Yubico Forum
https://forum.yubico.com/

static pasword and OTP compatability with Yubico server
https://forum.yubico.com/viewtopic.php?f=16&t=424
Page 1 of 1

Author:  IMRothman [ Fri Oct 23, 2009 4:41 pm ]
Post subject:  static pasword and OTP compatability with Yubico server

I just received my yubikey 2.0. I found out about it from Security Now. I have searched the forums for a resolution to my question and may have missed the answer. I want to keep the compatibility with the Yubico Server, for compatibility with LastPass. I also want to be able to use the GRC generated password for Truecrypt. I understand that I need to update configuration 2 and keep the current configuration 1. I do not want to try to type 63 or 64 characters. I would like to be able to cut and paste. I did locate the statickey.wsf script. If understand it. The script will update configuration 1, which I do not want to do. I would also like to be able to backup my current configuration(s) so that I can restore them in case I mess things up or is there a way to setup a configuration that will use the OTP compatability with Yubico server?
Thank you for any help you may be able to provide.

Author:  network-marvels [ Mon Oct 26, 2009 10:06 am ]
Post subject:  Re: static pasword and OTP compatability with Yubico server

You can use the YubiKey configuration utility to program the configuration 2 of the YubiKey 2.0 to static password mode.

The YubiKey configuration utility and the user guide can be downloaded from the following link:

http://www.yubico.com/developers/personalization/

The step by step instructions can be found at the following forum link:

viewtopic.php?f=2&t=408&p=1774&hilit=summary#p1774

Please note that the actual Static password itself cannot be set by the user. The Static password is generated as a result of an encryption function involving the AES key and YubiKey parameters. Users need to configure this static password in their application(s).

In order to streamline the process for users who want to program their own AES keys in YubiKeys and still have a working key online we have changed the process of handling AES Keys at the online validation server. If you want to again validate the OTP with the online Yubico validation server, please follow the instructions given at the following forum link:

viewtopic.php?f=2&t=402&p=1754&hilit=summary#p1754

We hope this helps!

Page 1 of 1 All times are UTC + 1 hour
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/