Ensure that you verify and meet all system requirements before starting the OneSpan Authentication Server installation.
Hardware requirements
Table: OneSpan Authentication Server hardware requirements describes the minimum hardware requirements for OneSpan Authentication Server.
| Component | Minimum requirements |
|---|---|
| Processor | 2.3 GHz (64-bit architectures), 4 CPU cores |
| Memory | 4 GB |
| Available disk space | 60 GB |
| Display | 1024x768 |
Software requirements
Operating systems
OneSpan Authentication Server supports the following operating systems:
Windows Server 2025
Windows Server 2022
Windows Server 2019
OneSpan Authentication Server is designed to support any language version of the supported operating systems. However, the product has only been comprehensively tested on English language versions.
Installing Microsoft C and C++ (MSVC) Runtime Libraries
If you intend to use the embedded MariaDB as the data store, we recommend that you install the Microsoft C and C++ (MSVC) runtime libraries from Microsoft Visual C++ Redistributable 14.50.35719.0 or later. With older versions of these libraries, MariaDB will replace the library files during installation and you may need to restart any applications that are using these libraries.
Web servers and browsers
Web servers
If you install the Administration Web Interface using the Web Administration Service setup package, all required third-party products are installed as well.
Web Administration Service includes the Azul Zulu Java Runtime Environment. Most of the security issues found in the standard JRE do not affect Web Administration Service deployments. If you want to use a different and more recent JRE version, you need to set up your own Apache Tomcat or IBM WebSphere web application server running on that JRE and deploy Web Administration Service manually.
The Apache Tomcat web application server included in the Web Administration Service setup package officially supports the JRE version included in the Web Administration Service setup package only. OneSpan cannot and does not guarantee correct operation if a JRE version other than the one included in the setup package is used.
If you want to deploy the Administration Web Interface to an existing Web server manually, the following requirements apply.
The Administration Web Interface can be run on these web application servers (based on the respective JRE):
Apache Tomcat 10.1.57
Oracle Server Java Runtime Environment 17
Azul Zulu 17
Open Liberty (tested with 25.0.0.1-full-java17-openj9)
WebSphere Liberty (tested with 25.0.0.1-full-java17-openj9-ubi)
The OneSpan Authentication Server product CD contains a version of Web Administration Service adapted for Open Liberty and WebSphere Liberty for manual deployment.
Deployment on OpenLiberty or WebSphere Liberty
To deploy on Open Liberty or WebSphere Liberty, ensure that you choose a version that supports Jakarta EE 10 and JDK 17.
By default, Java EE 8 is used, and you need to explicitly enable Jakarta EE 10 in the web application server configuration file (server.xml):
<featureManager> <feature>jakartaee-10.0</feature> </featureManager>
Browsers
The Administration Web Interface supports the following browsers:
Google Chrome
Mozilla Firefox
Microsoft Edge
The Administration Web Interface supports all browser versions currently supported by the respective vendors.
The Apache Tomcat web server installed with OneSpan Authentication Server is pre-configured to provide the Administration Web Interface via SSL by default. On some browsers, accessing the SSL-secured Administration Web Interface may result in a Certificate Error or Certificate Invalid warning. If this occurs, simply import the Administration Web Interface certificate to the browser's Trusted Sites list, or add an exception for the Administration Web Interface.
For more information, refer to the Encrypted communication.
ODBC databases
OneSpan Authentication Server supports the following database systems as its data store:
MariaDB 11.8.6 (included as embedded DB)
OneSpan Authentication Server is fully compatible with data-at-rest encryption as provided by MariaDB.
Oracle Database 19c
OneSpan Authentication Server is fully compatible with Transparent Data Encryption (TDE) as provided by Oracle Database to protect data at rest (tablespace encryption).
PostgreSQL 17.9
OneSpan Authentication Server has been tested with Transparent Data Encryption (TDE) as provided by the Percona TDE extension to protect data at rest (tablespace encryption).
Microsoft SQL Server
Microsoft SQL Server 2025
Microsoft SQL Server 2022
Microsoft SQL Server 2019
Microsoft SQL Server 2017
OneSpan Authentication Server supports the SQLServer AlwaysOn Availability Groups feature for Microsoft SQL Server versions 2025, 2022, 2019, and 2017.
OneSpan Authentication Server is fully compatible with Transparent Data Encryption (TDE) as provided by Microsoft SQL Server to protect data at rest.
OneSpan Authentication Server was tested with the following ODBC drivers:
Microsoft ODBC Driver 18.6 for SQL Server
Microsoft ODBC Driver 18.3 for SQL Server
Microsoft ODBC Driver 17.7 for SQL Server
The required and supported ODBC driver version for each SQL Server version depends on your specific environment. For more information, refer to https://learn.microsoft.com/en-us/sql/connect/odbc/windows/system-requirements-installation-and-driver-files?view=sql-server-ver17 (last accessed May 8, 2026).
Other requirements
LDAP servers
OneSpan Authentication Server requires an LDAP server to perform LDAP synchronization. LDAP servers can also be used for back-end authentication.
The following LDAP servers are supported:
Microsoft Active Directory Domain Services on Windows Server 2025
Microsoft Active Directory Domain Services on Windows Server 2022
Microsoft Active Directory Domain Services on Windows Server 2019
IBM Security Directory Server 6.3
OpenLDAP 2
Virtualization platforms
If required, OneSpan Authentication Server can run as a virtual image (on any supported operating system) on the following hypervisor platforms:
Citrix XenServer
Microsoft Hyper-V Server
VMWare ESXi
OneSpan Authentication Server does not integrate specific hypervisor features, the software is not aware that it is running on a virtualized host. OneSpan support for hypervisors in OneSpan Authentication Server and its related product components is limited to installing, running, and testing the software on all supported operating systems installed as a guest operating system on a virtual machine on the supported hypervisors listed here. OneSpan does neither include nor support specific hypervisor functionality in the software.
Hardware security modules (HSM)
OneSpan Authentication Server supports the following hardware security modules:
Thales ProtectServer 3 HSM devices
For more information, see Hardware security module setup.