Entrust USB Tokens

An Effective Alternative to Time Synchronous Tokens

Authentication is arguably one of the most visible and tangible component of an organization's security system. Choosing the right authentication method to match your security needs is a top priority, and often challenging. Success depends on how well users accept and interact with the solutions, and how easy and cost-effective it is for administrators to manage the system.

Tokens have become a common choice for achieving strong two-factor authentication. In selecting a two-factor authentication solution, it is helpful to compare the differences between time synchronous tokens and USB tokens.

Entrust USB Tokens, working together with Entrust's leading PKI products, provide strong two-factor authentication that is easier to use, more reliable, cost-effective, and offers enhanced security capabilities, beyond authentication, than traditional time synchronous tokens:

Time Synchronous Tokens Entrust USB Tokens
Total Cost of Ownership Required to replace hardware every three years, regardless of performance or condition of the tokens. No contractual obligations for re-investment.
Ease of use Requires the user to read the randomly-generated authentication number off the token and type it within a limited time period (e.g. 60 seconds). User must still enter their user name and password into the application for complete access. Authentication requires user to insert the Entrust USB Token and enter a PIN number. No additional user name and password is required, reducing error and minimizing management costs.
Extended Capabilities Single function device limited to online authentication purposes only. In addition to authentication, storing digital certificates on the Entrust USB Token enables the user to digitally sign and encrypt email documents and more. Entrust USB Tokens can also be used to secure the operating system.
Reliability
  • Generally created to last only 2-6 years before battery runs out. Requires re-investment as batteries cannot be replaced.
  • Have been damaged by airport x-ray machines, washers/dryers etc.
  • USB Tokens are built to last approximately 10 years. No batteries are required.
  • Robust and less likely to need replacement due to normal wear and tear.
Security User must remember to terminate a session or risk providing open access for other users to perform malicious activities (e.g. data theft). Simply removing the Entrust USB Token will prevent unauthorized access by other users.

Learn more about the technical aspects of Entrust USB Tokens.