Latest Stable Nxt Client: Nxt 1.11.15 | Latest Experimental Nxt Client: Nxt 1.12.0e
If I am not mistaken, there is a bounty to develop account control, but AT are needed.
Everyone is talking about some fancy stuff like AT,SC (SSCL ) or MS.But since the recent hacks on kLee and other NXT members I'm in daily fear of my beloved NXT.2-factor auth or at least multisigning would increase the security and trustworthiness of NXT so much.Unfortunately I'm not a computer expert and can't help with this.Is any security enhancement planned for the next release?
Agreed 100%. There're not many coins without multisig capability. Unfortunately Nxt is one of them.
Quote from: valarmg on July 28, 2014, 06:10:34 pmAgreed 100%. There're not many coins without multisig capability. Unfortunately Nxt is one of them.After checking five altcoins for multisig capabilities today with all of them having them, I agree it feels quite disgraceful.
Quote from: marcus03 on July 28, 2014, 06:21:58 pmQuote from: valarmg on July 28, 2014, 06:10:34 pmAgreed 100%. There're not many coins without multisig capability. Unfortunately Nxt is one of them.After checking five altcoins for multisig capabilities today with all of them having them, I agree it feels quite disgraceful.Wait ... I thought Nxt has multisig capabilities ... otherwise the MGW would not have been possible. I think it's just not integrated into any of the clients yet.
MGW uses Bitcoin multisig. NXT mutlisig isn't required.
Account control == Multisig?
The account control feature will allow a user to set a "lock" on an account which prohibits any outgoing transactions until certain conditions are met. Account control options may include:Blocking some or all coins from spending, which would restrict the transmission of coins, aliases, assets, or any combination of theseDefining a duration period for these blocksAllowing accounts to only send coins to a specified accountSpecifying that outgoing transactions are only possible during certain hours of the dayScheduling a transaction for a specified date in the futureCombining any of the above settingsThese features present some interesting account usage scenarios:tagging an account as a "savings" account, with no ability to send Nxtusing a locked account as an "escrow" accountlimiting the ability to transfer assets or aliases from an accountsetting a "spending limit" on an account, e.g. 100Nxt/day
Why is AT needed for this?
I think its not ONE most important feature, but more of a Top 10 list Top ten ways hodling makes you happyTop ten reasons BCNext is probably an Alien from the Future(omg, maybe hes a T2 sent to help us kill the humans!)Top ten ways BTC makes your ass look big
Quote from: jefdiesel on July 28, 2014, 07:06:30 pmI think its not ONE most important feature, but more of a Top 10 list Top ten ways hodling makes you happyTop ten reasons BCNext is probably an Alien from the Future(omg, maybe hes a T2 sent to help us kill the humans!)Top ten ways BTC makes your ass look bigI think time travelers are already among us, but not to do anything important. I think rich guys from the future just come back to see Led Zeppelin live and visit relatives who have passed on.
Dunno if it's a feature, but we need a porn, to gain some mainstream users
Quote from: salsacz on July 28, 2014, 05:52:51 pmDunno if it's a feature, but we need a porn, to gain some mainstream usersYes. Porn is definitely needed. +1440Furthermore, we need devs. Anybody?
Quote from: ChuckOne on July 28, 2014, 08:06:29 pmQuote from: salsacz on July 28, 2014, 05:52:51 pmDunno if it's a feature, but we need a porn, to gain some mainstream usersYes. Porn is definitely needed. +1440Furthermore, we need devs. Anybody?What do you wanna see?
2-factor auth or at least multisigning would increase the security and trustworthiness of NXT so much.
Wallets like nxtblocks.info and mynxt.info have 2-factor auth. Use them, as I think they are pretty safe and easier to use.
Quote from: Eadeqa on July 28, 2014, 08:25:11 pmWallets like nxtblocks.info and mynxt.info have 2-factor auth. Use them, as I think they are pretty safe and easier to use. You can still access the account with the private key.
Quote from: m30188 on July 28, 2014, 08:32:49 pmQuote from: Eadeqa on July 28, 2014, 08:25:11 pmWallets like nxtblocks.info and mynxt.info have 2-factor auth. Use them, as I think they are pretty safe and easier to use. You can still access the account with the private key.which always be the case , no matter what you do. 2FA is designed to protect against weak/stolen passwords, and nxtblocks.info and mynxt.info both achive that goal, fulling 2FA security goal.
When a hacker enters my stolen private key into the standard client he can steal my NXT.
Quote from: semibaron on July 28, 2014, 08:47:08 pmWhen a hacker enters my stolen private key into the standard client he can steal my NXT.You mean when the hacker enters the secret phrase. The standard Nxt client doesn't use private key. nxtblocks doesn't use secret phrase. It uses a password that encrypts your wallet. Your secret phrase is in your wallet file, you never type it. If you have 2FA enabled, losing the password alone won't expose the secret phrase as the hacker still would need the wallet file that requires 2FA before you can download it.
Quote from: Eadeqa on July 28, 2014, 08:53:24 pmQuote from: semibaron on July 28, 2014, 08:47:08 pmWhen a hacker enters my stolen private key into the standard client he can steal my NXT.You mean when the hacker enters the secret phrase. The standard Nxt client doesn't use private key. nxtblocks doesn't use secret phrase. It uses a password that encrypts your wallet. Your secret phrase is in your wallet file, you never type it. If you have 2FA enabled, losing the password alone won't expose the secret phrase as the hacker still would need the wallet file that requires 2FA before you can download it. Still the question if a 3rd party can be considered as safe.
Anyone know offhand the max characters allowed for nxt passphrase?