Page MenuHomePhorge

CODE: Track OTPs already used
Closed, SpitePublic

Description

To prevent replay attacks, OTPs already used should be considered invalid.

Details

Ticket Type
Task

Event Timeline

vanmeeuwen raised the priority of this task from to 60.
vanmeeuwen updated the task description. (Show Details)
vanmeeuwen added a project: Admin.
vanmeeuwen moved this task to Backlog on the Admin board.
vanmeeuwen changed Ticket Type from Task to Task.
vanmeeuwen subscribed.
vanmeeuwen moved this task from Backlog to In Progress on the Admin board.

This is implied with HOTP, and implemented, but not yet for TOTP.

TOTPs should validate from the time issued + margin on to the time submitted + margin.

vanmeeuwen moved this task from Backlog to Unknown Object (Project Column) on the PACK board.Oct 16 2015, 10:55 AM
vanmeeuwen removed a project: PACK.