Displaying 1 result from an estimated 1 matches for "knowlegdge".
Did you mean:
knowledge
2007 Jul 23
8
Ideas for Webmail/OTP
...he conversation function, but the challenge is not processed by the IMAP server.
My proposal: The IMAP server stores the challenge from the conversation function and
includes it in the LOGIN response, when the login was not successful. So a user can try a
login with a wrong dummy password and get knowlegdge about the current otp sequence.
The webmail server should be extended in a way, that it displays the complete IMAP error
message, when a login fails.
Solution 2:
Webmail clients do not use persistent connections in most cases. A OTP login needs
different passwords for every displayed web page....