[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: One time passwords?



At 02:24 PM 7/5/2007 +0200, Marcel Hicking wrote:
>We'd like to secure a Apache/PHP-based web application login with
>one time passwords (with one of those nifty keychain or creditcard
>style hardware tokens).
>From what I see there is RSA (mostly windows focused), Aladdin
>(claim some Linux support) and CryptoToken (claim to have an .so
>with a PHP binding iirc).

We use RSA tokens to handle authentication on all the routers and VPN access
(Cisco).  We've also had them authenticate on a special Sun box.  So their
API selection is pretty good.  I've never seen it used on a Linux box but I
would be very surprised if they didn't have a Linux plugin.  Once u get that
on the box u can task it with authenticating anything u want.  There is also
a Perl module that can supposedly authenticate tokens back to the ACE server
but I've never tried it.






--
REMEMBER THE WORLD TRADE CENTER         ---=< WTC 911 >=--
"...ne cede malis"

00000100



Reply to: