Previous Topic: One-Time Password AuthenticationNext Topic: OATH One-Time Password Synchronization


OATH One-Time Password Authentication

To authenticate the OTPs that are OATH compliant:

  1. Implement the logic to collect the OATH OTP from the user.
  2. (Optional) If you are implementing a plug-in, then invoke the setAdditionalInput() method in the AdditionalInput class to obtain an object that implements the class.

    See "Preparing Additional Input" for more information.

  3. Invoke the verifyOTP() method of the OATHAuth interface to verify the OTP of the user. Optionally, you can also specify the token type that must be returned to the user after successful authentication by using the AuthTokenType class.

    This method returns an instance of the AuthResponse interface, which provides the transaction details, credential details, and token information.