Accessing the OnBoard Appliance and Connected Devices : Obtaining and Using One Time Passwords for Dial-ins

Obtaining and Using One Time Passwords for Dial-ins
This section is for users authorized to dial into the OnBoard appliance through an external modem, PC modem or phone card when the one time password (OTP) authentication method is configured for logins to that device. With OTP authentication, you supply a different password every time you dial-in, so no one who discovers the password used for one session can use that password later to access your account. An OTP is a group of six English words that are entered all on the same line at the prompt.
When you dial into the OnBoard appliance and enter a username, the system provides a challenge string starting with otp-md5, which tells opiekey to use the MD5 algorithm, followed by a sequence number and a key and waits for a response.The key includes the first two letters of the hostname and a pseudo random number. In the following example, the sequence number is 499 and the seed is on93564.
login: username
otp-md5 499 on93564
Response:
The user copies the challenge and pastes it into the command line on a non-networked workstation. The opiekey program then prompts the user for the user’s secret pass phrase.
Each OTP user needs a local user account on the OnBoard appliance, must be registered with the OTP system and must be able to obtain the OTP username, OTP secret pass phrase and OTP passwords needed for logins. The following procedure is for users who have the opiekey program running on a non-networked workstation, who know the secret pass phrase and are able to generate their own passwords.
To generate an OTP password when prompted at dial-in:
1.
Dial into the OnBoard appliance through an external modem, a PC modem or phone card that has been configured to use OTP authentication.
2.
a.
Copy the challenge into a window on a non-networked workstation where the opiekey program is installed, as shown in the following example.
b.
3.
Response: MOS MALL GOAT ARM AVID CORK
2