Go Back   Wireless and Wifi Forums > News > Newsgroups > comp.security.misc
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 10-09-2009, 09:05 PM
Rahul
Guest
 
Posts: n/a
Default simple two-factor solution for logins to Linux system: one time passcodes

As a small (~25 user) educational Linux cluster so far we have only used
"strong" [sic] passwords, and I/P restrictions for securing user logins.

THis has a lot of flaws. I've been thinking of adding some sort of two-
factor authentication solution. I've used RSA-Secure IDs in the past but
those seem designed for huge users like banks, corporates etc. Our access
needs are simple and we want a cheap, simple solution.

I looked at VASCO and CryptoCard but they seem similar. Are there any other
options? Perhaps open source?

--
Rahul

Reply With Quote
  #2 (permalink)  
Old 10-09-2009, 09:49 PM
Keith Keller
Guest
 
Posts: n/a
Default Re: simple two-factor solution for logins to Linux system: one time passcodes

["Followup-To:" header set to comp.os.linux.misc.]

On 2009-10-09, Rahul <nospam@nospam.invalid> wrote:
>
> I looked at VASCO and CryptoCard but they seem similar. Are there any other
> options? Perhaps open source?


You might look into OPIE:

http://www.rho.cc/index.php/linux2/4...h-pam-on-linux

OPIE seems a bit old, so perhaps there is better otp software out there
(or perhaps it's just the links I was able to find that are old).

--keith

--
kkeller-usenet@wombat.san-francisco.ca.us
(try just my userid to email me)
AOLSFAQ=http://www.therockgarden.ca/aolsfaq.txt
see X- headers for PGP signature information


Reply With Quote
  #3 (permalink)  
Old 10-10-2009, 02:44 AM
Maxwell Lol
Guest
 
Posts: n/a
Default Re: simple two-factor solution for logins to Linux system: one time passcodes

Rahul <nospam@nospam.invalid> writes:

> As a small (~25 user) educational Linux cluster so far we have only used
> "strong" [sic] passwords, and I/P restrictions for securing user logins.




You could look into the Yubikey ($20 a piece)
http://www.yubico.com/products/yubikey/

You could have everyone get an ebay/paypal account and get one of the $7
tokens.


Reply With Quote
  #4 (permalink)  
Old 10-10-2009, 02:38 PM
google@cornelinux.de
Guest
 
Posts: n/a
Default Re: simple two-factor solution for logins to Linux system: one timepasscodes

Hallo Rahul,

as a matter of fact our company has a two-factor OTP solution, which
is based on Linux and uses the HMAC-OTP Algorithm (defined in
RFC4226).
It supports different kind of tokens (Aladdin eToken PASS or NG OTP,
Safeword Alpine or a mobile OTP Token.
There is a LinOTP Community Edition which is completely GPL (see
http://opensource.lsexperts.de) and an LSE LinOTP Enterprise Edition,
that supports more Tokens, a better mangement and has maintenance ans
support.

The Community Edition also has a simple "software token" (in fact a
python script to simulate an OTP-Token) to try it and get started
easily.

Kind regards
Corneilus

On 9 Okt., 22:05, Rahul <nos...@nospam.invalid> wrote:
> As a small (~25 user) educational Linux cluster so far we have only used
> "strong" [sic] passwords, and I/P restrictions for securing user logins.
>
> THis has a lot of flaws. I've been thinking of adding some sort of two-
> factor authentication solution. I've used RSA-Secure IDs in the past but
> those seem designed for huge users like banks, corporates etc. Our access
> needs are simple and we want a cheap, simple solution.
>
> I looked at VASCO and CryptoCard but they seem similar. Are there any other
> options? Perhaps open source?
>
> --
> Rahul



Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
More that 2800 Solutions manuals (PART 1) BERGH alt.cellular.motorola 0 07-06-2009 12:06 AM
More that 2800 Solutions Manuals (PART 1) BERGH alt.cellular.nokia 0 07-04-2009 08:41 PM
Security fears over MS October patches... Imhotep alt.computer.security 31 10-23-2005 01:58 AM
best practices to secure home's network strutsng@gmail.com alt.internet.wireless 31 10-14-2005 11:22 AM
DC fans Frank alt.comp.hardware 16 07-14-2005 04:14 AM


All times are GMT. The time now is 06:52 AM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45