Yubikey 2.0 Setup Dynamic configuration for Rohos Logon with static AES key

Some time ago we got  YubiKey 2.0. and YubiKey 2.0 RFID devices from Yubico. Both of them are 2.01.1 firmware versions. The newer key (on the picture is above) a bit thicker, has a special circular press area and the body is more steady.

The Yubikey is a One-Time-Password token that works via the USB keyboard interface. New generation of Yubikeys also combines 2 devices in 1 Yubikey: OTP + RFID or OTP + 1 static password generator. OTP + OATH OTP (Firmware 2.1). Also Yubikey has many changes on backed.

What’s new in Yubikey 2.0:

  • Improved security.
  • Yubikey allows to have 2 configurations. Many YubiKey users wanted to have possibility to use YubiKey as static password generator + OTP token. Here it is.
  • Beautiful and easy to use Configuration Utility.
  • Dual-device: Yubikey + RFID (Classic Mifare 1k) or OATH 6 or 8 digit code identity.
  • New Yubico validation server:
    + allows uploading custom AES keys.
    + allows revoking Yubikeys
    + Validation protocol 2.0
  • Yubikey solutions Wiki - the list of the vendors, integrators and software that work with Yubikey.

Configuration Utility

allows reprograming Yubikey Configuration #1 or  Configuration #2.

Second Configuration

YubiKey 2.0 works in the press-and-hold fashion.  First off, the presses are time based. Where in v.1 you held it down until it started printing out the characters, with v.2.0 you make short press for the first config and long press (2.5 - 5 seconds technically) to generate second config OTP. Please note Yubikey configuration #2 has a feature allowing use to update static password if you press and hold the key for 8-15 seconds.

By default, Rohos Logon Key works with v.2 as usual but one customer was sent raw YubiKeys (version 2.1.1 not being configured) . So he asked us to give a step-by-step guide on how to set up YubiKey with Rohos Logon if Yubikey is not configured with OTP.

Here you may download the Guide - Yubikey 2.0 Setup Dynamic configuration for Rohos Logon with static AES

Read the rest of this entry »

Ironkey security review (part 2).

We go on with tests with IronKey. And in this part we’d like to tell you more about the features and functionality of the drive.  The new S200 IronKey model is now compatible with Windows 7. The IronKey S200 1GB is high end and its price reflects that - 79$ USD. Our verdict for this part: screwed-on device and features that makes USB flash drive the most secure and user life a bit complicated.


Read the rest of this entry »

“Iron grip” over your PC and data. Rohos Logon Key for Windows/Mac with Ironkey (part 1).

“Protect your PC…” ·” Get the latest security updates …”.  “Two factor authentication solutions…”. You may find answers to these questions and many more on computer security using usual Google search engine. And yes, there is a wide range of solutions offered to users to make them less worry about their precious private data on their PCs or portable storage device.

Recently three hardware encryption devices have been delivered  - IronKey Personal S200 1Gb, Kanguru Defender 1Gb and DataTraveler Vault Kingston 2Gb. This time we’d like to present you the review of  IronKey that arrived at our lab to everyone’s joy. Long -awaited possibility to play around with this highly praised flash drive and set it up for secure Windows login with Rohos Logon Key is now available. Let’s start with getting to know more about the flash drive itself.

Core Features:

  • Hardware-Encrypted Flash Drive
  • Self-Destruct Sequence
  • Anti-Malware Autorun Protection
  • Portable Cross-Platform Data Access
  • Simple Device Management
  • Secure Data Recovery

Learn more about these and other IronKey’s features in part 2 of the review.


Read the rest of this entry »

Tesline-Service announces unilateral termination of Distributor Agreement with Eller Service S.C., Poland.

April 14, 2010

Due to failure by Distributor to properly fulfilling obligations in accordance with Distributor Agreement signed in November 2008 between Tesline-Service and Eller Service S.C. , Tesline-Service announces unilateral termination of Distributor Agreement with Eller Service S.C., Poland.

Contactless robust Windows logon with Rohos Logon v.2.8

(updated on May 11, 2010)

There are enormous quantity of reasons why you should protect access to your machine regardless if it is your home computer or PC at work connected to large network. Damage caused by unauthorized access to computers sometimes can’t even be measured in money.

Common protection and your pet’s name as password are simply not enough any more. In collaboration with Futako Ltd. we offer MiFare cards support for Rohos products.  Contactless cards are increasingly accepted as the credential of choice for controlling physical access. They are both robust and flexible, giving security professionals the ability to reduce maintenance costs and increase security. The cards can’t be copied, tampered with, duplicated, cloned and resist hackers attacks. As result your information is safely stored inside smart card. Even if card is lost it will not reveal stored information.

Rohos Logon Key solution takes care about secure access to Windows by storing logon data into the smart cards. It is important to note that logon information is not used in standard way and extracted from the card, only then directly submitted to logon process. Logon profile is encrypted in the cards. It’s no longer necessary to type sensitive information during logon process where it is vulnerable. Rohos Logon Key speeds up log-in process and keeps it secure.

Read the rest of this entry »

Most wanted portable data encryption tool

We always care what people say about Rohos in their blogs and across forums. As a result we spent much time also surfing the web reading security news, talks about Rohos and other encryption products in many languages. This gives us important feedback about what people expect from data security products in order to protect sensitive information.

Here are the features of the most wanted data security tool for usb flash drives …

Read the rest of this entry »

Review of Hardware Encryption vulnerability of Kingston and SanDisk USB flash drives

The Kingston Technology company, a leader in the production of safe USB drives, and one of the first ones that started producing USB flash drive with hardware encryption (Kingston DataTraveler Secure) announced that some of its models of USB flash drives with hardware protection feature are vulnerable. The announcement was posted on the company’s web site saying that with the help of some tools you can access this USB drive (i.e. hack it without a password). News regarding some models of Kingston being prone to cracking is very surprising because these flash drives have been certified in compliance with FIPS 140-2.

Everything started with the fact that the German company SySS published a document entitled “Companies SySS hacked USB flash drive with hardware encryption Kingston certified FIPS 104-2″. In this document they describe in details the authentication protocol between the drive and the program (the user), which they found on the basis of intercepted USB traffic + vulnerability that was discovered. And also some screenshots of the utility, which is embedded in the process of authentication program for USB drives, and as a result - we may enter any password and access will be granted.
Read the rest of this entry »

Lock/unlock your Mac with Rohos Logon Key. Video review by Alex.

One of Rohos Logon Key for Mac users, Alex, has volunteered to make a video about the program. Looks like it turned out to be a success for a young Mac user. :-) From his video you will learn that “Rohos Logon Key turns any USB into a key to unlock your computer.” So whenever you do not want to type in your password just like Alex has confessed, plug in your USB.

Rohos Logon Key for Mac benefits:

  1. To unlock your computer just plug in your USB
  2. Going for a break or lunch just pull the USB key out and the program will do whatever you want to (preliminary setup is required):
    1. Shut down
    2. Goes to sleep, etc.

Alex demonstrates how Rohos Logon Key looks and works on Mac:

  • Showing Rohos Preferences window
  • Setting actions upon USB key removal
  • Possibility to turn Rohos Logon Key OFF in case your USB key is stolen
  • Possibility to add new USB keys to access your computer is amazingly fast!

Thank you Alex and success to you in all your undertakings.

BioSlimDisk biometric security token, Review, Comparison.

Dear friends, recently we have covered “BioSlimDisk Signature” compatibility with some Rohos products. Now it’s time to review device security capabilities, compare it with other Biometric USB flash drives with fingerprint scanners and give you some hi-res photos of the device.

In brief, BioSlimDisk is a USB flash drive with hardware level encryption (AES 256 bit key length) and hardware level Biometric authentication.

Read the rest of this entry »

UmiKey - OTP authentication to the Web and Windows

This time we would like to present another innovative One-Time-Password token -  UmiKey.  This is a small Key-like USB device that doesn’t need any driver on the client. With this token you can sign-in securely into practically any software or hardware system where you have USB Port. When you need to log in you just connect it and press a small button on it to generate One-Time-Password string into any text field (login form).

Read the rest of this entry »