Can software tokens ( CA Mobile OTP) be used instead of OTP codes?
search cancel

Can software tokens ( CA Mobile OTP) be used instead of OTP codes?

book

Article ID: 232493

calendar_today

Updated On:

Products

CA Risk Authentication

Issue/Introduction

I am using an OTP code for the second authentication in an integrated environment with SiteMinder.
The business asks if this can be a soft token. Will we use OATH OTP Tokens to achieve this?
Is it possible to just change the settings on the UDS console, such as creating an OATH OTP Token and replacing it with an OTP code?

Or is it necessary to reconstruct the AFM?

Environment

Release : 9.1

Component : AuthMinder(Arcot WebFort)

Resolution

Yes OATH OTP ( Software token) integration is also OOTB available, We provide Mobile application called CA Mobile Authenticator and also desktop version to generate OTP which is called CA Desktop client.
The integration can be done by creating a profile using ArcotAFMWizard or updating the existing profile using the Wizard.

Once you try to move from existing OTP to Software token ( Ca Mobile Authenticator or CA Desktop client), the users have to enroll for this credential so there will be user flow change for enrollment and once done you can offline generate the OTP using the methods I mentioned above and then continue to use the solution.
Here is more information about the Mobile OTP.

https://techdocs.broadcom.com/us/en/symantec-security-software/identity-security/advanced-authentication/9-1/installing/ca-mobile-otp-client-installation/user-self-service-operations-using-the-ca-mobile-otp-desktop-client/how-to-work-with-ca-mobile-otp.html

You can use ArcotAFMWizard and generate the profile as per your need and validate this in lower environment.

Please reach out to Broadcom Support team if you have any additional questions.

Additional Information

Configure Adapter Using the Wizard (broadcom.com)