<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=16&amp;t=265" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2009-02-26T16:20:23+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=16&amp;t=265</id>
<entry>
<author><name><![CDATA[Massyn]]></name></author>
<updated>2009-02-26T16:20:23+01:00</updated>
<published>2009-02-26T16:20:23+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=265&amp;p=1189#p1189</id>
<link href="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1189#p1189"/>
<title type="html"><![CDATA[Re: Oops - I broke my Yubikey...]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1189#p1189"><![CDATA[
Don't panic <img src="https://forum.yubico.com/images/smilies/icon_e_smile.gif" alt=":-)" title="Smile" />  The Yubikey is still very much secure....<br /><br />When I purchased my 2 YKs, I asked Yubico to provide me the AES keys for both of them. I had to have the AES keys to test my own Decrypter scripts.   I simply used the AES key for my test key, and programmed it again.<br /><br />This particular key wasn't used a lot, and since I've coded my own Yubikey Authentication server, I knew that the recurring count was the only variable to get right (ie the counter that increments every time you insert the key into the USB), that, and I had to have the AES key.  The personalization tool actually blows away the counter.<br /><br />The basic idea is this : If you have the AES key, you CAN spoof a Yubikey output.  That's not rocket science.  When purchasing a key from Yubico, they don't provide the AES key, unless you specifically ask for it, and you can prove you actually have the keys.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=148">Massyn</a> — Thu Feb 26, 2009 4:20 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[griley]]></name></author>
<updated>2009-02-26T15:46:14+01:00</updated>
<published>2009-02-26T15:46:14+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=265&amp;p=1188#p1188</id>
<link href="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1188#p1188"/>
<title type="html"><![CDATA[Re: Oops - I broke my Yubikey...]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1188#p1188"><![CDATA[
Something sounds weird about this post... First it can't be done and then it works after numerous retries.. Can we get an explanation as to what squence of events took place to reinstate the key. It all sounds insecure to me.<br /><br />Thanks<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=418">griley</a> — Thu Feb 26, 2009 3:46 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Massyn]]></name></author>
<updated>2009-02-24T13:48:53+01:00</updated>
<published>2009-02-24T13:48:53+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=265&amp;p=1163#p1163</id>
<link href="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1163#p1163"/>
<title type="html"><![CDATA[Re: Oops - I broke my Yubikey...]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1163#p1163"><![CDATA[
I managed to revive my key.  With the AES key provided by Support to me a few months back, I've been able to reprogram it, and after inserting and ejecting the key quite a few times, it finally got recognized by Yubico's backend..<br /><br />Happy happy!<br /><br />CHeers<br /><br />Phil<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=148">Massyn</a> — Tue Feb 24, 2009 1:48 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[network-marvels]]></name></author>
<updated>2009-02-23T13:20:09+01:00</updated>
<published>2009-02-23T13:20:09+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=265&amp;p=1155#p1155</id>
<link href="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1155#p1155"/>
<title type="html"><![CDATA[Re: Oops - I broke my Yubikey...]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1155#p1155"><![CDATA[
The current release of the Yubico Management Server does not have any mechanism to regenerate a AES key for the existing YubiKey.  Yubico is planning to add this functionality in the next release of the Yubico Management server.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=280">network-marvels</a> — Mon Feb 23, 2009 1:20 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Massyn]]></name></author>
<updated>2009-02-23T05:51:33+01:00</updated>
<published>2009-02-23T05:51:33+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=265&amp;p=1150#p1150</id>
<link href="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1150#p1150"/>
<title type="html"><![CDATA[Re: Oops - I broke my Yubikey...]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1150#p1150"><![CDATA[
<div class="quotetitle">network-marvels wrote:</div><div class="quotecontent"><br />Hi Phil,<br /><br />The YubiKey can be reprogrammed from the &quot;One Time Password&quot; mode to the &quot;Static Password&quot; mode and vice-versa.<br />Please note that after reprogramming, all the YubiKey counters are reset to zero. The OTP generated from the YubiKey after reprogramming can not be validated against the live Yubico Validation server even though the YubiKey is again reprogrammed with the original/new YubiKey ID and the AES key stored in the Yubico Validation server database.<br /><br />Feel free to write back to us in case you face any problems.<br /></div><br />I think the firmware is too old on this key.  I wanted it to be a Static Password key, but only after I tried to change it I realized that it's not capable of static password use.<br /><br />I do understand the counters are reset to zero, hence the reason I'd like to know if a new AES key can be generated at Yubico that I can enter into this broken key, to return it to original working condition.<br /><br />Cheers<br /><br />Phil<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=148">Massyn</a> — Mon Feb 23, 2009 5:51 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Dick]]></name></author>
<updated>2009-02-20T20:29:55+01:00</updated>
<published>2009-02-20T20:29:55+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=265&amp;p=1139#p1139</id>
<link href="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1139#p1139"/>
<title type="html"><![CDATA[Re: Oops - I broke my Yubikey...]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1139#p1139"><![CDATA[
<div class="quotetitle">network-marvels wrote:</div><div class="quotecontent"><br />Hi Phil,<br /><br />The YubiKey can be reprogrammed from the &quot;One Time Password&quot; mode to the &quot;Static Password&quot; mode and vice-versa.<br />Please note that after reprogramming, all the YubiKey counters are reset to zero. The OTP generated from the YubiKey after reprogramming can not be validated against the live Yubico Validation server even though the YubiKey is again reprogrammed with the original/new YubiKey ID and the AES key stored in the Yubico Validation server database.<br /><br />Feel free to write back to us in case you face any problems.<br /></div><br /><br />If that's the case, what's the purpose of being able to enter a YK and its parameters into the YMS?<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=359">Dick</a> — Fri Feb 20, 2009 8:29 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[network-marvels]]></name></author>
<updated>2009-02-20T16:19:14+01:00</updated>
<published>2009-02-20T16:19:14+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=265&amp;p=1136#p1136</id>
<link href="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1136#p1136"/>
<title type="html"><![CDATA[Re: Oops - I broke my Yubikey...]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1136#p1136"><![CDATA[
Hi Phil,<br /><br />The YubiKey can be reprogrammed from the &quot;One Time Password&quot; mode to the &quot;Static Password&quot; mode and vice-versa.<br />Please note that after reprogramming, all the YubiKey counters are reset to zero. The OTP generated from the YubiKey after reprogramming can not be validated against the live Yubico Validation server even though the YubiKey is again reprogrammed with the original/new YubiKey ID and the AES key stored in the Yubico Validation server database.<br /><br />Feel free to write back to us in case you face any problems.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=280">network-marvels</a> — Fri Feb 20, 2009 4:19 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Massyn]]></name></author>
<updated>2009-02-20T04:26:05+01:00</updated>
<published>2009-02-20T04:26:05+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=265&amp;p=1128#p1128</id>
<link href="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1128#p1128"/>
<title type="html"><![CDATA[Oops - I broke my Yubikey...]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=265&amp;p=1128#p1128"><![CDATA[
I got 2 Yubikeys... One is my production key, and I wanted to use the other as the static password one, then I discovered that the firmware is too old, and it does not support static password.  Now that Yubikey is &quot;bricked&quot;.  It is returning a string that is not valid (though it's changing after every key press), but Yubico is not accepting it.<br /><br />Is there a way you can issue me a new AES key for this device, so I can fix it with the personalization tool?<br /><br />Thanks!<br />Phil Massyn<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=148">Massyn</a> — Fri Feb 20, 2009 4:26 am</p><hr />
]]></content>
</entry>
</feed>