- New
The REINER SCT Authenticator is a standalone hardware generator for TOTP (Time-Based One-Time Password) codes, designed for two-factor authentication (2FA). The device can replace software-based authenticator apps for services supporting the OATH-TOTP standard (RFC 6238).
REINER SCT Authenticator – hardware-based TOTP generator for 2FA
Manufacturer: REINER Kartengeräte GmbH & Co. KG, Germany
The REINER SCT Authenticator is a standalone hardware generator for TOTP (Time-Based One-Time Password) codes, designed for two-factor authentication (2FA). The device can replace software-based authenticator apps for services supporting the OATH-TOTP standard (RFC 6238).
The Authenticator stores the secrets used to generate codes within a secure hardware component and operates offline. A new TOTP code is generated every 30 seconds. The device can store configurations for up to 60 TOTP accounts, allowing a single Authenticator to secure multiple services and user accounts.
Account setup is simple: when activating 2FA on a protected service, a QR code containing the TOTP configuration data is displayed. The Authenticator’s built-in camera scans the code to set up the corresponding account. During subsequent logins, the user selects the account on the device and manually enters the displayed TOTP code into the protected service.
The device also features optional PIN protection, a built-in precision real-time clock, and the ability to synchronize time and adjust time zones via an encrypted QR code.
Technical specifications
- Device type: Hardware TOTP generator
- Purpose: Two-factor authentication (2FA)
- Supported standard: OATH-TOTP (RFC 6238 compliant)
- Supported algorithms: SHA-1, SHA-256, SHA-512
- Number of supported TOTP accounts: 60
- TOTP code generation: New code every 30 seconds
- Key storage: Secure hardware chip
- Key memory: Non-volatile – accounts and keys remain stored without power
- Account import: Via QR code scanned by built-in camera
- Camera: Color CMOS, OmniPixel3-HS
- Camera viewing angle: 57°
- Display: 1.77" color TFT
- Display resolution: 128 × 160 pixels
- Display area: Approx. 36 × 29 mm
- Keypad: 10 numeric keys, 3 function keys, and 2 additional keys
- PIN protection: Yes
- PIN length: 5 to 12 digits
- Clock: Precision quartz RTC (Real-Time Clock)
- Clock accuracy: Average deviation < 1 ppm after automatic calibration (at 25°C reference temperature)
- Clock backup during battery replacement: Approx. 1 minute
- Time synchronization: One-way via encrypted QR code
- Time zone support: Yes
- Power supply: 3 × AAA / IEC LR03 alkaline batteries
- Batteries: replaceable
- Declared battery life: approx. 5 years based on 500 generated TOTP codes per year; actual life depends on usage and environmental conditions
- Card slot: none
- Standard housing color: white / yellow
- Other colors and custom printing: available upon request, subject to minimum order quantity
- Dimensions: approx. 102 × 62.5 × 19 mm
- Device weight: approx. 80 g
- Weight incl. packaging: approx. 200 g
- Operating temperature: 0°C to +50°C
- Storage temperature: -10°C to +50°C
- Permissible humidity: max. 90%, non-condensing
- Vibration resistance: 10–75 Hz, 10 m/s² according to ISO/IEC 60068-2-6
- Drop test: 1 m according to DIN EN 60068-2-31
- Manufacturer-declared compliance: CE, WEEE, RoHS2, BattG
- Manufacturer part number: 2 708 015-000
- EAN: 4011170084369
- Set contents: REINER SCT Authenticator, 3 AAA batteries, quick start guide
Required Software
For standard operation, the REINER SCT Authenticator does not require the installation of any software, drivers, or mobile apps; it is a standalone hardware device. The only requirement on the part of the protected service is support for the standard TOTP mechanism (compliant with RFC 6238) and the ability to configure it—typically by displaying a QR code. The manufacturer confirms that the device works with services that provide TOTP setup via QR code.
Use Cases
The REINER SCT Authenticator is designed for both individual users and organizations. It can serve as a second authentication factor for corporate accounts, SaaS and cloud services, email, social media platforms, administrative systems, and other services utilizing the TOTP standard. The manufacturer cites examples such as Microsoft 365, Salesforce, Sophos, Autodesk, Adobe, ESET, and Kaspersky; however, compatibility is not limited to specific brands—support for TOTP RFC 6238 is the deciding factor.
In practice, it is also an excellent solution for scenarios where an organization does not wish to tie 2FA to an employee's personal smartphone or wants to physically separate the device used for logging in from the device storing the second-factor authentication secret.
Advantages
Autonomous offline operation. The Authenticator does not require Internet access to store secrets or generate TOTP codes, ensuring the authentication key is not exposed to network services.
Hardware-based key storage. TOTP secrets are stored in a secure hardware chip rather than in a standard smartphone app.
Support for 60 accounts. A single device can secure multiple personal and business accounts without needing a separate token for each service.
No operating system dependency. Generating codes for daily use requires no USB connection, drivers, or apps for Windows, macOS, Linux, Android, or iOS. The Authenticator works with smartphones, tablets, laptops, and desktop computers.
Easy QR setup. A built-in camera allows for quick TOTP account creation by scanning a code generated by the service being secured.
PIN protection. Device access can be further secured with a PIN. After five failed attempts, the device resets to factory settings and deletes all stored keys and accounts.
Long battery life and replaceable batteries. The manufacturer claims up to five years of operation on a single set of batteries (based on a specific usage profile), and the standard AAA batteries are user-replaceable.
Time synchronization capability. Unlike simple tokens with a fixed lifespan, the device's clock can be re-synchronized and the time zone adjusted, enabling long-term use.