LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 06-07-2006, 01:51 PM   #1
jantman
Member
 
Registered: Nov 2005
Location: New Jersey, USA
Distribution: SuSE
Posts: 492

Rep: Reputation: 31
One Time Password (OTP) on SuSE - Open Source?


Hi,

I've been using Linux for quite a few years, and my network (home network, but also used for web hosting, VPN, SAN, and development) has expanded to six boxes. I'm thinking about implementing OpenLDAP so that all of the machines will authenticate from a single source.

Now, what got me thinking: at work, I login to secure systems using a SafeWord card - it's a hardware OTP generator, where I type in a 4-digit numeric pin (it looks like a pocket calculator) and it pops up with a one-time password.

Is there anything based on the OTP scheme for a smaller network, importantly it has to be cheap or open-source?

A) How would this work server-side? Is there anything that works with LDAP or should I just go with Kerberos or something else?

B) what about the token? I emailed some of the companies that sell this stuff, and they have a 25-token minimum. Is there any company that will sell five of these, and has cheap software? Or what about making one using something like a Basic STAMP (www.parallax.com) with an LCD and a keypad? If not, I have a Palm OS handheld, what about using that? There would have to be some algorithm which generates the passwords from a pass key, and also some way of using the central authentication (LDAP server?) to have the same password set.

...just wondering if anything like that is out there.
 
Old 06-07-2006, 01:56 PM   #2
jantman
Member
 
Registered: Nov 2005
Location: New Jersey, USA
Distribution: SuSE
Posts: 492

Original Poster
Rep: Reputation: 31
Let me clarify something.... I've looked in to OPIE, etc.

I do not want anything where I would have to write down the list of passwords, or generate them on my Linux box.

I want to type in the passphrase and generate the password either on a Palm or other handheld system, or on an embedded hardware system, like a STAMP or other microcontroller.
 
Old 06-08-2006, 09:37 AM   #3
dgar
Member
 
Registered: Jun 2005
Location: Candia, NH
Distribution: Ubuntu, FC, RHE3, RHE4, CentOS
Posts: 121

Rep: Reputation: 15
OPIE can be configured this way. You can run the generator with the original seed and your password and get the same list of passwords on any machine/platform. Would be nice to write a PHP OPIE engine and put it up via SSL, too.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: Linux or UNIX password protecting files with open source cryptographic software LXer Syndicated Linux News 0 05-15-2006 05:21 AM
LXer: Time to Cull Proprietary Software from Open Source Branding LXer Syndicated Linux News 0 01-04-2006 12:31 PM
LXer: Time for a Culling of Open Source Craze LXer Syndicated Linux News 0 01-04-2006 11:16 AM
an open source program that only gives the user a certain amount of time to input? dr_zayus69 Programming 4 05-22-2005 10:56 PM
Open source: Time to pay up Ephracis Linux - News 4 02-15-2005 09:28 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 07:08 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration