Additional user considerations for authentication with OTP

  • In addition to the OTP, a server PIN may be required for authentication. You need to type the server PIN in the Password field, along with the OTP. The server PIN must precede the OTP, i.e. PINOTP. Whether a server PIN is required depends on the OneSpan Authentication Server configuration.
  • In addition to the OTP, you may be required to provide your static password for authentication. You need to type the static password in the Password field, along with the OTP (and the server PIN, if applicable). The password needs to precede the OTP (and the server PIN, if applicable), i.e. PASSWORDOTP. Whether the static password is required depends on the OneSpan Authentication Server configuration.
  • A Digipass authenticator may have been assigned a grace period, which allows static password authentication for a certain period of time before the Digipass authenticator is issued and introduced to a user. The first time the authenticator is used for authentication, the grace period ends immediately and static password authentication is no longer possible.
  • The OneSpan Authentication Server administrator may enforce OTP authentication for users with assigned Digipass authenticators. In that case, you can only select Digipass Authentication on the Select User screen (the default credential provider is disabled). If you have a Digipass authenticator assigned, you need to type the generated OTP in the Password field. Typing your static password will fail. If you do not have a Digipass authenticator assigned, you may type your static password in the Password field.