Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
dogacel
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
dogacel
1y ago
All very valuable comments! Actually I had a small edit on the "forget password" flow. I agree that an asymmetric key makes much sense. Secret key can be left at the user device while server only contains the public key. That soun
32.
▲
by
dogacel
1y ago
Thanks for all your insights, I have updated the post to outline this as a "theoretical" use-case rather than a practical one. I also revised it to include random number approach.
33.
▲
by
dogacel
1y ago
Hi, > Also, the author struggled to check their implementation. One can easily compare an implementation of many websites by grabbing the QR codes they use for login and importing into your favorite authenticator app and also decoding th
34.
▲
by
dogacel
1y ago
Good catch. In my mind storing that random number is similar to storing a plain-text password, thus I thought they were generating TOTPs. Let's hear from others how they implemented it.
35.
▲
Behind the 6-digit code: Building HOTP and TOTP from scratch
(blog.dogac.dev)
250 points
by
dogacel
1y ago
|
74 comments
36.
▲
Running a Home Cluster Exposed to the Internet (Securely) via Cloudflare Tunnel
(blog.dogac.dev)
3 points
by
dogacel
2y ago
|
0 comments
37.
▲
Decidability of Our Jobs and AI Replacing Software Engineers
(blog.dogac.dev)
2 points
by
dogacel
2y ago
|
0 comments