Symantec VIP requests for token "seed file" information
search cancel

Symantec VIP requests for token "seed file" information

book

Article ID: 384187

calendar_today

Updated On:

Products

VIP Service

Issue/Introduction

Customers may want to receive or download the seed file information of purchased Symantec hard tokens, so that they can be utilized with other multi-factor solutions.

Resolution

The shared secret information (OTP seed) is generated by token manufacturers and is uploaded into our system for use within the VIP environment. If we were to distribute those seeds, we could potentially be compromising the security of the MFA authentication flow. If they were to find their way into the hands of threat actors it would expose our system to fraud abuses since the keys can be used for any number of tenants, not just a single one. As such, we do not allow the export of this information to ensure the integrity of our solution.

 

Customers now have the ability to use FIDO2 based security keys which do NOT have shared secrets. Those token types are fully portable and can be used with VIP as well as other MFA solutions.