3 ms·
Good password? That doesn't sound very secure. Why not at least use an RSA token generator. It takes 5 lines of code. What OS does the robot computer run? Gre
by borisk 16y ago
Good password? That doesn't sound very secure. Why not at least use an RSA token generator. It takes 5 lines of code.
What OS does the robot computer run?
Great product BTW ;)
- tlb 16y agoIt runs FreeBSD 8. We use SSL between the robot & cloud, but user logins to the web interface use passwords over https. I'd like to support something stronger. Can someone point to a website with truly secure logins I can poke at?
- count 16y agohttps is fine - just couple it with PKI enabled smart cards (these work generally by providing a client-side certificate for your TLS handshake). This is the strategy the DoD is using for most/all web auth stuff now.
- borisk 16y agoProvided security is not the selling feature of your product, I'd say use a simple and effective 6 digit RSA token generator. http://www.mygaming.co.za/news/PC/4428-World-Warcraft-look-the-Battlenet-authenticator.html http://www.mygaming.co.za/news/PC/4428-World-Warcraft-look-t... http://bnetauth.freeportal.us/specification.html http://bnetauth.freeportal.us/specification.html
- henning 16y agoChoosing a good password and using some other basic precautions like HTTPS will deter nearly all script kiddies and most everyone else. When you don't look like an easy target, your actual security risks are much lower than a lot of other people's because almost no one will care enough to try to go any further.
- borisk 16y agoNot at all. These robots, if they become popular, will be a fat fat target for all kind of hackers. All it takes is to add the web interface URL pattern to the popular key loggers. If there are many ppl who use the robots, some will have their PCs rooted already.