OTPClient: TOTP bilaash ah iyo maareeyaha calaamada HOTP oo leh sir ku dhex jirta

OTPClient: TOTP bilaash ah iyo maareeyaha calaamada HOTP oo leh sir ku dhex jirta

OTPClient: TOTP bilaash ah iyo maareeyaha calaamada HOTP oo leh sir ku dhex jirta

Bilowgii sanadka, waxaanu samaynay daabacaad weyn oo la xidhiidha mawduuca Amniga macluumaadka. Si gaar ah oo ku saabsan mawduuca isticmaalka 2FA tignoolajiyada, si fiican loogu yaqaan Isbaanishka, sida "Qodobka Xaqiijinta Labanlaab" o "Xaqiijinta laba arrimood". Iyo sidoo kale sida loo rakibo codsiyada lahaanshaha ee loo yaqaan Google Authenticator iyo Twilio Auth, iyadoo la isticmaalayo codsiga garaafyada ee loo yaqaan Qalabka GNOME. Inta maanta, waxaan sahmin doonaa wicitaan bilaash ah oo furan "OTPClient".

taas oo aan ka badnayn a Codsiga GTK+ ee maaraynta TOTP iyo HOTP tokens oo leh sir ku dhex jirta, taas oo ah, in lagu maamulo xaqiijinta laba-geesoodka ah, taageeraya labadaba Erayada sirta ah ee hal mar ku-saleysan (TOTP), sida Erayada sirta ah ee hal mar ku salaysan HMAC (HOTP).

2FA Linux: Sida loo rakibo Google Authenticator iyo Twilio Authy?

2FA Linux: Sida loo rakibo Google Authenticator iyo Twilio Authy?

Iyo sida caadiga ah, ka hor inta aanad gelin mawduuca maanta ee codsiga "OTPClient", iyo si gaar ah oo ku saabsan nooca la heli karo "2.4.9.1" oo lagu heli karo qaabka flatpak, waxaan u dhaafi doonaa kuwa xiiseynaya xiriirada soo socda ee qaar ka mid ah qoraaladii hore ee la xiriira. Si ay si fudud ugu sahamin karaan, haddii loo baahdo, ka dib markay dhammeeyaan akhrinta daabacadan:

"Farsamada "2FA", oo si fiican loogu yaqaano Isbaanishka sida "Laba-Factor Authentication" ama "Laba-Factor Authentication", waa hab ilaalin oo heer sare ah, maadaama ay hirgeliso hal lakab oo kale oo xaqiijin ah hawlaheena. Si loo isticmaalo tignoolajiyadan, waxaa jira apps badan sida Google Authenticator iyo Twilio Authy. Taas oo, halkan aan ku arki doono sida loogu rakibo iyaga GNU/Linux". 2FA Linux: Sida loo rakibo Google Authenticator iyo Twilio Authy?

2FA
Maqaalka laxiriira:
Google wuxuu awood u siin doonaa xaqiijinta laba-qodob asal ahaan qof walba
2 geed
Maqaalka laxiriira:
Google waxa ay ka shaqaynaysaa qaab cusub oo ogolaanshaha 2FA kaas oo ku salaysnaan doona QR

OTPClient: GTK+ Software ee Xaqiijinta Laba-Factor

OTPClient: GTK+ Software ee Xaqiijinta Laba-Factor

Waa maxay OTPClient?

Sida laga soo xigtay horumariyeyaasheeda, iyada bogga rasmiga ah ee GitHub, waxaa si kooban loogu sharaxay sida soo socota:

"Waa macmiilka OTP ee ku qoran C/GTK, kaas oo taageera TOTP iyo HOTP labadaba. Sidaa darteed, aad bay u ammaansan tahay oo way fududahay in loo isticmaalo xaqiijinta laba-geesood ah, iyadoo taageerta labada sirta ah ee hal mar-ku-salaysan (TOTP) iyo furaha sirta ah ee HMAC-ku-salaysan ee hal-mar ah (HOTP).".

Halka, uu ku jiro Bogga rasmiga ah ee FlatHub, si ballaadhan ugu sharax sida soo socota:

"Waa sahlan tahay in la isticmaalo codsiga GTK si ammaan ah loo maareeyo TOTP iyo HOTP tokens. Waxa ku jira, waxa ku jira waxa lagu sir ah diskka iyadoo la isticmaalayo AES256-GCM iyo erayga sirta ah ee sayidku waxa lagu helay PBKDF2 oo leh 100k ku celcelin iyo SHA512 oo ah algorithmamka xashiishka. Sidoo kale, waxa ay ogolanaysaa in laga soo dejiyo/dhoofinta kaydka kaydinta/loo diro OTP, iyo ka soo dejinta kaydinta App-ka Authenticator+.".

Qaababka

Hadda, qaar ka mid ah muuqaalada ugu fiican Waxay yihiin:

  1. Taageer habaynta nambarka gaarka ah (inta u dhaxaysa 4 iyo 10 lagu daro).
  2. Kuu ogolaanayaa inaad dejiso xilli gaar ah (inta u dhaxaysa 10 iyo 120 ilbiriqsi oo lagu daro).
  3. Xogta deegaanka waxa lagu sireeyay AES256-GCM.
  4. Furaha waxaa lagu helay iyadoo la adeegsanayo PBKDF2 oo leh SHA512 iyo 100k ku celcelin.
  5. Faylka qarsoodiga ah waligiis lama kaydiyo (oo waxaan rajeynayaa inaan waligiis la beddelin) saxanka.
  6. Xogta la furay waxay ku jirtaa "xasuusta sugan" ee uu qoondeeyay Gcrypt.
  7. Waxaa ku jira taageerada TOTP iyo HOTP labadaba; SHA1, SHA256 iyo SHA512 taageerada algorithm; iyo taageerada koodhadhka Steam.
  8. Ku ogolanaya inaad soo dejiso nuqullo kayd ah oo qarsoon ee Authenticator Plus; soo dejinta iyo dhoofinta sir ah iyo/ama fudud iyo kayd OTP ah; soo dejinta iyo dhoofinta kaydka FreeOTPPlus cayriin (kaliya qaabka URI ee muhiimka ah); oo soo deji oo dhoofi kaydka Aegis cayriin (qaabka json kaliya).

Dib u eegida barnaamijka

Kahor intaadan bilaabin dib u eegista codsigan, waxaa xusid mudan in lagu tijaabin doono arjiga Dib u dhig loo yaqaan MiracleOS 3.0 MX-NG-22.01 ku saleysan MX-21 (Debian-11) oo leh XFCE iyo in aan dhawaan baadhnay Halkan.

Soo Degso oo Rakibo

Adiga soo dejiso oo rakib waxaanu fulinay arimahan soo socda amar degdeg ah in terminal (console), sida hoos ku cad:

«sudo flatpak install flathub com.github.paolostivanin.OTPClient»

OTPClient: Screenshot 1

Fulinta iyo sahaminta

Marka la rakibo, waanu bilaabi karnaa oo aan sahamin karnaa, sida hoos ku muuqata:

OTPClient: Screenshot 2

OTPClient: Screenshot 3

OTPClient: Screenshot 4

OTPClient: Screenshot 5

OTPClient: Screenshot 6

OTPClient: Screenshot 7

OTPClient: Screenshot 8

OTPClient: Screenshot 9

OTPClient: Screenshot 10

OTPClient: Screenshot 11

Wixii macluumaad dheeraad ah ee ku saabsan "OTPClient", waxaad sahamin kartaa xiriiriyeyaasha soo socda:

Isku soo wada duuboo: Boostada calanka 2021

Resumen

Marka la soo koobo, waxaan rajaynaynaa in hagahan ama casharradan loogu talagalay rakib "OTPClient", ku rakibida nooceedii ugu dambeeyay ee la heli karo iyada oo loo marayo Maamulaha xirmada Flatpak, faa'iido weyn u leh dad badan, gaar ahaan kuwa u baahan inay galaan codsiyada iyo adeegyada muhiimka ah ee internetka, iyada oo loo marayo laba xaqiijin sabab, aad u badan Erayada sirta ah ee hal mar ku-saleysan (TOTP), sida Erayada sirta ah ee hal mar ku salaysan HMAC (HOTP).

Waxaan rajeyneynaa in daabacaadan ay aad faa'iido u leedahay guud ahaan «Comunidad de Software Libre, Código Abierto y GNU/Linux». Ha iloobin inaad faallo ka bixiso xagga hoose, oo la wadaag dadka kale mareegahaaga, kanaalada, kooxaha ama bulshooyinka shabakadaha bulshada ama nidaamyada fariimaha. Ugu dambeyntii, booqo boggayaga guriga ee «DesdeLinux» si aad u sahamiso warar dheeraad ah, uguna biirto kanaalkayaga rasmiga ah ee Telegram ka DesdeLinux.


Ka tag faalladaada

cinwaanka email aan la daabacin doonaa. Beeraha loo baahan yahay waxaa lagu calaamadeeyay la *

*

*

  1. Masuul ka ah xogta: Miguel Ángel Gatón
  2. Ujeedada xogta: Xakamaynta SPAM, maaraynta faallooyinka.
  3. Sharci: Oggolaanshahaaga
  4. Isgaarsiinta xogta: Xogta looma gudbin doono dhinacyada saddexaad marka laga reebo waajibaadka sharciga ah.
  5. Kaydinta xogta: Macluumaadka ay martigelisay Shabakadaha Occentus (EU)
  6. Xuquuqda: Waqti kasta oo aad xadidi karto, soo ceshan karto oo tirtiri karto macluumaadkaaga.