When preparing programmable tokens for MFA use with AuthLite, you will first need to install AuthLite on your domain controller.

Once AuthLIte has been installed you will need to launch AuthLite Configuration, navigate to "Management Tasks | Global Configuration | Tokens Settings", then set the OATH token digits setting to "6";


Additional pre-requisites for using programmable tokens as software tokens with AuthLite can be found by making further configurations using the instructions found in the following AuthLite guide;

 

Follow the instructions in this guide down to the point where you click the "Set up OATH Token" button;


After clicking on the "Set up Oath Token" button you will be presented with a QR code similar to the following;

Zwei-Faktor-Authentifizierung für Active Directory Accounts - AuthLite - IT  Ratgeber


You can use either the QR code, or the Base32 encoded seed data to to program the programmable token (either you burn the token yourself, or you send the QR code/Base32 Code to the user and they burn the token).

The next two sections explain how each of these two methods can be used to prepare the programmable token for use;

Programming the token using the QR code

The following wiki guide explains how the programmable tokens can be burned using the data encoded in the QR Code

Programming the token using the Base32 Code

An alternative approach to using the QR code is to manually burn the tokens by entering the base32 encoded seed direct into the programming tool.


Related Articles