[Pkg-auth-maintainers] Bug#705939: fix

Fabian Grünbichler fabian.gruenbichler at tuwien.ac.at
Mon Apr 29 13:19:41 UTC 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

See https://github.com/dynalogin/dynalogin/pull/1

diff --git a/libdynalogin/dynalogin.c b/libdynalogin/dynalogin.c
index d6b606b..f57039e 100644
- --- a/libdynalogin/dynalogin.c
+++ b/libdynalogin/dynalogin.c
@@ -267,8 +267,20 @@ dynalogin_result_t dynalogin_authenticate_internal
                else
                {
                        fail_inc = 0;
+                       syslog(LOG_WARNING, "Token replay detected,
denying authentication");
                        rc = OATH_REPLAYED_OTP;
                }
+               /* totp_offset only contains a valid value if the OTP was
+                  inside the specified window - in that case the rc
is the
+                  absolute offset */
+               if(rc>=0 && totp_offset < 0)
+               {
+                   syslog(LOG_WARNING, "TOTP validation returned
offset %d (~%d seconds behind)",totp_
+               }
+               else if(rc > 0)
+               {
+                   syslog(LOG_WARNING, "TOTP validation returned
offset %d (~%d seconds ahead)",totp_o
+               }
                break;
        default:
                syslog(LOG_ERR, "unsupported scheme");

- -- 
GPG-Key: https://bit.ly/vwmUVA or 00B96447 on your favourite keyserver
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
Comment: Using GnuPG with Icedove - http://www.enigmail.net/
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=GNJY
-----END PGP SIGNATURE-----



More information about the Pkg-auth-maintainers mailing list