[twsocket] FTP oneway passwords

2008-05-14 Thread Arno Garrels
Hi,

Is there a simple way to get this new feature working with the client and 
server 
demos for testing purposes? I cannot find any short description in the source
files.

--
Arno Garrels 
 
-- 
To unsubscribe or change your settings for TWSocket mailing list
please goto http://lists.elists.org/cgi-bin/mailman/listinfo/twsocket
Visit our website at http://www.overbyte.be


Re: [twsocket] FTP oneway passwords

2008-05-14 Thread Angus Robertson - Magenta Systems Ltd
 Is there a simple way to get this new feature working with the 
 client and server demos for testing purposes? 

There are three new menu Options in overbyteicsftpserv.exe, 'Authenticate
opt-md5', opt-md4 and opt-sha1, which cause the FTP server to use One
Time Passwords.  These options are not currently saved in the INI file. 

OTP in the FTP client is automatic, if it sees the opt-xx response, it
replies with the hashed password. 

Angus
-- 
To unsubscribe or change your settings for TWSocket mailing list
please goto http://lists.elists.org/cgi-bin/mailman/listinfo/twsocket
Visit our website at http://www.overbyte.be


Re: [twsocket] FTP oneway passwords

2008-05-14 Thread Arno Garrels
Angus Robertson - Magenta Systems Ltd wrote:
 Is there a simple way to get this new feature working with the
 client and server demos for testing purposes?
 
 There are three new menu Options in overbyteicsftpserv.exe,
 'Authenticate opt-md5', opt-md4 and opt-sha1, which cause the FTP
 server to use One Time Passwords.  These options are not currently
 saved in the INI file. 
 
 OTP in the FTP client is automatic, if it sees the opt-xx response, it
 replies with the hashed password.

Do I have to set anything else for user anonymous?

Using D7 I get this error:  

Executing Requested Command
 USER anonymous
 331 Response to otp-md5 999 qpy8gjxwu4gaee required for anonymous.
Request UserAsync Done.
StatusCode = 331
LastResponse was : '331 Response to otp-md5 999 qpy8gjxwu4gaee required for 
anonymous.'
No error
Executing Requested Command
! Generated One Time Password: VETO TWIT ARK REEF JIM HAYS
 PASS VETO TWIT ARK REEF JIM HAYS
 530 Login incorrect.
Request PassAsync Done.
StatusCode = 530
LastResponse was : '530 Login incorrect.'


Thanks,

Arno
-- 
To unsubscribe or change your settings for TWSocket mailing list
please goto http://lists.elists.org/cgi-bin/mailman/listinfo/twsocket
Visit our website at http://www.overbyte.be


Re: [twsocket] FTP oneway passwords

2008-05-14 Thread Arno Garrels
Please forget my last e-mail, found it finally, thanks.
 
Arno Garrels wrote:
 Angus Robertson - Magenta Systems Ltd wrote:
 Is there a simple way to get this new feature working with the
 client and server demos for testing purposes?
 
 There are three new menu Options in overbyteicsftpserv.exe,
 'Authenticate opt-md5', opt-md4 and opt-sha1, which cause the FTP
 server to use One Time Passwords.  These options are not currently
 saved in the INI file.
 
 OTP in the FTP client is automatic, if it sees the opt-xx response,
 it replies with the hashed password.
 
 Do I have to set anything else for user anonymous?
 
 Using D7 I get this error:
 
 Executing Requested Command
 USER anonymous
  331 Response to otp-md5 999 qpy8gjxwu4gaee required for anonymous.
 Request UserAsync Done.
 StatusCode = 331
 LastResponse was : '331 Response to otp-md5 999 qpy8gjxwu4gaee
 required for anonymous.' No error
 Executing Requested Command
 ! Generated One Time Password: VETO TWIT ARK REEF JIM HAYS
 PASS VETO TWIT ARK REEF JIM HAYS
  530 Login incorrect.
 Request PassAsync Done.
 StatusCode = 530
 LastResponse was : '530 Login incorrect.'
 
 
 Thanks,
 
 Arno
-- 
To unsubscribe or change your settings for TWSocket mailing list
please goto http://lists.elists.org/cgi-bin/mailman/listinfo/twsocket
Visit our website at http://www.overbyte.be


Re: [twsocket] FTP oneway passwords

2008-05-14 Thread Angus Robertson - Magenta Systems Ltd
 Do I have to set anything else for user anonymous?

The FTP server demo never had any logons or passwords specified, so it
always allowed access to any logon name.  But to test OTP, there is a
hardcoded password '1234567890'.

In my FTP server, if OTP fails, I also check the clear text password
since many clients don't know about OTP.  So effectively OTP becomes a
client option, clients that know about it use it, but those that don't
can still use the server.  

Angus
 
-- 
To unsubscribe or change your settings for TWSocket mailing list
please goto http://lists.elists.org/cgi-bin/mailman/listinfo/twsocket
Visit our website at http://www.overbyte.be