[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-Disclosure] One-Time Pad Authentication



Yo Jonathan!

On Sun, 30 Nov 2003, Jonathan A. Zdziarski wrote:

> I'm interested in coding a one-time pad authentication system; similar
> to SecurID or other types of token authentication only with software
> tokens.

No need to reinvent that wheel.  Check out RFC 2289/ STD 61.  Not many
RFCs make it to standard status and this one did:

        ftp://ftp.rfc-editor.org/in-notes/std/std61.txt

You can get the Bellcore reference implementation here:
        ftp://thumper.bellcore.com/pub/nmh/

PAM-s/key here:
        http://www.srce.hr/~kreator/projects/tarballs/

It is even available on PalmOS:
        http://gnukeyring.sourceforge.net/

Lots more to be found with a little googling.


RGDS
GARY
---------------------------------------------------------------------------
Gary E. Miller Rellim 20340 Empire Blvd, Suite E-3, Bend, OR 97701
        gem@rellim.com  Tel:+1(541)382-8588 Fax: +1(541)382-8676

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html