One time password


 
Thread Tools Search this Thread
Special Forums Cybersecurity One time password
# 1  
Old 05-20-2008
One time password

Hi folks,


Postfix 2.3.8
SquirrelMail 1.4.11


I'm prepared installing One-time-password on SquirrelMail as experiment and don't have a clue to start. On googling I found;


SquirrelMail and OPTs

WiKID Strong Authentication System
SourceForge.net: WiKID Strong Authentication System


Please help. TIA


B.R.
satimis
# 2  
Old 05-20-2008
I didn't find useful documentation on the link you showed, but I may have missed it. Here's a general article on Wikipedia, I hope it will give you some hints and directions.
# 3  
Old 05-20-2008
The link you are looking for is:

How to configure Webmail for WiKID Strong authentication — WiKID Strong Authentication

This document describes how to add WiKID two-factor authentication to SquirelMail. Please note that it uses radius, which is a feature of the commercial Enterprise version (it is a licensed 3rd party add-on). If you want to use the open source Community Edition, you will need to integrate the WiKID PHP network client with the SquirelMail web interface. The PHP network client allows you to add two-factor authentication to any php app and it is LGPL. I think a WiKID/Squirelmail plugin would be great.

I wrote that tutorial a long time ago, but I suspect it is still fairly accurate. I see that the install tutorial I used is stil up too: Quickstart: Fedora Core

Also, since I wrote that we have added mutual https authentication (the token client will validate that the SSL cert of target site matches the cert expected) which prevents network-based man-in-the-middle attacks. All you have to do it add the ssl SquirrelMail URL in the domain page on the WiKID server.

HTH,

Nick
# 4  
Old 05-21-2008
Quote:
Originally Posted by sysgate
I didn't find useful documentation on the link you showed, but I may have missed it. Here's a general article on Wikipedia, I hope it will give you some hints and directions.
Noted with thanks.


B.R.
satimis
# 5  
Old 05-21-2008
Hi Nick


Thanks for your advice and URL.


Quote:
This document describes how to add WiKID two-factor authentication to SquirelMail. Please note that it uses radius, which is a feature of the commercial Enterprise version (it is a licensed 3rd party add-on). If you want to use the open source Community Edition, you will need to integrate the WiKID PHP network client with the SquirelMail web interface.
Could you please explain in more detail how to integrade WikID PHP network client with SM web interface.


Quote:
I think a WiKID/Squirelmail plugin would be great.
Where can I find the plugin? Thanks.


Quote:
I wrote that tutorial a long time ago, but I suspect it is still fairly accurate. I see that the install tutorial I used is stil up too: Quickstart: Fedora Core
I'm running Ubuntu 7.04. I'll try the "quickstart" with some modification to see whether it also work here.


Quote:
Also, since I wrote that we have added mutual https authentication (the token client will validate that the SSL cert of target site matches the cert expected) which prevents network-based man-in-the-middle attacks. All you have to do it add the ssl SquirrelMail URL in the domain page on the WiKID server.
OK. Thanks.


B.R.
Satimis
# 6  
Old 05-21-2008
Quote:
Originally Posted by satimis
Hi Nick


Thanks for your advice and URL.



Could you please explain in more detail how to integrade WikID PHP network client with SM web interface.
Download the PHP network client from our website:
Network Clients — WiKID Strong Authentication
It has information and code examples on how to add WiKID two-factor authentication to PHP applicatons.
Quote:
Where can I find the plugin? Thanks.
There is no such plugin. You would have to write it.
Quote:

I'm running Ubuntu 7.04. I'll try the "quickstart" with some modification to see whether it also work here.
Just so you know, WiKID is still RPM-based and you will have some troubles running it on Ubuntu. Porting help is welcome and our next major release will support multiple OSs.

Nick

Quote:

OK. Thanks.


B.R.
Satimis
# 7  
Old 05-22-2008
Quote:
Originally Posted by nowen
Download the PHP network client from our website:
Network Clients — WiKID Strong Authentication
It has information and code examples on how to add WiKID two-factor authentication to PHP applicatons.
Hi Nick,


Noted with thanks.


Quote:
There is no such plugin. You would have to write it.
Noted.


Quote:
Just so you know, WiKID is still RPM-based and you will have some troubles running it on Ubuntu. Porting help is welcome and our next major release will support multiple OSs.
I have "alien" and "dpkg" running here.


$ sudo alien AAA.rpm

will convert it as AAA.deb package.


Then run;

$ sudo dpkg -i AAA.deb

to install the package.


Anywhere I'll go through the document first before start.


B.R.
satimis
Login or Register to Ask a Question

Previous Thread | Next Thread

9 More Discussions You Might Find Interesting

1. Forum Support Area for Unregistered Users & Account Problems

Password sent via reset password email is 'weak' and won't allow me to change my password

I was unable to login and so used the "Forgotten Password' process. I was sent a NEWLY-PROVIDED password and a link through which my password could be changed. The NEWLY-PROVIDED password allowed me to login. Following the provided link I attempted to update my password to one of my own... (1 Reply)
Discussion started by: Rich Marton
1 Replies

2. Shell Programming and Scripting

How to prvenent giving password run time in schell scripting?

Hi I'm copying around 20 vi files from solaris server-A to server-B using 'scp' command.I have included all 20 scp commands in one shell script. Proplem is, while executing each scp command its prompting for my NIS password of server A. Please see below How to get rid of password prompt.??? (1 Reply)
Discussion started by: buzzme
1 Replies

3. Shell Programming and Scripting

How to give password at run time in a shell script?

hi, how can i pass a password automatically when a shell script is running. i have shell script(runscript.sh) which call another shell script inside it as a different user. runscript.sh contains su - nemo -c "/bin/main_script.sh" but when i execute "runscript.sh" it try to run... (7 Replies)
Discussion started by: Little
7 Replies

4. Emergency UNIX and Linux Support

Time delay problem in asking password

Hi All, I have solaris-11 global and multiple non-global zones running, which all are on same network. They are not in NIS. When we open putty session and give user-name, it takes long time in asking password (around 40-50 seconds) on Global zone. While on non-global zones, it is working... (9 Replies)
Discussion started by: solaris_1977
9 Replies

5. UNIX for Advanced & Expert Users

Update users password change time

Hello - Is this possible on Unix machines? Can we update user password change time? (6 Replies)
Discussion started by: manju--
6 Replies

6. UNIX for Dummies Questions & Answers

machine hangs for some time after giving password.

Hi I m trying to take a console of linux machine using putty. Whenever i connect to the machine and give password details to log into the machine it hangs for some time and then it allow the login. I m totally clueless why it is happening suddenly . ---------- Post updated at 01:14 AM... (1 Reply)
Discussion started by: pinga123
1 Replies

7. UNIX for Dummies Questions & Answers

Changing Password process takes a long time

We are running unix. After a reboot of the server we have found that changing password takes a long time. if type in passwd "username" you can type in the 1st instance of the password , press enter , then it will wait for about 3 minutes before bringing up the confirm password line typing it in... (4 Replies)
Discussion started by: AIXlewis
4 Replies

8. OS X (Apple)

Multiple hosts SSH NO PASSWORD - each time it overrides the last key gen

Hello, here is my problem: I have 20 machines that need to SSH into 1 machine throughout the day. The issue is every time I go through the process of putting my keys from one of the computers that needs to SSH to the server that needs to accept all the incoming SSH's it overrides the last one. ... (6 Replies)
Discussion started by: yoyoyo777
6 Replies

9. Shell Programming and Scripting

To simultaneously update password change in two server at a time

I am new beginner in Unix and little experienced in BaaN ERP. Problem Statement: I have to run a BaaN session. I have to change the password for both primary and secondary server by using this session. On primary server only few people has access permission (say 10). But on secondary server... (0 Replies)
Discussion started by: s_chandrakar
0 Replies
Login or Register to Ask a Question