OTAC Auth MFA by swIDch is a multi-factor authentication solution for operational technology (OT) environments, designed to secure endpoints such as SCADA, HMIs, PLCs, RTUs, and DCSs. The system functions through a one-way dynamic authentication code (OTAC) technology, which generates randomized, one-time codes locally on registered user devices. This local-first verification structure operates without requiring network connectivity or real-time server communication, enabling authentication in air-gapped or offline industrial settings. The technology combines user identification and authentication into a single step, replacing static credentials like IDs and passwords to mitigate risks of credential reuse, sharing, and theft.
The solution is engineered for integration into existing industrial infrastructure, including legacy equipment, due to its minimal computing resource and CPU usage requirements. Deployment is facilitated through an OTAC Verifier SDK and an OTAC Authenticator, supporting standalone, central server, and hybrid configurations without modifying existing password interfaces. The system allows for the configuration of role-based and task-based access policies, customizable session triggers, and comprehensive audit logging. It can also incorporate biometric capabilities to support multi-factor authentication requirements.