*** tpb has joined #tomu | 00:00 | |
*** Kitlith has quit IRC | 05:45 | |
MadHacker | Morning. | 08:01 |
---|---|---|
MadHacker | My crowd supply tomu order finally arrived! :) | 08:01 |
huene | yay | 08:07 |
xobs | Morning, MadHacker. Hooray! | 08:07 |
MadHacker | And got one up and running OK. | 08:08 |
xobs | Just one? | 08:09 |
MadHacker | So far. :D | 08:09 |
MadHacker | Got 5 here. | 08:09 |
xobs | Oh right. 5 pack. | 08:09 |
MadHacker | I would have bought more, but I'd already ordered the bits for more. | 08:09 |
MadHacker | But the parts still(!!!) haven't arrived. | 08:09 |
MadHacker | CPUs in particular. | 08:09 |
xobs | That's crazy. | 08:10 |
MadHacker | Tell me about it. | 08:10 |
MadHacker | Got a shipping update from Farnell. October, I think. | 08:10 |
xobs | I know we had similar estimates for a Kinetis part, so we redesigned the board to allow for the 32-pin package in addition to the 24-pin one. 45 weeks is a bit much for lead time. | 08:12 |
MadHacker | Not half. | 08:12 |
MadHacker | Hm, I see what people were on about with the cap touch, not the most consistent/reliable. | 08:13 |
MadHacker | I'll have a look when I get a moment and see if I can get that to work a little better. It's something that *should* work pretty well. | 08:13 |
MadHacker | It's my birthday today, so not too much time for playing, but I'll get to it at the weekend hopefully. :) | 08:13 |
huene | happy birthday then | 08:14 |
MadHacker | Nice birthday present timing on the tomu delivery. :) | 08:14 |
huene | yeah | 08:14 |
MadHacker | Thanks, huene. | 08:14 |
huene | you're welcoem | 08:15 |
huene | *welcome | 08:15 |
huene | I need to get my tomus up and running with 2FA, that's what I intend to use them for | 08:15 |
*** shalzz_ has joined #tomu | 08:17 | |
MadHacker | HOTP? | 08:18 |
*** shalzz_ has quit IRC | 08:18 | |
xobs | Happy birthday! | 08:20 |
MadHacker | Cheers. :) | 08:20 |
huene | I don't know yet, I have to learn about it. | 08:21 |
huene | Basically I just ordered a bunch of tomus because I read you can do 2FA with them, and I thought that's a great idea | 08:21 |
*** Kitlith has joined #tomu | 08:25 | |
MadHacker | Seems reasonable. Plenty of ways to get it to do that. The CPU isn't particularly high security, as I understand it, but for normal 2FA purposes that's really not required unless you tend to leave your tokens lying around evil maids. | 08:26 |
MadHacker | Hasn't anyone gotten a 2FA firmware written already? | 08:26 |
huene | nah, I'm planning on leaving them at home - maybe take one with me | 08:26 |
xobs | github.com/im-tomu/chopstx/ | 08:27 |
MadHacker | OK. From when you posted that link to now, I managed to get the linux toolchain for tomu installed, the repo for the u2f firmware checked out and built, and the code pushed into this tomu. | 08:36 |
MadHacker | That's a pretty quick quickstart. :) | 08:36 |
MadHacker | (and it works fine, tested) | 08:37 |
xobs | Hooray! | 08:38 |
MadHacker | huene: If U2F as a 2FA protocol works for you, then the firmware xobs linked seems to do the job just fine. Just running the yubikey U2F stuff on it, and the counter's behaving itself OK etc. | 08:41 |
MadHacker | yubikey u2f tester stuff that is. | 08:41 |
huene | yeah, U2F is, what I'm planning to test | 08:42 |
MadHacker | I'd offer to build it for you, but it embeds the keys at compile time, so you kind of need to build it yourself on a machine you trust really. | 08:42 |
xobs | Isn't there a python script to patch in new keys? | 08:43 |
MadHacker | It's a python script that generates the keys in the first place. | 08:43 |
MadHacker | Oh wait, yep, inject_key.py | 08:43 |
xobs | The keys are at a well defined offset, and are erased when you load a new program. So it's important to be able to load a new key. | 08:43 |
huene | MadHacker: thanks for the offer, though :) | 08:44 |
MadHacker | The keys are in the .bin though, so when you load a new program and want to go back to u2f, reloading your original firmware is enough. It's only the counter you'll need to keep track of. | 08:44 |
MadHacker | (and TBH as long as you know it's "less than X" it's fine, you can keep rolling it forwards) | 08:45 |
xobs | That is true. | 08:45 |
huene | I'll just increase it by 1 bazillion every time ;) | 08:45 |
MadHacker | Maaaaybe overkill. A thousand might do it. :) | 08:46 |
MadHacker | I wonder what the wear-out cycle specs for a bare PCB edge and pad are. :) | 08:46 |
*** czer00 has quit IRC | 19:31 | |
*** czer00 has joined #tomu | 19:32 | |
*** duncan^ is now known as d | 20:21 | |
*** d is now known as duncan^ | 20:21 |
Generated by irclog2html.py 2.13.1 by Marius Gedminas - find it at mg.pov.lt!