TOKEN2 Multifactor authentication products and services LTD
(short name TOKEN2
) is a multinational IT security company headquartered in Versoix, Switzerland, providing various security solutions, such as hardware tokens, a
mobile application, TOTPRadius server, and Token2 Cloud API, a hosted
two-factor authentication service designed to protect primarily
Web-based applications (e.g. member area of a CMS based website). An on-premises version of this service is also offered via TOTPRadius Web API. Established in 2013,
TOKEN2 is deriving from a number of university projects of its founders, with main ideas having academic backgrounds and published in various reputable academic sources such as ITU, IEEE, University of Derby, University of Geneva and others.
TOKEN2 is focusing on the following main products and services:
Classic hardware tokens
We have designed and prototyped several models of OATH compliant hardware tokens
. We currently have agreements with a number of different factories that produce the equipment based on our design and algorithms. Our classic hardware tokens can be used in many systems supporting standard TOTP protocol, including WordPress
, Azure MFA Server
and many others.
Programmable hardware tokensToken2 programmable card token
is a "drop-in" replacement of OTP mobile apps (such as Google Authenticator or similar). It supports authentication backends requiring TOTP tokens without the possibility of specifying the shared secret keys (i.e. keys are generated on server-side only) and is compatible with services such as Google, Facebook, Microsoft, Amazon etc.
Before buying, you can test integration and compatibility with your systems using our virtual token, an HTML5 app which fully emulates our classic TOTP tokens. This tool can also be used as a cross-platform TOTP application (for testing purposes only). Just launch the tool with your base32 seed value set as the "key" argument of the URL, as shown in the example below:
The full source code of this tool is available under our GitHub repository
TOTPRadius virtual applianceTOTPRadius
is a 2FA authentication server deployed as a virtual appliance and designed to run on Hyper-V or VMWare hypervisors. This complements the variety of products offered by Token2, any hardware token sold by Token2 can be backed by TOTPRadius as the authentication service. It is free for 5 users and costs between 2.2 and 3 EUR per user if more licenses are needed (depending on volume).
Token2 TOTPRadius provides the RADIUS RFC-2865 for TOTP RFC-6238 based authentication. With TOTPRadius you can integrate a large variety of third-party products and systems with multi-factor authentication. A number of enterprise products and services like VPNs (including Meraki CVPN and Fortinet VPN), Citrix XenApp/XenDesktop, VMWare View, and many others provide support for RADIUS servers to validate the second factor of user authentications.
Token2 Online Shop
TOKEN2 LTD operates its own online shop to sell the whole range of TOKEN2 products. The payment options include :
- Online payment by major credit cards (via Stripe)
- PayPal (subject to an additional 3% fee)
- Bank transfer (subject to an additional 3% fee)
Deliveries are usually made using Swiss Post
Order workflow is described in full details here
Security of the TOTP hardware token secret keys
Detailed information about the security surrounding the shared secret key hashes (seeds) of our hardware tokens and about how this data is stored and operated is available here