IB TWS security token asked after disconnection

Discussion in 'Interactive Brokers' started by travis, Feb 22, 2012.

  1. travis

    travis

    Thanks for keeping us updated, fullautotrading. I still have not opted back into the Secure Login System, because I am still afraid something might go wrong and right now I can't afford to miss any trading days. Also, capital is quite low, so I am less afraid of being hacked than of being logged out by the Secure Login System.
     
    #61     Mar 25, 2012
  2. On a Sunday morning?

    Is that a problem?

    Most likely they are recycling their servers while markets are closed.
     
    #62     Mar 25, 2012
  3. Of course it is a problem. Because the bot cannot restart trading when market opens in few hours. They are free to do all the needed maintenance, but not to block permanently the client side.

    Read the previous posts...

    (I have investors who are away for weeks leaving all unattended, and it must be able to work smoothly, as it always did.)

    T
     
    #63     Mar 25, 2012
  4. I've already read them but I think it is unrealistic not to expect weekly cycling of servers. It is a standard practice in many IT operations so that slow memory leaks do not accumulate over time.
     
    #64     Mar 25, 2012
  5. What has this do do with "weekly cycling of servers" ??

    They can do all they like on the server side. As we already said a thousand times, the user must NOT be rechallenged, as soon as the USER does not shut down the gateway (or tws).

    The gateway must keep looping or relogin using the stored good credential. As it normally does. The server can even <b>blow up</b>, we dont care. ;-)))

    Is this so hard to get ?


    T
     
    #65     Mar 25, 2012
  6. Well that's your design to address the problem. It is probably not their's. They're probably doing it all on the server. After all, the fix did not require any change to the client.

    It may be open to question whether it is would be prudent to entrust aspects of security to the client because it could easily be hacked. What would prevent anyone from patching the client gateway to say "logon token already verified" permanently?
     
    #66     Mar 25, 2012

  7. What are you talking about ? <b>They</b> are challenging me.

    HOW can this be my design ?

    Do you want me to lose my patience with you ? Please, if you do not real trade automatically 24/7 avoid to talk of what you dont know.

    Now assume i have to leave now and come back in 3 days.
    The gateway has halted the trading system with no reason.

    I come back in 3 days. Result. I am angry, they have lost several hundred $$$ in commissions.

    Other long term result. People will go away.

    Please dont make me repeat. The issue is clear to anyone is doing this.

    And even to IB (Constantine) which is intervening in this thread with the intent to SOLVE it.

    ok ?
     
    #67     Mar 25, 2012
  8. Your design of a proposed fix is to store the token-verified state in the client gateway. I pointed out that that design of a fix would be insecure and not feasible.

    I'm all for another solution but I'm just pointing out that the solution you propose would not be a good idea.
     
    #68     Mar 25, 2012
  9. They can do WHATEVER they want. I know there are many geniuses over there. I can see it.

    But do not rechallenge.

    Make an option to OPT out or whatever. Do a flick flack. Shoot yourself. But <b>do not rechallenge until I restart the application</b>.

    HOW DO I HAVE TO SAY IT ?

    Chinese ? Korean ?
     
    #69     Mar 25, 2012
  10. travis

    travis

    Hello everyone, let's not get into arguments with each other. Thanks to our cooperation on this thread, and collective effort and feedback to IB, the problem was addressed by IB and at least partially fixed a few weeks ago.
     
    #70     Mar 25, 2012