

CA CloudMinder Advanced Authentication › How Advanced Authentication Works › End User Authentication Flows › ArcotID OTP Flows › ArcotID OTP Only Flow
ArcotID OTP Only Flow
The ArcotID OTP Only flow defines the steps that must be performed to authenticate end users with the ArcotID OTP credential only. At runtime, this flow takes effect only if the ArcotID OTP credential is enabled.
This section assumes that the end user has installed the ArcotID OTP application and that the ArcotID OTP credential is provisioned to the end user's device.
End users are authenticated as follows:
- When trying to access a protected resource in a browser, the end user is prompted for their user name and OTP.
- The end user opens the ArcotID OTP application installed on their desktop or mobile device.
- The end user authenticates to the ArcotID OTP application using their PIN and generates an OTP.
- The end user then returns to the login page in the browser, enters the user name and OTP, and clicks Submit.
- The Advanced Authentication service verifies the details provided and authenticates the user.
- If authentication is successful, the end user is granted access to the resource.
The roaming authentication flow, where the end user's device does not have the ArcotID OTP credential, is described in ArcotID OTP Roaming Flow.
Copyright © 2012 CA.
All rights reserved.
 
|
|