Overview
Documentation
Misc
Related Projects

Feeds


Site
News
Benefits and Features

How many of these would you like to carry on your keychain?

Hardware fobs are just another device to lose!

The greater the number of security devices you carry with you, the more you increase the chances of loosing a device or having it stolen. This just decreases overall security. It's common sense to use an ubiquitous mobile device as a mobile token.

The HausKeys Application is software that runs on your cell phone or your PDA. There is nothing extra to buy or carry around. Hardware keyfobs like the one above from RSA, work with a single userid and account. If you have more than one account, you will need to several of these devices: one for each account.

Pin protection and other guards

Keyfobs are not sophisticated devices. Most generate new passwords on an LCD screen without any pin protection on the device. HausKeys has features to protect your pin and any brute force attempts to crack it.

Pin Guard

The HausKeys Pin Guard allows you to lock down the application with a pin of your choice.

Pin Delay

The HausKeys Pin Guard can be configured to wait a certain amount of time after an unsuccessful attempt to unlock the application. If stolen it would take months or years for an attacker to brute force crack your pin.

Pin Destruct

This is for those that may be a little paranoid or let's just say security conscious. When the pin destruct feature is enabled, HausKeys is armed. It will destroy all accounts if the wrong pin is consecutively entered a certain number of times.

Avoid vendor lockin

Proprietary solutions work only with proprietary backends. The HausKeys Application is a free open source J2ME application that is based on a standard OTP algorithm: HOTP. As HOTP based strong authentication is more widely accepted, HausKeys will work with more backends and not just our Open Source HausServer.

Avoid a long RMA process

Hardware tokens are a nightmare to replace with when they break. Getting a new fob for a user can take a long time. With HausKeys any J2ME device can be used to replace a lost or broken handset.

You don't have to be a VIP to be protected

Manufacturing hardware tokens costs and the consumer paid for this. For this reason Keyfobs and protection via strong authentication was limited to the VIP. To bring down costs they must be purchased in bulk and so the initial overheads in cost just increases. Small companies often find themselves paying a premium for this kind of protection. With free open source software fobs on mobile devices we can eliminate the cost so everyone can be protected whether they are a VIP or not and regardless of the size of company they work in.

Trusted Open Source Software

HausKeys is produced by a group of Apache and Codehaus developers who have been developing trusted software used industry wide. The quality and security does matter.

Rapid market acquisition

HausKeys and the HausServer are the first products of their kind to be produced as open source. We expect rapid adoption where the HausKeys Application may become the standard token for several commercial companies.

Implements OATH HOTP

HausKeys implements the HOTP algorithm which was developed by OATH members. When faults are found they are immediately fixed. Vendors of proprietary algorithms do not have this kind of en mass validation. The algorithm has several advantages:

  • No time synchronization required!
  • Automatic resynchronization protocol keeps devices in synch wit h server.
  • Tunable security parameters to adjust strength
  • Forgiving: algorithm operates even when servers are disconnected from replication clusters and users roam
  • Designed for low resource utilization on mobile devices.
  • Does not require mobile device connectivity.