The verifier SHALL use accepted encryption and an authenticated protected channel when amassing the OTP so as to give resistance to eavesdropping and MitM attacks. Time-centered OTPs [RFC 6238] SHALL have a defined life time that is determined because of the expected clock drift — in possibly route — of your authenticator more than its life spa