You could even build the terminals such they sync the clock.
Or, you could do what SecurID does. It stores a few values like you said, but when the server sees a value that lets it know that the token is a few seconds out of synch, it will adjust it's own (i.e. the server's) expectation of what the current value on the token is by that much. It will move it's own 'window' for that token so the two remain synched.
It's already been done - a *long* time ago.
The company that basically invented SecurID before RSA bought them - Security Dynamics - had (thick) credit card sized tokens - even with a keypad on them.
Veritas wrote a VxFS for NT, did a lot of work on it, and even sold it to a couple of customers.
Microsoft were going to add it in as an easily installable plug-in, shipped on the distro CDs.
Microsoft later decided that they wanted to write their own, so f*ck Veritas.
I've seen four or five buyouts of A Software Company by ANOther Software Company from the inside, and in none of them have the support staff been laid off.
...bend four bars along their long axis....
It would be an interesting exercise to try and bend them along their short axis...
What's the hot-key for Close Tab in FF ?
surely:
Ah.damn
?
Really? I didn't know that. My surname is four letters (as is the surname of a good few million people with the same name) Where do I sign up? ??
Personally, I reckon there was probably a < and a > It would certainly make more sense..
Or, you could do what SecurID does. It stores a few values like you said, but when the server sees a value that lets it know that the token is a few seconds out of synch, it will adjust it's own (i.e. the server's) expectation of what the current value on the token is by that much. It will move it's own 'window' for that token so the two remain synched.
It's already been done - a *long* time ago. The company that basically invented SecurID before RSA bought them - Security Dynamics - had (thick) credit card sized tokens - even with a keypad on them.
Twin PIII 500 still running NT here....
Did you get it?
Out of all of your suggestions, only one - Signing transactions - will defeat a man-in-the-middle attack such as is described by the article.
I wish I had mod points.
I don't so I'll restrict myself to saying:
AOL
Yes you can, it would seem.
http://www.theregister.com/2006/07/03/google_sued
Does no-one remember the Millenium bridge across the Thames? http://www.urban75.org/london/millennium.html
It was opened, closed within two days, then patched.
That last one is the important line. They only ever sold it to about 2 customers before it got canned.
Not just that, but Veritas also wrote a file system for NT. I suspect it is this that they are accusing Microsoft of pinching.
Veritas wrote a VxFS for NT, did a lot of work on it, and even sold it to a couple of customers.
:-)
Microsoft were going to add it in as an easily installable plug-in, shipped on the distro CDs.
Microsoft later decided that they wanted to write their own, so f*ck Veritas.
(very abbreviated version)
I wonder when the first God hacks will start appearing for it?
What?br>
Blood Bowl is superb. It's quick, fun, stupid and violent.
Chaos League whoud have been shot at birth (yeah - I bought it), but Blood Bowl is an absolute classic.
I humbly submit that you haven't got the faintest idea what you're talking about.
*There* doomed...
Errrr... no...
Those users have just signed up, and their machines are currently crunching their first work packet.
Expect it to rocket when those 1700 members start submitting work.
And the funny thing about this...?
.
The Slashdot users team is almost 6 times bigger than IBM's
I laughed.
By support, I meant "customer support".
Tech support - the guys at the end of the phone.
Apologies for the possibly misleading term.
I've seen four or five buyouts of A Software Company by ANOther Software Company from the inside, and in none of them have the support staff been laid off.