[41704] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: RSA SecurID SID800 Token vulnerable by design

daemon@ATHENA.MIT.EDU (Hadmut Danisch)
Sat Sep 9 14:29:05 2006

X-Original-To: cryptography@metzdowd.com
X-Original-To: cryptography@metzdowd.com
Date: Fri, 8 Sep 2006 23:43:21 +0200
To: Lance James <lancej@securescience.net>
Cc: cryptography@metzdowd.com
In-Reply-To: <4501B700.8090009@securescience.net>
From: hadmut@danisch.de (Hadmut Danisch)

On Fri, Sep 08, 2006 at 11:31:28AM -0700, Lance James wrote:

> SecurID should not be the only concept for dependence.


Yeah, however, it is a smart device which provides a reasonable level
of security in a very simple and almost foolproof way (I know a case
where the users complained that it did not work. They had to be told
not to type in the serial number engraved at the backside, but the
number displayed on the LCD...). 

It's a pity to see it weakened without need to.


regard
Hadmut


---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post