This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

One-Time Password - Questions about offset configuration

Hello,

We plan to use OTP in our company.

Everything is fine except I don't understand these two parameters:

Maximum passcode offset:
Maximum initial passcode offset

I read the definitions:

But I just don't get it.

Can someone explain me with examples ?

Regards :)



This thread was automatically locked due to age.
Parents
  • You're right.  Another example of an engineer writing documentation that he understands is correct, but is impenetrable for others that don't already know what he's saying.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Glad to see that I'm not the only one :)

    I read this about 10 times but I just don't get it.

    For the moment I let the defaut values but I will be glad if it could be explained.

  • I think you will understand this, if you read the complete section about OTP timesteps.

    The first thing you need to know is that time has to be in sync between UTM and OTP tokens, being it hardware or software tokens.

    As this is sometimes not accurate enough, there is a tolerance allowed.

    Next thing , there is a "timestep" defined be the hardware supplier, this is normally either 30 or 60 seconds. This is your intervall between the changes of the OTP codes (the "timestep").

    Have a look here: https://docs.sophos.com/nsg/sophos-utm/utm/9.708/help/en-us/Content/utm/utmAdminGuide/AuthServicesOneTimePassword.htm

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

Reply Children
No Data