Service & Support

What is the difference between FIDO U2F and FIDO2?

FIDO U2F (Universal 2nd Factor) adds a second layer of authentication on top of a password. FIDO2 extends this with the WebAuthn standard, enabling fully passwordless login. FIDO2 is backward-compatible with U2F. Excelsecu's new FIDO2 Key Series offers enterprises to migrate at their own pace.

How does an OTP token generate a one-time password?

A Time-based OTP (TOTP) token uses a shared secret key and the current timestamp to generate a 6- or 8-digit code via HMAC-SHA1/HMAC-SHA256 (RFC 6238). The server validates the code within a time window (typically ±30 seconds). Excelsecu's OTP tokens are OATH-compliant and available as hardware tokens, display cards, and mobile apps.

What is a PKI token and why do enterprises use it?

A PKI (Public Key Infrastructure) token securely stores digital certificates and private keys on a tamper-resistant chip. It enables strong authentication, digital signing, and email encryption. Enterprises use PKI tokens for remote access VPNs, document signing, and regulatory compliance. Excelsecu's eSecuKey PKI tokens support CSP, CNG and PKCS#11, and work on Windows, Linux and macOS.

What is a display smart card?

A display smart card is a standard ISO 7816-sized card embedded with an e-paper display and battery, showing a dynamic OTP code. It combines the convenience of a card form factor with the security of time-based authentication. Excelsecu's display cards are used by banks to replace static card numbers for online transactions.

Is Excelsecu FIDO Alliance certified?

Yes. Excelsecu is a Sponsor Member of the FIDO Alliance and its FIDO2 security keys have passed official FIDO Alliance certification testing. This ensures interoperability with all FIDO2-compliant services, including Microsoft Entra ID, Google accounts, and major enterprise SSO platforms.

© Excelsecu Data Technology Co., Ltd

粤ICP备08039947号 | 粤公网安备44030002005151号 | Site Map

Internet Brand Service: CTM