🔒Tapo App's Third-Party Compatibility Switch Causes Issues
Third-Party Clients Struggling with New Tapo Security
TL;DR
The Tapo app's new 'Third-Party Compatibility' switch, introduced in firmware 1.4.0, is causing problems for third-party clients. The switch, off by default for security, affects plugs and lights and can lock out devices with incorrect passwords.
The Tapo app's 'Third-Party Compatibility' switch, introduced in firmware 1.4.0, is causing issues with third-party clients. This switch, off by default for security, affects plugs and lights and can lock out devices with incorrect passwords. Developers and users of third-party clients need to be aware of this change, as it impacts compatibility and security. The new TPAP protocol, which is safer but less compatible, logs in using SPAKE2+ and doesn't exchange hashes or session keys. The tapo library, version 0.11.1, now supports TPAP and can reach devices with the switch off.
Key Points
The 'Third-Party Compatibility' switch was introduced in firmware 1.4.0, affecting plugs and lights.
The switch is off by default to ensure security, but turning it on brings back the old login protocol, considered less secure.
The new TPAP protocol, introduced in firmware 1.4.0, is safer but doesn't support all devices or models.
The tapo library, version 0.11.1, now supports TPAP and can reach devices with the switch off.
The library reports incorrect passwords as TPAP_CREDENTIALS and lockouts as TPAP_AUTH_ATTEMPTS_LIMIT.
Why It Matters
If you're using third-party clients with Tapo devices, the new 'Third-Party Compatibility' switch in firmware 1.4.0 can cause issues. The switch, off by default for security, affects compatibility and can lock out devices with incorrect passwords. Developers need to update their clients to support TPAP and ensure compatibility.
Comments
Be the first to comment
Enjoyed this article?
Get it daily. 7am. Free. Reads in 5 minutes.
Join 3,555 builders reading daily.