The Wayback Machine - https://web.archive.org/web/20200705185945/https://github.com/topics/totp
Skip to content
#

totp

Here are 338 public repositories matching this topic...

frostschutz
frostschutz commented Apr 25, 2020

Yahoo Japan supports one time passwords using their own app. Their info page about it: https://id.yahoo.co.jp/security/otp.html

andOTP did not recognize their QR code. It's encoded as:

yjotp://totp/username?secret=################################

Also tried copy-paste but that resulted in wrong values; I might have done something wrong.

andOTP produces the correct values when enter

cli
meanbeanlib
meanbeanlib commented Apr 30, 2020

What would you like to be added

Allow more url variations in "step certificate inspect".
e.g.

// this works
step certificate inspect https://www.google.com

// these don't
step certificate inspect https://www.google.com/
step certificate inspect www.google.com:443
step certificate inspect www.google.com

Why this is needed

More convenience

jidanni
jidanni commented Apr 10, 2020

When editing a profile with a long
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
key, push the eyeball button. You will see
AAAAAAAAAAAAAAAAAAAAAAAAA [EYEBALL]
It is missing the ellipsis,
AAAAAAAAAAAAAAAAAAAAAAAAA… [EYEBALL]
Without the ellipsis we assume the string is only as long as it looks.

IceTrooper
IceTrooper commented Feb 19, 2020
  • Operating system and version: Windows 10
  • YubiKey model and version: Yubico Authenticator 5.0.2
  • Bug description summary: Looks like Qt problem

Steps to reproduce

  1. Show in System Tray checked.
  2. Right click on system tray icon.
  3. Menu popout visible.
  4. Trying to close menu (without success) when click away.

Expected result

Menu hides when clicking away

Actual res

Dragon988
Dragon988 commented Apr 20, 2020

When using TOTP the user password should -always- go to the TOTP app, even if wrong.

It should not say "wrong password" prior to the TOTP app for security reasons. This app should not let the attacker know they have the correct password!

Current behavior:

Attempt login - wrong password - error
Attempt login - correct password - totp - error | This lets the attacker know the password is c

Improve this page

Add a description, image, and links to the totp topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the totp topic, visit your repo's landing page and select "manage topics."

Learn more

You can’t perform that action at this time.