Apocrypha

skey

Linux Port of OpenBSD Single-key Password System

From RFC2289: One form of attack on networked computing systems is eavesdropping on network connections to obtain authentication information such as the login IDs and passwords of legitimate users. Once this information is captured, it can be used at a later time to gain access to the system. One-time password systems are designed to counter this type of attack, called a "replay attack." The authentication system described in this document uses a secret pass-phrase to generate a sequence of one-time (single use) passwords. With this system, the user's secret pass-phrase never needs to cross the network at any time such as during authentication or during pass-phrase changes. Thus, it is not vulnerable to replay attacks. Added security is provided by the property that no secret information need be stored on any system, including the server being protected. The OTP system protects against external passive attacks against the authentication subsystem. It does not prevent a network eavesdropper from gaining access to private information and does not provide protection against either "social engineering" or active attacks.

Available in

OverlayNewestEbuildsLast activity
gentoo gitweb ↗ 1.1.5-r14 1 14 h details ›

Versions & arches

VersionOverlay amd64arm64x86ppc64riscvalphaarmhppaloongm68kmipsppcs390sparc Committed
1.1.5-r14 gentoo amd64 stable arm64 testing x86 stable ppc64 stable riscv testing alpha testing arm stable hppa testing loong testing m68k testing mips testing ppc stable s390 testing sparc testing view · download · history ↗

Use flags of 1.1.5-r14

  • static-libs Build static versions of dynamic libraries as well
  • split-usr Enable behavior to support maintaining /bin, /lib*, /sbin and /usr/sbin separately from /usr/bin and /usr/lib*

Runtime dependencies of 1.1.5-r14

show 4 lines