1 / 14

One Time Password

One Time Password. Onno W. Purbo Onno@indo.net.id. Referensi. Buku “Keamanan Jaringan Internet”, Elexmedia Komputindo. Login Normal. Red Hat Linux release 6.0 (Hedwig) Kernel 2.2.5-15 on an i486 tony login:. Problem. Password & userid plan text Rentan sniffer Solusi

lilac
Download Presentation

One Time Password

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. One Time Password Onno W. Purbo Onno@indo.net.id

  2. Referensi • Buku “Keamanan Jaringan Internet”, Elexmedia Komputindo

  3. Login Normal Red Hat Linux release 6.0 (Hedwig) Kernel 2.2.5-15 on an i486 tony login:

  4. Problem • Password & userid plan text • Rentan sniffer Solusi • Password hanya digunakan satu kali • Password berubah setiap kali

  5. Penemu .. • Ide • Leslie Lamport • Software OTP – S/KEY 1991 • Phil Karn, KA9Q – Bellcore • Neil Haler • John Walden

  6. Challenge Red Hat Linux release 6.0 (Hedwig) Kernel 2.2.5-15 on an 1486 tony login: Challenge:994 672jar Password:

  7. Challenge dari Server • Iterasi • Seed

  8. Kalkulator Pada Client • Seed • Iterasi • Frasa rahasia client

  9. Kalkulator pada Klien

  10. Responds .. • Tiap client / user akan memberikan kalkulasi responds yang beda karena frasa rahasianya berbeda.

  11. Red Hat Linux release 6.0 (Hedwig) Kernel 2.2.5-15 on an i486 tony login: tony Challenge:994 672jar Password: Login incorrect login: tony Challenge:983 672jar Password: (turning echo on) Password:was leo cal amy tire of Last login:Sun Nov 21 23:03:19 from tony [tony @ tony tony]$

  12. Instalasi OTP • Mendapatkan installer OTP untuk sistem • Mendapatkan kalkulator untuk client • Mengkompile dan melakukan instalasi komponen-komponen OTP • Melakukan inisialisasi user dengan kunci masing-masing • Meng-enable OTP

  13. Inisialisasi OTP tony.cisitu.net > keyinit Adding wanda: Reminder you need the 6 english words from the skey command Enter sequence count from 1 to 9999: 1000 Enter new key [default nd12043]: heather S/key 1000 heather S/key access password: ORB HURD LENT CRAM MELD HOSE ID wanda s/key is 1000 heather ORB HURD LENT CRAM MELD HOSE

  14. X Windows tony.cisitu.net login:tony Callenge:974 672jar Password:

More Related