I'm curious how OTP tokens work.

They only emit a few digits, and they can be resynced with the server
by entering two values, so if I'm thinking correctly, two values must
capture the entire state of the device (the seed for a PRNG or
whatever they use).  I assume that there's something in place to
prevent an adversary from deriving the seed from two consecutive
output values, so I'm curious how that works.
-- 
It asked me for my race, so I wrote in "human". -- The Beastie Boys
My emails do not have attachments; it's a digital signature that your mail
program doesn't understand. | http://www.subspacefield.org/~travis/ 
If you are a spammer, please email j...@subspacefield.org to get blacklisted.

Attachment: pgpD6mgzmh5zo.pgp
Description: PGP signature

_______________________________________________
cryptography mailing list
cryptography@randombit.net
http://lists.randombit.net/mailman/listinfo/cryptography

Reply via email to