Tuesday, 2013-09-24

*** coolacid has quit (Ping timeout: 260 seconds)12:41
*** coolacid (~CoolAcid@unaffiliated/coolacid) has joined #wikid12:42
*** nowen (~nowen@99-174-93-102.lightspeed.tukrga.sbcglobal.net) has joined #wikid13:07
*** Hildrum (171999a9@gateway/web/freenode/ip.23.25.153.169) has joined #wikid15:43
Hildrumcan you tell me how long the 1 time password is vaild for?15:44
nowenHildrum: that is configurable per domain.  the default is 60 secs, but it can be anythign15:44
nowendoes it not say on the token?15:44
Hildrumi assume it changes every 60 seconds15:45
nowensort of.  it doesn't just 'change' you request a new one.  it is valid for whatever the server admin has setup15:45
Hildrumso would it give me true 2 factor auth like rsa does15:46
nowenyes,  the two factors are knowledge of the PIN and possession of the (private key embedded in) the software token15:47
nowenwe get a lot of people moving from RSA15:47
Hildrumis it PCI complient15:47
nowenyes, we have a ton of PCI customers15:47
Hildrumok the onetime password is static until some one makes the change. Admin etc....15:48
nowennope15:48
Hildrumits a generated every session and it random15:49
nowenwhen the user wants to login, they open the token and enter the PIN.  it is encrypted and sent to the sever15:49
nowenserver15:49
nowenif the PIN is correct, the account valid and the encryption valid, the OTP is generated, encrypted and returned15:49
Hildrumok15:50
nowenthen the user logs in with the OTP and their username15:50
Hildrumthanks15:50
nowendownload the server and play with uit15:50
Hildrumcan i create the server in a VM15:51
nowensure15:51
nowenyou can use our ISO. just boot like centos/rhel 32 bit15:51
nowenhow did you find out about us?15:52
Hildrumgoogle15:52
Hildrumany mobile phone support15:53
Hildrumfor the client15:53
nowenyes, iphone, android15:53
nowenmaybe windows mobile still15:53
nowenblackberry I'm not sure. no one has asked recently15:53
nowenshouldn't be too hard to update15:53
Hildrumso you install the client on your phone.  select the domain15:54
nowenand enter pin15:54
Hildrumyes15:54
Hildrumwhats the cost for 25 users15:54
Hildrumwhy would i not wnat to just use watchguards mobile ID 2 factor auth?  sell me15:55
nowenhttp://www.wikidsystems.com//pricing15:55
nowenis this it:                                              When a user logs in to the WatchGuard SSL Web  portal,  a Java applet or ActiveX component launches and prompts the  user to enter a password or PIN.15:56
nowenor does it use SMS?15:57
Hildrumit has a app thats all i know15:58
nowenI don't see it in the play store15:58
Hildrumok15:59
nowenit looks like it uses sms, which is not securable15:59
nowenyou might as well email an OTP15:59
Hildrumdo users have to create a seed of any sort?16:00
nowenhow about this for a reason: I can't find any technical/security information about via google!16:00
Hildrumlol16:00
*** josmith (48c40b51@gateway/web/freenode/ip.72.196.11.81) has joined #wikid16:00
nowenthe keys are generated on the device and server and exchanged.  after this exchange, the users get a registration code.  That code needs to be associated with their username on the server16:00
nowenit can be done manually or programmatically by them using some scripts we provide16:01
josmith@nowen, trying to purchase a 10 user license, but finance doesnt want to use google wallet, is there a phone number they can call16:01
Hildrumcan you send me a client list16:01
nowenHildrum: will you agree to be a reference?16:01
nowenjosmith: I can send you an invoice if you like16:01
Hildrumcant promise16:01
nowenyeah, not many companies will endorse products16:02
nowenHildrum: talk to joevano16:02
josmithwhat email address should i have them send to you?16:02
nowenjosmith: we don't process cards over the phone, sorry16:02
nowennowen@wikidsystems.com16:02
nowenI'll look for it16:02
Hildrumericnhildrum@gmail.com16:03
josmithunderstood and thanks16:03
nowenjosmith: we will be changing as google checkout is going away16:03
josmithyou should be getting an email shortly16:03
josmiththanks again16:03
nowenjosmith: is the server setup?16:04
Hildrumthanks16:04
nowenHildrum: no problem.  Get the server set up and working. we will do all the pre-sales engineering you need, then you pay when it is all working.16:05
*** Hildrum has quit (Quit: Page closed)16:05
*** josmith has quit (Ping timeout: 250 seconds)16:08
*** nowen has quit (Quit: Leaving.)22:00
*** joevano has quit (*.net *.split)23:47
*** bdashrad has quit (*.net *.split)23:47
*** coolacid has quit (*.net *.split)23:47
*** coolacid (~CoolAcid@unaffiliated/coolacid) has joined #wikid23:54
*** joevano (~joevano@bzflag/developer/JoeVano) has joined #wikid23:54
*** bdashrad (~bdashrad@ocean.bdashrad.com) has joined #wikid23:54

Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!