Come-from-Beyond
Legendary
Offline
Activity: 2142
Merit: 1010
Newbie
|
|
January 01, 2014, 03:44:57 PM |
|
Just a password to send....The function can be optional.
Nxt is decentralized, u can ask the password million times but it won't make ur account more secure if u use a weak master password.
|
|
|
|
rickyjames
|
|
January 01, 2014, 03:49:33 PM |
|
Just a password to send....The function can be optional.
Nxt is decentralized, u can ask the password million times but it won't make ur account more secure if u use a weak master password. For the record, I hereby vote for implementing an optional 2 factor authorization scheme via cellphone SMS as soon as possible. All in favor, say aye?
|
|
|
|
BitcoinForumator
Legendary
Offline
Activity: 1120
Merit: 1000
|
|
January 01, 2014, 03:50:45 PM |
|
What's going on with the Blockchain Explorer? It's been down longer than 24h
|
|
|
|
landomata
Legendary
Offline
Activity: 2184
Merit: 1000
|
|
January 01, 2014, 03:52:57 PM |
|
Just a password to send....The function can be optional.
Nxt is decentralized, u can ask the password million times but it won't make ur account more secure if u use a weak master password. For the record, I hereby vote for implementing an optional 2 factor authorization scheme via cellphone SMS as soon as possible. All in favor, say aye? to tie the phone number to the account would be risky.....but you could easily create X amount of anonymous e-mail addresses.
|
|
|
|
Anon136
Legendary
Offline
Activity: 1722
Merit: 1217
|
|
January 01, 2014, 03:53:22 PM |
|
Just a password to send....The function can be optional.
Nxt is decentralized, u can ask the password million times but it won't make ur account more secure if u use a weak master password. For the record, I hereby vote for implementing an optional 2 factor authorization scheme via cellphone SMS as soon as possible. All in favor, say aye? that doesn't make any sense. there is no "nxt company" to receive the text message.
|
Rep Thread: https://bitcointalk.org/index.php?topic=381041If one can not confer upon another a right which he does not himself first possess, by what means does the state derive the right to engage in behaviors from which the public is prohibited?
|
|
|
Come-from-Beyond
Legendary
Offline
Activity: 2142
Merit: 1010
Newbie
|
|
January 01, 2014, 03:53:56 PM |
|
Just a password to send....The function can be optional.
Nxt is decentralized, u can ask the password million times but it won't make ur account more secure if u use a weak master password. For the record, I hereby vote for implementing an optional 2 factor authorization scheme via cellphone SMS as soon as possible. All in favor, say aye? to tie the phone number to the account would be risky.....but you could easily create X amount of anonymous e-mail addresses. Guys? R u kidding???
|
|
|
|
landomata
Legendary
Offline
Activity: 2184
Merit: 1000
|
|
January 01, 2014, 03:54:26 PM |
|
that doesn't make any sense. there is no "nxt company" to receive the text message.
it could be a value added service provided by SERVICE PROVIDERS
|
|
|
|
Come-from-Beyond
Legendary
Offline
Activity: 2142
Merit: 1010
Newbie
|
|
January 01, 2014, 03:56:21 PM |
|
it could be a value added service provided by SERVICE PROVIDERS
Only if it's multisig and u trust this service provider.
|
|
|
|
rickyjames
|
|
January 01, 2014, 03:59:24 PM |
|
Just a password to send....The function can be optional.
Nxt is decentralized, u can ask the password million times but it won't make ur account more secure if u use a weak master password. For the record, I hereby vote for implementing an optional 2 factor authorization scheme via cellphone SMS as soon as possible. All in favor, say aye? to tie the phone number to the account would be risky.....but you could easily create X amount of anonymous e-mail addresses. Guys? R u kidding??? OK, using cellphone is not immediately feasible except as an add-on service later. But I really do believe that some kind of hooks for a 2 factor authorization should be built into the code for transfers above a certain amount. It would be slow because you would have to wait for the blockchain to generate the authorization code and get it back to you some minutes after you requested it, but I guarantee you that many users would pay extra fees for this to disallow transfers over a certain threshold without a blockchain generated authorization code. I would pay for it right now. As programmers and math geeks, this seems unnecessary. For public acceptance by high value users, it is mandatory or close to it.
|
|
|
|
landomata
Legendary
Offline
Activity: 2184
Merit: 1000
|
|
January 01, 2014, 03:59:45 PM |
|
it could be a value added service provided by SERVICE PROVIDERS
Only if it's multisig and u trust this service provider. optional service....people trusted banks in Cyprus.
|
|
|
|
landomata
Legendary
Offline
Activity: 2184
Merit: 1000
|
|
January 01, 2014, 04:02:24 PM |
|
But I really do believe that some kind of hooks for a 2 factor authorization should be built into the code for transfers above a certain amount.
This makes sense Edit: A thief could always transfer smaller amounts under the threshold....
|
|
|
|
laowai80
Member
Offline
Activity: 98
Merit: 10
|
|
January 01, 2014, 04:02:27 PM |
|
NXT is like a gun. Once you squeeze the trigger, you can't stop the bullet. Safety lock is your pass phrase. People are asking for additional safety measures so that they or someone else can't squeeze that trigger or that the gun asks them 'are you sure you want to squeeze it?'
|
|
|
|
ImmortAlex
|
|
January 01, 2014, 04:03:08 PM |
|
I vote for automatic transfer of 100,000 NXT from account, who ask for 2FA in decentralized network And another 100,000 NXT for user/password scheme request.
|
|
|
|
landomata
Legendary
Offline
Activity: 2184
Merit: 1000
|
|
January 01, 2014, 04:04:54 PM |
|
NXT is like a gun. Once you squeeze the trigger, you can't stop the bullet. Safety lock is your pass phrase. People are asking for additional safety measures so that they or someone else can't squeeze that trigger or that the gun asks them 'are you sure you want to squeeze it?'
Edit: its simple for us...but for the general public its gonna be too much....pls bank pins are 4 digits....they are not gonna be used to 30+ char. I know it is a must....but we have to try to see things from the perspective of the everyday person...who we want to adopt this technology.
|
|
|
|
chanc3r
|
|
January 01, 2014, 04:05:10 PM |
|
Just a password to send....The function can be optional.
Nxt is decentralized, u can ask the password million times but it won't make ur account more secure if u use a weak master password. Passwords are often stolen by observation, looking over someones shoulder etc. if you are in a shop you don't want to be entering a 30 character complex password on a smartphone its completely impractical so I suspect the smart phone clients will need to do something and keep next logged in with the passphrase. I suspect when in wider adoption to prevent fraud by people accessing these devices NXT should ask for a level of authentication, people will expect this and however wonderful NXT is, the common man/woman/child will expect you to make the account safe and practical for them to use. The first password opens the account - anyone can guess it / type it etc which is the driver of the discussion. The second password would personalise the account to the person who selected the key the first time and then set a second key. with other currencies you have the password/random characters that created the wallet and the option of a second password to encrypt the client - would be cooler with NXT if you could put that second password in the protocol. SMS 2 factor authentication works for centralised organisations not decentralised systems, same problems as email - 3rd parties are also involved or would have to be, it would cost and someone would have to pay - there are lots of models but maintaining the stance that the only protection NXT provides is via a 50/60/70{- where do we stop} character password will become a barrier to adoption.
|
|
|
|
Damelon
Legendary
Offline
Activity: 1092
Merit: 1010
|
|
January 01, 2014, 04:05:43 PM |
|
NXT is like a gun. Once you squeeze the trigger, you can't stop the bullet. Safety lock is your pass phrase. People are asking for additional safety measures so that they or someone else can't squeeze that trigger or that the gun asks them 'are you sure you want to squeeze it?'
This may all be so, but there is a need for the safety to be better. Mainstream users will NEVER enter NXT in any way if safety is an issue. Most people just want peace of mind and the knowledge that their money is safe and guaranteed. For now, in this phase, it's maybe not an issue, but it should definitely be on the cards if NXT has plans to be anything other than a service that is used by the few.
|
|
|
|
sparta_cuss
|
|
January 01, 2014, 04:05:58 PM |
|
Hey, looks like I just got robbed, too. Someone please check this account: 12152013998194592943 They now have 147k+ from me. Had a 40 char random password, capital, lower, numbers, symbols. WTF?
|
"We must be willing to let go of the life we have planned, so as to have the life that is waiting for us." - E.M. Forster NXT: NXT-Z24T-YU6D-688W-EARDT BTC: 19ULeXarogu2rT4dhJN9vhztaorqDC3U7s
|
|
|
laowai80
Member
Offline
Activity: 98
Merit: 10
|
|
January 01, 2014, 04:06:06 PM |
|
NXT is like a gun. Once you squeeze the trigger, you can't stop the bullet. Safety lock is your pass phrase. People are asking for additional safety measures so that they or someone else can't squeeze that trigger or that the gun asks them 'are you sure you want to squeeze it?'
its simple for us...but for the general public its gonna be too much. This may all be so, but there is a need for the safety to be better. Mainstream users will NEVER enter NXT in any way if safety is an issue. Most people just want peace of mind and the knowledge that their money is safe and guaranteed. For now, in this phase, it's maybe not an issue, but it should definitely be on the cards if NXT has plans to be anything other than a service that is used by the few.
That's why there will always be banks. And some people will always trust banks, no matter how many times banks screw them. Because banks take away worries of how to store funds, sometimes take away funds too. The reality is only death and taxes are guaranteed. Everything else is just chances.
|
|
|
|
salsacz
|
|
January 01, 2014, 04:08:45 PM |
|
I can see those talkshows right now "So if I type "Barbara" as my password, some hacker will steal my money?" "It would take some time, maybe 5 seconds, but yes, you will loose all your funds." "..."
|
|
|
|
salsacz
|
|
January 01, 2014, 04:10:30 PM |
|
Hey, looks like I just got robbed, too. Someone please check this account: 12152013998194592943 They now have 147k+ from me. Had a 40 char random password, capital, lower, numbers, symbols. WTF?
you're 11794318797680953099? http://22k.io/-account/12152013998194592943
|
|
|
|
|