How to Add Two-Factor Authentication to Outlook Web App (OWA)
Jul09

How to Add Two-Factor Authentication to Outlook Web App (OWA)

Quick Answer There are two architecturally different ways to add multi-factor authentication (MFA) to Outlook Web App (OWA): protect the OWA and Exchange Admin Center (EAC) login directly with a dedicated component, or add MFA at the Active Directory level so it covers OWA along with every other AD-connected service automatically. Protectimus offers both — the Protectimus OWA component for the first approach, and Protectimus DSPA...

Read More
OATH Initiative – the Main Goals, Tasks, Ins & Outs
Jul01

OATH Initiative – the Main Goals, Tasks, Ins & Outs

Providing our services, we often highlight that Protectimus is a coordinate partner of the OATH Initiative and that all our tokens and two-factor authentication software are OATH-certified. Not everybody is aware, however, of what the Initiative for Open Authentication (OATH) is and what its major goals are. That’s why we decided to clarify all the details concerning the OATH definition – its tasks, algorithms, and overall...

Read More
TOTP Algorithm Explained
Jun24

TOTP Algorithm Explained

Time-based one-time password algorithm (TOTP) is the focus of this post. But, before we delve deeper into the TOTP meaning, we’d like to mention the organization that is instrumental in the one-time password algorithms’ existence — OATH, or Open AuTHentication. OATH is a collaboration of all sorts of specialists, who made their mission to create a truly secure and universal network for all to use. We at Protectimus are...

Read More
OCRA Algorithm Explained
Jun17

OCRA Algorithm Explained

OCRA, or OATH challenge-response algorithm is the most reliable multi-factor authentication algorithm yet. OCRA algorithm is proved to be the safest one created by the OATH (OpenAuTHentication initiative) as it allows a challenge input to be used for one-time passcode generation alongside the secret key (seed) and a counter or time.  The key difference of the challenge-response authentication algorithm from the older OATH...

Read More
HOTP Algorithm Explained
Mar16

HOTP Algorithm Explained

HOTP algorithm, or HMAC based one-time password algorithm, was first published by OATH as RFC 4226 back in 2005. What is OATH? OATH or Initiative for Open AuTHentication is an organization which specified, put together and published the OATH OTP algorithms that lie at the heart of MFA (multi-factor authentication). It is time we look closely at these algorithms, specifically — OATH-HOTP. HOTP algorithm is what allows creating one-time...

Read More