|
MT
上校級會員
   
Hong Kong


Posts 3326 |
Posted - 21.11.2005 : 21:21:40
|
With internet banking of Hong Kong Bank, there is a security device offered by the bank.
Each login with user name and password, then you have to press the device for a code for access.
I am curious on how this works. Any banker can advice?
Thank you.
.
MT Happy Snooker
|
Edited by - MT on 21.11.2005 21:22:35 |
|
|
Dickson
隊長級會員
    
Hong Kong


Posts 10479 |
Posted - 21.11.2005 : 22:37:52
|
我都用緊,可能係一個小型收發器
Dickson 是非有公理 慎言莫冒犯別人 遇上冷風雨 休太認真 自信滿心裡 休理會諷刺與質問 笑罵由人 灑脫地做人 少年人 灑脫地做人 繼續行 灑脫地做人 [般若波羅密多心經] |
 |
|
|
Ken Sir
少校級會員
 
Hong Kong

Posts 770 |
Posted - 22.11.2005 : 00:35:22
|
MT,我都用左好幾個月了,聽講佢個終端機每分鐘都會不停輸出一組不同的6位數字,當你登入時需輸入相同的數字先得! 我試過專登入錯一兩個數字都登入唔到,所以我諗都幾可靠卦? |
 |
|
|
MT
上校級會員
   
Hong Kong


Posts 3326 |
Posted - 22.11.2005 : 02:06:52
|
quote: Originally posted by Ken Sir
MT,我都用左好幾個月了,聽講佢個終端機每分鐘都會不停輸出一組不同的6位數字,當你登入時需輸入相同的數字先得! 我試過專登入錯一兩個數字都登入唔到,所以我諗都幾可靠卦?
我試過入上次果個 --- 唔得 又試過入五分鐘前, 而又未key入過的 --- 唔得
.
MT Happy Snooker |
 |
|
|
MT
上校級會員
   
Hong Kong


Posts 3326 |
Posted - 22.11.2005 : 10:26:31
|
quote: Originally posted by Dickson
我都用緊,可能係一個小型收發器
Dickson 是非有公理 慎言莫冒犯別人 遇上冷風雨 休太認真 自信滿心裡 休理會諷刺與質問 笑罵由人 灑脫地做人 少年人 灑脫地做人 繼續行 灑脫地做人 [般若波羅密多心經]
I asked them this morning whether I can use it in other countries.
The answer is "YES" !
So it is not a receiver.
Ha...interesting "toy".
.
MT Happy Snooker |
 |
|
|
gclee
少校級會員
 
Hong Kong


Posts 704 |
Posted - 22.11.2005 : 11:02:46
|
|
It's difficult to explain in Chinese, so I use English this time. The security server will generate a random code for each security device every second based on system time and the special algorithm. So each time you press the security device, the security device will generate a code also based on the algorithm, hence the generated code will match with the security server for authentication. However the valid time period of the code can be set on the system, it can't be used if time expired. |
 |
|
|
billson
管理員
   
Hong Kong


Posts 3488 |
Posted - 22.11.2005 : 11:09:50
|
又等我用 Dr. eye 幫下勤仔翻譯
用漢語解釋很難,因合痝o次使用英語。 安全伺服器每隔一基於系統時間和特別的算法將為每台安全裝置產生一條隨便代碼。 因合A壓安全裝置, 安全裝置將也基於算法產生一條代碼,因此合成碼將為驗証與安全伺服器匹配。 但是,代碼的有效時間段可能攻擊系統,如果時間終止,它不能被使用。
標神 國語 :『What I need。』 日語 :『屈他史話呀那他軻埃死他。』
|
 |
|
|
MT
上校級會員
   
Hong Kong


Posts 3326 |
Posted - 22.11.2005 : 12:12:36
|
Thank you.
.
MT Happy Snooker |
 |
|
|
Steven
初青會員

Hong Kong


Posts 308 |
Posted - 22.11.2005 : 12:13:02
|
quote: Originally posted by gclee
It's difficult to explain in Chinese, so I use English this time. The security server will generate a random code for each security device every second based on system time and the special algorithm. So each time you press the security device, the security device will generate a code also based on the algorithm, hence the generated code will match with the security server for authentication. However the valid time period of the code can be set on the system, it can't be used if time expired.
唔係每秒gen, 亦唔係每按一下gen, 應該係每隔n秒會generate下一個number (passcode), 只係你唔按button就唔display出o黎, 以防旁人睇到同埋慳返少少電。你係有機會連按兩次而得到同樣number, 你可以試下
唔係每次generate個random code, 而係個粒security id出世果陣generate左個random code (當係條key), 之後佢唔會再轉。而server同粒security id就都記住哩個key同埋同步(synchronize個時間), 之後就每隔數秒, 根據哩個key同時間, generate下一個passcode, 咁你入個number的時候, 如果同server generate的match 就確認喇。 所以你入number o既時間亦唔可以太耐, 否則果個passcode就expire左, 不被確認。
============================================================ 矇眼小北北 |
Edited by - Steven on 22.11.2005 12:17:09 |
 |
|
|
gclee
少校級會員
 
Hong Kong


Posts 704 |
Posted - 22.11.2005 : 12:28:27
|
|
Different systems have different implementation methods, but the principles are the same. |
 |
|
|
MT
上校級會員
   
Hong Kong


Posts 3326 |
Posted - 22.11.2005 : 12:46:13
|
Yes. I press it again and again.
The codes were the same for a few times (for about 5 seconds) and then changed to another.
.
MT Happy Snooker |
 |
|
|
Steven
初青會員

Hong Kong


Posts 308 |
Posted - 22.11.2005 : 13:06:42
|
quote: Originally posted by gclee
Different systems have different implementation methods, but the principles are the same.
Right, but what I pointed out is the mistake on the principles previously stated, not the difference in implementation across vendors.
============================================================ 矇眼小北北 |
 |
|
|
MT
上校級會員
   
Hong Kong


Posts 3326 |
Posted - 23.11.2005 : 00:28:15
|
Thank you 勤哥 and Steven !
.
MT Happy Snooker |
 |
|
|
Dickson
隊長級會員
    
Hong Kong


Posts 10479 |
Posted - 23.11.2005 : 00:29:32
|
明晒!Thankyou!
Dickson 是非有公理 慎言莫冒犯別人 遇上冷風雨 休太認真 自信滿心裡 休理會諷刺與質問 笑罵由人 灑脫地做人 少年人 灑脫地做人 繼續行 灑脫地做人 [般若波羅密多心經] |
 |
|
|
KCSS
中校級會員
  
Australia


Posts 1103 |
Posted - 23.11.2005 : 15:37:27
|
HSBC posted this device to me last month in order to let me keep using the internet banking, so, it works outside HK..
學海無涯,回頭是岸_____Kei. |
 |
|
|
chrisc
初青會員

Posts 123 |
Posted - 28.11.2005 : 17:26:35
|
D number 係唔係人人都唔一樣GA??
WARNING: Smoking Causes Cancer! |
 |
|
|
MT
上校級會員
   
Hong Kong


Posts 3326 |
Posted - 28.11.2005 : 17:34:47
|
I think yes since each device has a different serial number.
In fact I have more than 1 device and the numbers are different.
.
MT Happy Snooker |
 |
|