Quest Soft Token for Windows Phone User Guide What is the Quest Soft Token for Windows Phone? The Quest Soft Token for Windows Phone is a two-factor authentication token that can be used with any OATH-compliant authentication server, such as Quest Defender, to gain secure access to network, web, and applications-based resources. Figure 1 The picture above shows an example of the Quest Soft Token for Windows Phone displayed on the Windows Phone. The token response 266812 is used as the One Time Password (OTP) when prompted to authenticate.
Installing the Quest Soft Token for Windows Phone Software using Windows Phone Marketplace The Quest Soft Token for Windows Phone can be downloaded and installed in the same way as any other Windows Phone application, as described below: 1. On your Windows phone device, select Marketplace. 2. Select the search button and enter Quest Soft Token. 3. Select on the Quest Soft Token application 4. Select Install. 5. The Quest Soft Token for Windows will now be available on your Windows Phone. Activating the Quest Soft Token for Windows Phone In order to use the Quest Soft Token for Windows Phone for token authentication an activation code is required. This may be provided by your Defender administrator or, if available, through the Defender Token Deployment System. More than one token can be activated and used on your Windows phone device. This section details the steps required for both types of activation. Using an Activation Code Provided by your Administrator To activate the Quest Soft Token for Windows Phone you need to import the activation code, provided to you by the administrator of your authentication server, onto your Windows Phone device. To do this: 1. On your Windows Phone device, select the Quest Soft Token for Windows Phone application to display the token screen. 2. Select the add token sign. 2
Multiple Tokens can be activated on a single Windows Phone device. 3. Enter a Token Name that you wish to use. Enter your activation code in the Enter Activation Code box. 4. Select activate. On completion, the Successfully activated message is displayed. 5. Select ok to continue 6. Your token will now display your token response 3
Please ensure that the activation code is entered correctly. If it is not entered correctly, you will receive incorrect token responses that will not be valid for authentication to the Defender Server. Using the Defender Token Deployment System The Defender Token Deployment System is a web based application that allows for the Quest Soft Token for Windows Phone to be requested directly through a local web site. The Token Deployment System is an optional Defender component. For full instructions on using the Defender Token Deployment System please refer to the Defender Token Deployment System User Guide. These instructions refer to the token activation process only. 1. After choosing the Quest Soft Token for Windows Phone from the Token Deployment System website and completing the verification process the Install and Activate Token web page is displayed. 4
2. This page provides the following a link to download the token software from the Windows Phone Marketplace this option should be used if your device is a Windows Phone a link to download the token software from http://www.quest.com/defender/windowsmobiletoken.aspx - this option should be used if your device is a Windows Mobile the activation code, which can be copied and pasted to the Enter Activation Code dialog on your device. An option to send these details to your e-mail address. DOWNLOAD TOKEN SOFTWARE Using this link will display the Windows Phone Marketplace allowing for the Quest Soft Token to be downloaded DOWNLOAD TOKEN SOFTWARE The Quest Soft Token for Windows Mobile software can be downloaded from http://www.quest.com/defender/windowsmobiletoken.aspx. Using this link will download the Defender Windows Mobile Token Setup.msi and setup.exe installers. ACTIVATION CODE The activation code for your token can be copied and pasted in to the Enter Activation Code dialog on your Windows Phone device. Please see the Using an Activation code provided by your administrator for complete details on this process. 5
E-MAIL OPTION A link is provided to send the web page information to an e-mail address. By default this will be the e-mail address configured on your AD user account. Optionally your system administrator may allow the e-mail address to be changed so that the information can be sent to a different e-mail address. Select Send E-Mail to send the details, a confirmation will be displayed on the webpage that the e- mail has been sent. Menu Options Renaming a Token You can rename the tokens you add to your Windows Phone device within the Quest Soft Token for Windows Phone Application: 1. On your Windows Phone device, select the Quest Soft Token for Windows Phone application to display the token screen. 2. Select token you wish to rename 3. Select rename. 4. Enter the new name you wish to give your token. Select the Back icon to rename your token 5. Select the Back icon to go back to the tokens screen 6
Deleting a Token You can delete the tokens you add to your Windows Phone device within the Quest Soft Token for Windows Phone Application: 1. On your Windows Phone device, select the Quest Soft Token for Windows Phone application to display the token screen. 2. Select and hold the token you wish to delete 3. Select delete. 4. Select ok. 7
Token Information You can find out information about your token e.g. serial number on your Windows Phone device within the Quest Soft Token for Windows Phone Application: 1. On your Windows Phone device, select the Quest Soft Token for Windows Phone application to display the token screen. 2. Select Tokens. 3. Your Token information will be displayed. Using the Quest Soft Token for Windows Phone for Authentication Once the Quest Soft Token for Windows Phone has been activated, the token response is displayed on the screen of your Windows Phone device. 1. On your Windows Phone device, select the Quest Soft Token for Windows Phone application to display the token screen. 2. If more than one token is installed then select tokens and select the token you wish to view. Select the Back icon. 8
3. Your token response will be displayed on your Windows Phone device Press the button to generate the next response. The 6 digit value is your One Time Password (OTP). You will be prompted to enter the OTP during the authentication process. 9
Authentication Procedure The following example takes you step-by-step through a user authentication procedure using Quest Defender as the authentication server: 1. The user attempts to access a website protected by Defender and is prompted to authenticate. 2. The user now enters the OTP response displayed on the Windows Phone, e.g. 112177, into the Defender Authentication field. 3. If the response is entered correctly, the user is authenticated by Defender and allowed access to the protected website. 10
Uninstalling using the Windows Phone Device 1. On your Windows Phone device, hold on the Quest Soft Token for Windows Phone. 2. Select uninstall 3. A confirmation box will appear to check that you wish to uninstall the application. Select yes 4. The Quest Soft Token for Windows Phone is now uninstalled from your Windows Phone device. 2012 Quest Software, Inc. ALL RIGHTS RESERVED. Quest, Quest Software, the Quest Software logo are trademarks and registered trademarks of Quest Software, Inc. in the United States of America and other countries. Other trademarks and registered trademarks are property of their respective owners. 11