<html><head><meta http-equiv="Content-Type" content="text/html charset=us-ascii"></head><body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; ">Ugh! I was looking at an outdated version:<div><a href="https://github.com/abstractj/aerogear.org/blob/da34fe6760c2ce25218b2c629723f1088be2fa11/docs/specs/img/aerogear_otp_registrationv0.0.1.jpg">https://github.com/abstractj/aerogear.org/blob/da34fe6760c2ce25218b2c629723f1088be2fa11/docs/specs/img/aerogear_otp_registrationv0.0.1.jpg</a></div><div><br><div apple-content-edited="true">
<div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: medium; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-align: -webkit-auto; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px; word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: medium; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-align: -webkit-auto; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px; word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: medium; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-align: -webkit-auto; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px; word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: medium; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-align: -webkit-auto; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px; word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: medium; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-align: -webkit-auto; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-size-adjust: auto; -webkit-text-stroke-width: 0px; word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div><br></div></div></div></div></div></div>
</div>
<br><div><div>On Dec 4, 2012, at 1:41 PM, Bruno Oliveira &lt;<a href="mailto:bruno@abstractj.org">bruno@abstractj.org</a>&gt; wrote:</div><br class="Apple-interchange-newline"><blockquote type="cite">Tbh I believe that is just a matter of push the changes to <a href="http://aerogear.org">aerogear.org</a>, because the images are the same (<a href="https://github.com/aerogear/aerogear.org/commit/be8295d48e19f0c24725042c019cefd5bd4c4387">https://github.com/aerogear/aerogear.org/commit/be8295d48e19f0c24725042c019cefd5bd4c4387</a>).<br><br>Let me know if you have more questions on it. <br><br><br>-- <br>"The measure of a man is what he does with power" - Plato<br>-<br>@abstractj<br>-<br>Volenti Nihil Difficile<br><br><br><br>On Tuesday, December 4, 2012 at 4:39 PM, Deepali Khushraj wrote:<br><br><blockquote type="cite">Thanks! I did look at this presentation too, wasn't sure which one was more fresh.<br><br>Does the flow in slide 13 override the one from the spec in github?<br><br><br>On Dec 4, 2012, at 1:31 PM, Bruno Oliveira &lt;<a href="mailto:bruno@abstractj.org">bruno@abstractj.org</a> (<a href="mailto:bruno@abstractj.org">mailto:bruno@abstractj.org</a>)&gt; wrote:<br><blockquote type="cite">Hi Deepali, take a look at this presentation, might help. That pic on staging wasn't updated at the <a href="http://aerogear.org">aerogear.org</a> (<a href="http://aerogear.org">http://aerogear.org</a>) site.<br><br><a href="http://quantum.abstractj.org/talks/2012/aerogear/otp/index.html#/">http://quantum.abstractj.org/talks/2012/aerogear/otp/index.html#/</a><br><br>-- <br>"The measure of a man is what he does with power" - Plato<br>-<br>@abstractj<br>-<br>Volenti Nihil Difficile<br><br><br><br>On Tuesday, December 4, 2012 at 4:16 PM, Deepali Khushraj wrote:<br><br><blockquote type="cite">Hello,<br><br>Some questions on the aerogear OTP flows: <br><br>* In scenario 1, during registration, the server generates the secret and does OTP validation. I was wondering what data is being sent to server? Asking since, I didn't see "Generate OTP" on client-side in the picture <br></blockquote>No data is sent to the server <br><blockquote type="cite"><br><br>* Are we recommending developers to use TOTP or HOTP or both?<br><br>* How does this approach compare to Google's application-specific passwords, where OTP generation takes place outside the app? <br><br>This looks like great stuff!<br><br>Thanks!<br>Deepali.<br><br><br>On Nov 29, 2012, at 11:22 AM, Bruno Oliveira &lt;bruno@abstractj.org (mailto:bruno@abstractj.org)&gt; wrote:<br><br><blockquote type="cite">Morning everyone, just to let you guys know that the security roadmap was finally updated. Feel free to add comments/suggestions on github.<br><br>https://github.com/aerogear/aerogear.org/pull/15 <br><br><br>-- <br>"The measure of a man is what he does with power" - Plato<br>-<br>@abstractj<br>-<br>Volenti Nihil Difficile<br><br><br><br>_______________________________________________<br>aerogear-dev mailing list<br>aerogear-dev@lists.jboss.org (mailto:aerogear-dev@lists.jboss.org)<br>https://lists.jboss.org/mailman/listinfo/aerogear-dev<br></blockquote><br><br><br><br><br>_______________________________________________<br>aerogear-dev mailing list<br>aerogear-dev@lists.jboss.org (mailto:aerogear-dev@lists.jboss.org)<br>https://lists.jboss.org/mailman/listinfo/aerogear-dev<br></blockquote><br><br><br><br>_______________________________________________<br>aerogear-dev mailing list<br>aerogear-dev@lists.jboss.org (mailto:aerogear-dev@lists.jboss.org)<br>https://lists.jboss.org/mailman/listinfo/aerogear-dev<br></blockquote><br><br>_______________________________________________<br>aerogear-dev mailing list<br><a href="mailto:aerogear-dev@lists.jboss.org">aerogear-dev@lists.jboss.org</a> (<a href="mailto:aerogear-dev@lists.jboss.org">mailto:aerogear-dev@lists.jboss.org</a>)<br><a href="https://lists.jboss.org/mailman/listinfo/aerogear-dev">https://lists.jboss.org/mailman/listinfo/aerogear-dev</a><br></blockquote><br><br><br>_______________________________________________<br>aerogear-dev mailing list<br><a href="mailto:aerogear-dev@lists.jboss.org">aerogear-dev@lists.jboss.org</a><br>https://lists.jboss.org/mailman/listinfo/aerogear-dev<br></blockquote></div><br></div></body></html>