search for: googleonlinesecur

Displaying 4 results from an estimated 4 matches for "googleonlinesecur".

2013 Nov 19
0
Projects for new developers
...M is now covered[2] by the bug bounty program and I''d be happy to make a statement of how this work has contributed to OpenSSH''s security :) IMO any of these would make quite a difference to our proactive efforts to find bugs, particularly in the portable version. -d [1] http://googleonlinesecurity.blogspot.com.au/2013/10/going-beyond-vulnerability-rewards.html [2] http://googleonlinesecurity.blogspot.com.au/2013/11/even-more-patch-rewards.html
2014 Nov 05
2
[PATCH] Early request for comments: U2F authentication
...SL_load_error_strings() so that the human-readable error messages actually contain some content and are not just NULL :). It?ll require linking with -lssl. Is that okay or is there a reason why we don?t do it so far? Thank you very much for any replies :). [1] https://fidoalliance.org/ [2] http://googleonlinesecurity.blogspot.ch/2014/10/strengthening-2-step-verification-with.html [3] https://www.noname-ev.de/w/File:C14h-u2f-how-security-keys-work.pdf -------------- next part -------------- A non-text attachment was scrubbed... Name: 0001-add-u2f-to-automake.patch Type: text/x-patch Size: 3002 bytes Desc: not...
2014 Dec 24
2
[PATCH] U2F support in OpenSSH
...y key after successful publickey authentication. In case you want to register another U2F security key, just repeat the process. Thanks to Thomas Habets, Christian Svensson and Axel Wagner for their support in implementing/discussing/testing this feature. [1] https://fidoalliance.org/ [2] http://googleonlinesecurity.blogspot.ch/2014/10/strengthening-2-step-verification-with.html [3] https://www.noname-ev.de/w/File:C14h-u2f-how-security-keys-work.pdf ------------------------------------------------------------------------------- Best regards, Michael -------------- next part -------------- A non-text attac...
2014 Nov 18
55
[Bug 2319] New: [PATCH REVIEW] U2F authentication
...SL_load_error_strings() so that the human-readable error messages actually contain some content and are not just NULL :). It?ll require linking with -lssl. Is that okay or is there a reason why we don?t do it so far? Thank you very much for any replies :). [1] https://fidoalliance.org/ [2] http://googleonlinesecurity.blogspot.ch/2014/10/strengthening-2-step-verification-with.html [3] https://www.noname-ev.de/w/File:C14h-u2f-how-security-keys-work.pdf """ -- You are receiving this mail because: You are watching the assignee of the bug.