The verifier SHALL use accredited encryption and an authenticated guarded channel when amassing the OTP to be able to deliver resistance to eavesdropping and MitM assaults. Time-centered OTPs [RFC 6238] SHALL have an outlined life span that is decided because of the predicted clock drift — in either path — on the authenticator above its lifetim