Installation guide
31 | Page Celestix HOTPin Appliance Installation Guide
OTP messages the next time they need to authenticate. The send-ahead
code will be valid for the duration of the Sent code TTL.
Client Software
Require key passphrase – sets the system default requirement option
(includes the HOTPin User Website). When checked, the Require key
passphrase setting will force users to create a passphrase in the client
software application when the token key is imported. A user will then be
prompted for this passphrase each time they load the key in the client,
including when they open the client application. Administrators can
override the requirement when downloading a key through the Users
screen (HOTPin|Users|Download Key).
Clear key file after import – sets the system default requirement
(includes the HOTPin User Website). When checked, the Clear key file
after import setting forces client software to overwrite the downloaded
key configuration file and will then delete the file (if possible) after the
key has been imported to the client. This prevents the user from
reimporting the key at a later date when it would be out of sync with the
server application. Removing the download file also prevents a
malicious program from accessing it.
Passcode PIN
PIN required with token code when authenticating – check to require
a PIN for user login. Uncheck to allow users to log in without a PIN.
Disabling the PIN requirement allows users to log in with only a token
code and changes the level of security in the HOTPin system from two-
factor authentication to one factor. Removing the PIN requirement will
not delete any of the PIN information stored in HOTPin user accounts.
This means that if you enable the PIN requirement at some later time,
PINs will be enforced for accounts that have previously created them,
and all other accounts will be required to create PINs at their next login.
Note: HOTPin documentation generally assumes the most common
deployment of the HOTPin system, where the PIN requirement
is enabled, and thus references to passcodes generally
include both the PIN and token code (OTP). If you disable the
PIN requirement, the passcode will solely consist of the token
code and your deployment may vary from the references
noted in documentation.
Event Log Tab
Event Log system settings provide options to automatically truncate log content.
Trimming the log, to keep it from growing too large, helps to maintain better
database functionality in the HOTPin system. The default settings will be
appropriate for most environments; however, some deployments may require an
adjustment.