Stacks Image 254


One Time Password

Supporting 2 Factor Authentication

Stacks Image 259

Pro Feature

The Custom URL scheme currently supports RFC2289 based challenges and responses.

The custom URL scheme is only available in OTP Pro, an In-App purchase.

The [One Time Password authentication system] uses a secret pass-phrase to generate a sequence of one-time (single use) passwords. With this system the user's secret pass-phrase never need to cross the network at any time such as during authentication or during pass-phrase change. Thus, it is not vulnerable to replay attacks. Added security is provided by the property that no secret information need be stored on any system, including the server being protected.

Custom URL Scheme Format


The custom URL scheme follows the following format -

otppro://<command>/?<query>

where

<command> = ["challenge" | "response"]
<query> = [["host="]
           [& "hash="]
           [& "sequence="]
           [& "seed="]
           [& "responsedict="]
           [& "responsehex="]]

Examples

otppro://challenge/?host=Firewall&hash=sha1&sequence=104&seed=cfu5278

otppro://response/?host=Server&hash=sha1&sequence=99&seed=qwerty&responsedict=FLO%20NUMB%20OTT%20BIEN%20UNIT%20UN&responsehex=1458%20d0c1%202bdf%202285