Hardware OATH tokens are used where there are no provisions for connection to the Internet, USB connections, or mobile phones, which might be disallowed for security reasons. For more information, see https://openauthentication.org/.

PingID supports hardware OTP tokens that are OATH compliant:

  • HOTP SHA-1 devices
  • TOTP SHA-1 devices with 30 or 60 second OTP refresh intervals
  • Any of the above devices that use a PIN code

PingID does not:

  • Sell hardware tokens
  • Recommend any particular hardware token manufacturer

The following OATH tokens have been checked for user authentication by PingID.

Manufacturer Model Type

Feitian

Display card

TOTP-60-sec

Feitian

OTP c200

TOTP-60-sec

Feitian

Display card

HOTP

Gemalto

EZIO display card

TOTP-30sec

HyperSecu

c100 token

HOTP

HyperSecu

Edge plus

TOTP-60sec

HyperSecu

c200 token

TOTP-30sec

HyperSecu

HyperOTP

TOTP-60sec

HyperSecu

Edge plus

TOTP-30 sec

Protectimus

Protectimus TWO

TOTP-30sec

For information about the user registration, see the PingID End User Guide.

Note: In the event of three consecutive failed authentication attempts with an OATH token, the user will have to wait two minutes before trying to authenticate again.