nanog mailing list archives

Re: South Africa On Lockdown - Coronavirus - Update!


From: Mark Tinka <mark.tinka () seacom mu>
Date: Mon, 23 Mar 2020 23:23:33 +0200



On 23/Mar/20 22:39, Keith Medcalf wrote:

Hardware tokens are nothing more than dedicated hardware TOTP devices with perhaps a few additional parameters 
programmed at manufacturing time.  Example, RSAID keyfobs are nothing more than TOTP generators with manufacturer 
programmed secrets and dedicated clock and display hardware with no external interface which permits access to the 
secret.

For some of my banks, OTP tokens are issued via their device apps. I
used to have physical key fobs for that; those are now gone.

Admittedly, not all of my banks have made the transition. On the other
hand, many of the banks have moved on to support Face ID and QR code
verification via device apps.

Not specific to VPN access management, but in the same vein.

Mark.


Current thread: