Previous Topic: Configuring ArcotID OTP (EMV-Compliant) Authentication PolicyNext Topic: Creating Keys


Configuring Credential Management Keys

Keys are used to protect the shared secret that is used to generate and authenticate credentials, which include ArcotID PKI, OATH OTP, ArcotID OTP-OATH, and ArcotID OTP-EMV. The key that are used to create and manage the ArcotID PKI is called the Domain Key. The keys that are used to create and manage other credentials are called Master Keys.

When the user tries to authenticate using their credential, AuthMinder first checks whether the right key is used to protect the credential. If the key is valid, then the user will be authenticated on providing the correct credential. Else, the user authentication fails.

By default, a key configuration is created when the AuthMinder Server is started for the first time. You can either use this default configuration or create your own configuration by using the Credential Key Management page. You can create multiple key configurations, but only the configuration that is assigned to the credential type is used for creating credentials and authenticating those configurations. The other active configurations are used for authentication only.

This section walks you through: