<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-13462206.post3025841000610562507..comments</id><updated>2011-06-26T16:19:06.224+02:00</updated><category term='Livo'/><category term='Biométrie'/><category term='XML SAML OpenID Windows CardSpace User'/><category term='Strong Authentication'/><category term='Clavid Yubico OpenID'/><category term='Usurpation d&apos;identité'/><category term='Ethical Technologies Identity Geneva Unesco'/><category term='PEM'/><category term='Biométrie Iris'/><category term='Reprise'/><category term='XML SOAP SAML WS-Signature WS-Encryption'/><category term='OpenID Authentification Forte'/><category term='Risk Based Authentication'/><category term='PingIdentity'/><category term='OCRA'/><category term='Insecure Keylogger'/><category term='Private Key X509 PKI IE exploit'/><category term='Vol identités numériques'/><category term='ANSI'/><category term='Identity'/><category term='Coffre forte électronique'/><category term='Attacks MiM DH OpenID Authentification Forte'/><category term='base64'/><category term='PCI-DSS'/><category term='RSA PKI X509'/><category term='PKI Biométrie Match on Card OCSP'/><category term='Identity Theft'/><category term='EMV-CAP'/><category term='Identités numérique'/><category term='eToken Authentification Forte'/><category term='Mots de passe'/><category term='Fingerprint reader MS bypass Microsoft'/><category term='OpenID David Recordon'/><category term='Authentification forte'/><category term='Sxip'/><category term='Crack Password Authentification forte Wireless Keyboard'/><category term='Munities Biométrie'/><category term='SAML PKI idp Digital ID Identity'/><category term='Sniffer'/><category term='http://www.portknocking.org/'/><category term='Web 2.0 Identités numériques Empreinte numérique'/><category term='SMS'/><category term='Infocard Cardspace'/><category term='MOC'/><category term='SSH'/><category term='DNA'/><category term='Check Point User Conference'/><category term='trustbearer.com'/><category term='Personal Portable Security Device'/><category term='FFR'/><category term='TPM'/><category term='brute force'/><category term='SMS OTP Certificat'/><category term='Out of Band Authentication'/><category term='OATH OTP SmartCard ICT'/><category term='CAPTCHA'/><category term='openssl'/><category term='IDSP'/><category term='XML'/><category term='Authentification Forte H1N1 Grippe A VPN SSL VPN IPSEC'/><category term='ID Selector OpenID'/><category term='smartphone'/><category term='FAR'/><category term='Xiring'/><category term='Mobile OTP'/><category term='OpenID'/><category term='Man-in-the-Browser'/><category term='CSR'/><category term='OpenID  Biometry'/><category term='MitB'/><category term='Digital ID OpenID Microsoft Open Specification Promise'/><category term='NTX'/><category term='OAUTH OpenID'/><category term='Identités numériques'/><category term='identityblog'/><category term='Webilus'/><category term='Authentication forte'/><category term='New Intrusion Tolerance Technology Treats Attacks as Inevitable'/><category term='OpenID Certificat Authentification Forte'/><category term='CRL'/><category term='Yubico'/><category term='Theft Prevention'/><category term='DDOS'/><category term='Pumpkin Hash'/><category term='OpenSSH'/><category term='SSTIC'/><category term='LASEC'/><category term='Cryptographic Filesystems'/><category term='Match on Card'/><category term='HSPD-12 PKI SAML'/><category term='The Tao of Authentication'/><category term='SSTIC 2009'/><category term='Iphone'/><category term='SecurID'/><category term='MITM'/><category term='Facebook OpenID'/><category term='OATH'/><category term='ISO'/><category term='Banana Security Biométrie Biometry'/><category term='Banker'/><category term='ANSI 378'/><category term='ADN'/><category term='Phone Factor'/><category term='Token USB'/><category term='Identité numérique'/><category term='Extended Validation'/><category term='Keyboard'/><category term='identité 2.0'/><category term='Avatar'/><category term='2FA'/><category term='L&apos;identité numériquelien technologique  entité réelle entité virtuelle'/><category term='Kim Cameron'/><category term='e-Xpert Solutions'/><category term='EMV'/><category term='Verayo'/><category term='SAML SSO'/><category term='OTP'/><category term='Biométrie Mobilité Authentification Forte'/><category term='ANSI-BBB Identity'/><category term='EPFL'/><category term='Bankers'/><category term='EV Certificate'/><category term='UPEK'/><category term='Définition'/><category term='Cold Boot Attacks'/><category term='Keepass'/><category term='TEXT'/><category term='Certificat'/><category term='Veine Biométrie'/><category term='HOTP'/><category term='3D-secure'/><category term='Crypto'/><category term='The Information Card Foundation'/><category term='PIP X509 OTP OpenID'/><category term='MD6'/><category term='Biométrie USA'/><category term='Keylogger'/><category term='PCI'/><category term='Identitité numérique'/><category term='Confiance'/><category term='RCA'/><category term='PAPE OpenID'/><category term='OpenID Facebook Google'/><category term='Active Directory Root PKI'/><category term='DLP'/><category term='OpenID Clavid SSL Client Certificate'/><category term='Biométrie Match on Card Veine Sony'/><category term='Citadelle Electronique Sylvain Maret'/><category term='FAST'/><category term='Match on Card Biométrie Authentification Forte PKI'/><category term='WS SOAP XML Axis'/><category term='ASF-WS'/><category term='wikipedia'/><category term='X509'/><category term='TOTP'/><category term='Strong Authentication; RSA; PKI; X509; SecurID; OTP; HOTP; TOTP; OpenID; OWASP; OATH; FFIEC'/><category term='EMV CAP Authentification Forte'/><category term='HSPD-12'/><category term='PKI'/><category term='eBanking Sécurité Authentification Forte'/><category term='SecurID; Hack; RSA; OTP; Seed; OATH'/><category term='Citizen ID Forum'/><category term='FIPS-201'/><category term='Checkpoint'/><category term='Vascular Pattern Recognition'/><category term='SAML OpenID PAPE'/><category term='saml'/><category term='Smartcard'/><category term='Botnet'/><category term='RFID'/><category term='Biométrie AD Microsoft'/><category term='SMS OATH Mobile'/><category term='Reconstructing Fingerprints from Minutiae Points'/><category term='Cardspace vs OpenID'/><category term='Yubikey'/><category term='OWASP OpenID'/><category term='DOS'/><title type='text'>Comments on La Citadelle Electronique:  Identité Numérique et Authentification Forte: Hack RSA SecurID : l'histoire n'est pas terminée !...</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.citadelle-electronique.net/feeds/3025841000610562507/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/13462206/3025841000610562507/comments/default'/><link rel='alternate' type='text/html' href='http://www.citadelle-electronique.net/2011/03/hack-rsa-securid-lhistoire-nest-pas.html'/><author><name>Sylvain Maret</name><uri>http://www.blogger.com/profile/04336297227186666432</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='21' height='32' src='http://3.bp.blogspot.com/_QntNf2b8LN8/SvG_8y8U6DI/AAAAAAAAHcg/k31ODCy9euU/S220/sylvain+cool+3.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>2</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-13462206.post-7464383946468823647</id><published>2011-03-30T19:06:51.263+02:00</published><updated>2011-03-30T19:06:51.263+02:00</updated><title type='text'>Merci pour votre commentaire. Je suis complétement...</title><content type='html'>Merci pour votre commentaire. Je suis complétement en phase avec l&amp;#39;approche Open. Par contre je préfère utiliser soit TOTP, HOTP voir OCRA. Selon moi mOTP devient obselète (Utilisation de MD5). Par contre, c&amp;#39;est vrai, il y a beaucoup de support de mOTP.&lt;br /&gt;Pour info vous pouvez utiliser la Class http://www.multiotp.net/ pour implémenter les algos de OATH.&lt;br /&gt;&lt;br /&gt;Sylvain</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/13462206/3025841000610562507/comments/default/7464383946468823647'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/13462206/3025841000610562507/comments/default/7464383946468823647'/><link rel='alternate' type='text/html' href='http://www.citadelle-electronique.net/2011/03/hack-rsa-securid-lhistoire-nest-pas.html?showComment=1301504811263#c7464383946468823647' title=''/><author><name>Sylvain Maret</name><uri>http://www.blogger.com/profile/04336297227186666432</uri><email>noreply@blogger.com</email><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='OpenSocialUserId' value='04701856898342055395'/><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='21' height='32' src='http://3.bp.blogspot.com/_QntNf2b8LN8/SvG_8y8U6DI/AAAAAAAAHcg/k31ODCy9euU/S220/sylvain+cool+3.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.citadelle-electronique.net/2011/03/hack-rsa-securid-lhistoire-nest-pas.html' ref='tag:blogger.com,1999:blog-13462206.post-3025841000610562507' source='http://www.blogger.com/feeds/13462206/posts/default/3025841000610562507' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1517235644'/></entry><entry><id>tag:blogger.com,1999:blog-13462206.post-5719419822189518545</id><published>2011-03-30T17:14:07.630+02:00</published><updated>2011-03-30T17:14:07.630+02:00</updated><title type='text'>Hello, de mon côté, je privilégie depuis longtemps...</title><content type='html'>Hello, de mon côté, je privilégie depuis longtemps la génération de &amp;quot;passcode&amp;quot; en utilisant le protocole ouvert mOTP, cela au travers d&amp;#39;une application installable sur Android, iPhone, Windows Mobile, Java, etc.&lt;br /&gt;Avec mOTP (motp.sf.net), le PIN doit être entré sur le téléphone pour générer le passcode correct, ainsi il ne passe jamais en clair ;-)&lt;br /&gt;&lt;br /&gt;En plus, il est supporté par multiOTP.net, implémentation libre côté serveur en PHP, alors pourquoi s&amp;#39;en priver ?</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/13462206/3025841000610562507/comments/default/5719419822189518545'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/13462206/3025841000610562507/comments/default/5719419822189518545'/><link rel='alternate' type='text/html' href='http://www.citadelle-electronique.net/2011/03/hack-rsa-securid-lhistoire-nest-pas.html?showComment=1301498047630#c5719419822189518545' title=''/><author><name>SorG</name><uri>http://www.blogger.com/profile/18230323987748255495</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.citadelle-electronique.net/2011/03/hack-rsa-securid-lhistoire-nest-pas.html' ref='tag:blogger.com,1999:blog-13462206.post-3025841000610562507' source='http://www.blogger.com/feeds/13462206/posts/default/3025841000610562507' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1557719625'/></entry></feed>
