HOTP Physical Token
Physical HMAC-Based One-Time Password - HOTP - token is a way to verify a user's identity using a code generated, similar to virtual HOTP tokens, but in the physical device. If the user has enrolled this token, when asked to enter the one-time password (OTP) when logging into the application, the user reads the OTP from the device and inserts it into the system. If the OTP is entered correctly, the user's identity is verified and the login occurs.
The difference between HOTP and TOTP types of tokens is that HOTP generates OTP based on some instruction - most often a button that is on the device itself. TOTP, on the other hand, generates a new OTP every 30 seconds or so.
Physical HOTP token enrollment process
1 |
Choose the Physical HOTP template from the Token type drop-down menu.
|
|
2 |
Optionally fill the Description field of the token.
|
|
3 |
Insert the serial number from the device into the Serial number field. |
|
4 |
Generate a new OTP on the device and insert it into the OTP field. |
|
5 |
Generate a new OTP on the device and insert it into the OTP2 field.
|
|
6 |
Press the SAVE button to finish the enrollment and activate the token. |