The verifier SHALL use accredited encryption and an authenticated protected channel when accumulating the OTP so that you can deliver resistance to eavesdropping and MitM attacks. Time-based mostly OTPs [RFC 6238] SHALL have a defined lifetime that is determined via the anticipated clock drift — in possibly route — of the authenticator around i