User`s guide
Miscellaneous Procedures 503
OTP Configuration
OTP Configuration
As introduced in “One Time Password Authentication on the OnSite” on page
18, OPIE (one-time passwords in everything) software on the OnSite supports
the one-time password (OTP) authentication method for some types of access.
As shown in Table 1-3 on page 9, the OTP authentication method and the
OTP/Local fallback option are supported for serial ports, and the OTP
authentication method is supported for dial-ins through modem, GSM, and
CDMA PCMCIA cards.
Note: OTP authentication is not supported for logins to the OnSite or to
KVM ports.
This section describes what the OnSite administrator must do to configure
OTP authentication.
OnSite administrators must perform OTP configuration tasks in the order
given in the following bulleted list:
• The OnSite root user manually enables OTP and configures where to
mount the OPIE databases.
• An OnSite administrative user may also use the Web Manager or CLI to
configure OTP authentication to be used for dial-ins to modem, GSM, and
CDMA PCMCIA cards.
• An OnSite administrative user may also use the Web Manager, OSD, or
CLI to configure OTP or OTP/Local authentication methods for serial
port logins or serial port dial-ins, when a modem is connected to a serial
port configured for PPP access.
• An OnSite administrator must make sure each user who needs to use OTP
has a local account on the OnSite, is registered with the OTP system, and
is able to obtain the OTP passwords, OTP username, and secret pass
phrase needed for login.