Details
-
Story
-
Resolution: Unresolved
-
Medium
-
None
-
None
-
None
Description
OTP
Implement a generic 2-factor (2FA) one-time password (OTP) userhandler that can be extended to also support hardware keys like Yubikey.
Yubikey
See my attached simple PHP implementation of OTP verification.
Doc refs:
https://status.yubico.com/2021/04/15/one-api-yubico-com-one-http-get/
https://developers.yubico.com/OTP/Specifications/OTP_validation_protocol.html