[sldev] [VWR] Improving Authentication Security
Nicholaz Beresford
nicholaz at blueflash.cc
Sat Sep 29 05:08:53 PDT 2007
> 2) If there is a need to offer increased security for
> those who want it, have an option to generate a one time
> password on the website and either copy/paste that into the
> viewer's password field or *optionally* launch it via
> secondlife:// viewer (for convenience, where that works).
However, this suggestion is mainly to stay in line with
what was presented by Sabin.
The main concern, that the viewer can do whatever it chooses
once it is logged in, isn't addressed here. The only way to
address this is going the full way like the banks do, requiring
a throwaway TAN for transactions of impact (land transactions,
reloading the Linden$ account from credit card/paypal, spending
large amounts within short time).
Nick
---
Second Life from the inside out:
http://nicholaz-beresford.blogspot.com/
More information about the SLDev
mailing list