<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=16&amp;t=1020" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2013-04-04T08:51:21+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=16&amp;t=1020</id>
<entry>
<author><name><![CDATA[Tom]]></name></author>
<updated>2013-04-04T08:51:21+01:00</updated>
<published>2013-04-04T08:51:21+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3860#p3860</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3860#p3860"/>
<title type="html"><![CDATA[Re: [QUESTION] Slot config access code after YubiTOTP]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3860#p3860"><![CDATA[
Hello,<br /><br />I have double checked just to be sure.<br /><br /><br />I configured slot 2 with a password and an access code. <br /><br />I tried to configure slot 2 from the TOTP app. (error: already configured)<br /><br />I deleted configuration in slot 2 providing my access code (thus the code and the configuration are now removed)<br /><br />I configured slot 2 with TOTP app. ( success )<br /><br />I reconfigured slot 2 with a password and set a new access code. (works)<br /><br /><br />This is the expected behavior. As i said earlier the TOTP app does not configure any access code.<br /><br />-Tom.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2195">Tom</a> — Thu Apr 04, 2013 8:51 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[DarkWinter]]></name></author>
<updated>2013-04-03T07:34:18+01:00</updated>
<published>2013-04-03T07:34:18+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3851#p3851</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3851#p3851"/>
<title type="html"><![CDATA[Re: [QUESTION] Slot config access code after YubiTOTP]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3851#p3851"><![CDATA[
Tom, thanks for the response. I did some more tinkering and here's what I discovered.<br /><br />Methodically, I attempted to unprotect and protect slot 2 using the Personalization Tool. I did this using my original access code and all zeros. Each time I received an error. I figured this meant I would be unable to delete the configuration in slot 2 due to not having the correct access code.<br /><br />I attempted to delete the configuration in slot 2 and was successful, despite not providing any access code. Odd?<br /><br />I programmed slot 2 with a quick static password, just to test things out. I was able to successfully apply an access code to slot 2. So I have complete control over my YubiKey, which is nice.<br /><br />I removed the access code and re-programmed slot 2 using the YubiTOTP utility. Again, I am not able to implement an access code.<br /><br />The conclusion is that the YubiTOTP utility renders that particular slot unable to use a slot configuration access code. Is this a bug or how it was designed?<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2368">DarkWinter</a> — Wed Apr 03, 2013 7:34 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Tom]]></name></author>
<updated>2013-04-02T09:50:31+01:00</updated>
<published>2013-04-02T09:50:31+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3839#p3839</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3839#p3839"/>
<title type="html"><![CDATA[Re: [QUESTION] Slot config access code after YubiTOTP]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3839#p3839"><![CDATA[
Hello DarkWinter,<br />I have bad news for you  <img src="https://forum.yubico.com/images/smilies/icon_e_sad.gif" alt=":(" title="Sad" /> <br /><br /><div class="quotetitle">DarkWinter wrote:</div><div class="quotecontent"><br />1) What is the slot configuration protection status of a YubiKey configured by the YubiTOTP utility?<br /></div><br /><br />There is not such a thing. The YubiTOTP app does not configure any protection access code. See screenshot below.<br /><br /><div class="quotetitle">DarkWinter wrote:</div><div class="quotecontent"><br />2) If there was an access code implemented, what is it or how to I find out what it is?<br /></div><br /><br />No code<br /><br /> <div class="quotetitle">DarkWinter wrote:</div><div class="quotecontent"><br />3) If the slot was protected by the YubiTOTP utility and I don't know the access code, will I be able to re-configure that slot in the future?<br /></div><br /><br />A Yubikey that was protected with an access code<span style="color: #FF0000"> cannot be reconfigured without the right code</span>. There is no way around that unfortunately.<br /><br /><div class="quotetitle">DarkWinter wrote:</div><div class="quotecontent"><br />In an unrelated sidebar question, I would like to satisfy some newb curiosity:<br /><br />4) Why do some TOTP implementations require an &quot;assist&quot; from the YubiTOTP utility, but the Symantec VIP service does not? From what I can tell it also generates timed OTPs via mobile apps, but the YubiKey VIP works fine with having a clock.<br /></div><br /><br />There are different algorithm that can be used for authentication. The one used from the VIP does not use a time variant like TOTP does. That is why you do not need an extra app. Since there is no battery in the Yubikey time is provided by the OS in the TOTP version.<br /><br />Hope this helps.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2195">Tom</a> — Tue Apr 02, 2013 9:50 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[DarkWinter]]></name></author>
<updated>2013-04-01T04:48:46+01:00</updated>
<published>2013-04-01T04:48:46+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3827#p3827</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3827#p3827"/>
<title type="html"><![CDATA[[QUESTION] Slot config access code after YubiTOTP]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1020&amp;p=3827#p3827"><![CDATA[
I just programmed my YubiKey VIP using the YubiTOTP tool in Slot 2. Prior to running the YubiTOTP utility, I cleared slot 2. It was previously configured with a YubiOTP key and protected with a configuration access code. I am pretty sure I cleared the access code (reset to all zeros) prior to running the YubiTOTP utility, but I am not sure.<br /><br />The YubiKey works great with the YubiTOTP scheme; however, I wanted to ensure the slot configuration was protected. Using the personalization tool, I attempted to protect Slot 2 with an access code. Unfortunately, the YuibKey will accept neither my &quot;old&quot; access code, nor an all zeros access code. I am left to surmise that the YubiTOTP utility protected the slot with an access code that is not shown to the user.<br /><br />1) What is the slot configuration protection status of a YubiKey configured by the YubiTOTP utility?<br /><br />2) If there was an access code implemented, what is it or how to I find out what it is?<br /><br />3) If the slot was protected by the YubiTOTP utility and I don't know the access code, will I be able to re-configure that slot in the future?<br /><br />In an unrelated sidebar question, I would like to satisfy some newb curiosity:<br /><br />4) Why do some TOTP implementations require an &quot;assist&quot; from the YubiTOTP utility, but the Symantec VIP service does not? From what I can tell it also generates timed OTPs via mobile apps, but the YubiKey VIP works fine with having a clock.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2368">DarkWinter</a> — Mon Apr 01, 2013 4:48 am</p><hr />
]]></content>
</entry>
</feed>