Yubico Forum
https://forum.yubico.com/

Password Safe Database Re-Encryption
https://forum.yubico.com/viewtopic.php?f=16&t=892
Page 1 of 1

Author:  skynolimit [ Fri Dec 14, 2012 10:52 am ]
Post subject:  Password Safe Database Re-Encryption

I have a basic question about YubiKey use with Password Safe.
According to the documentation the YubiKey "Re-encrypts password database with a new random challenge each time"
Let's say I have a Password Safe database opened using the Yubi Key - at this point the information is decrypted since I can read it on the screen. So when is the database re-encrypted? Is it when I close the database?
also, next time I open it again with my backup YubiKey how is it possible to decrypt it with a different key?
Thanks.

Author:  Tom [ Fri Dec 14, 2012 3:06 pm ]
Post subject:  Re: Password Safe Database Re-Encryption

Hello Skynolimit,

I would suggest you to ask this question in Password Safe forum, since we just provide the key with HMAC challenge response.
I have an idea on how they implement their protocol but never gave it a deep look.
I guess (hope) they combine the output of the YubiKey with a password.

If you will get an answer in their forum would be nice from you to link the post in this thread.

Tom.

Page 1 of 1 All times are UTC + 1 hour
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/