Eduardo_Is there anyone of the support team that can help me?14:41
joevanoby using a system like this and configuring the systems you are accessing to use radius to offload that authetication you can get 2fa on any system that supports radius14:42
joevanoEduardo_: nowen is the support system and he will be back on Tuesday... holiday here in the US14:43
Eduardo_Nowen?14:44
Eduardo_He'll be back the next week?14:44
joevanoNick Owen... the owner and writer of the software14:44
Eduardo_Oh ok, thanks a lot14:45
joevanoyes. but why do you say the J2ME client doesn't work in offline mode? is that in the documentation?14:45
Eduardo_I was testing all the wikid clients, I saw that the iphone client have this offline mode. If I remember well the android also have it, but the J2ME doesn't and thats the one I need the most. In the documentations i didn't see that the J2ME have an offline mode that's why I'm asking here...14:48
joevanoyeah, I don't have any experience with the J2ME client... only iPhone that is why I was asking14:50
joevanoI can't find any info on an offline mode either, so nowen would be the one to answer that14:51
Eduardo_Alright, I guess I'll have to wait until tuesday then... thanks joe14:52
*** Eduardo_ has parted #wikid (None)15:07

Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!