TECHNOLOGY LEADER IN GLOBAL REAL-TIME TWO-FACTOR AUTHENTICATION

Similar documents
RSA Solution Brief. Providing Secure Access to Corporate Resources from BlackBerry. Devices. Leveraging Two-factor Authentication. RSA Solution Brief

The only authentication platform you ll

The only authentication platform you ll COVER. ever need.

Authlogics for Azure and Office 365

SMS PASSCODE 2017 CLOUD EDITION ADMINISTRATOR S GUIDE REV. 1.0 (OCTOBER 2017)

Crash course in Azure Active Directory

MobilePASS. Security Features SOFTWARE AUTHENTICATION SOLUTIONS. Contents

A comprehensive security solution for enhanced mobility and productivity

Two-factor Authentication: A Tokenless Approach

RHM Presentation. Maas 360 Mobile device management

white paper SMS Authentication: 10 Things to Know Before You Buy

Hosting Topology. CensorNet MFA (formerly SMS Passcode)

BlackBerry 2FA. Datasheet. BlackBerry 2FA

Ramnish Singh IT Advisor Microsoft Corporation Session Code:

BlackBerry Enterprise Identity

Azure MFA Integration with NetScaler

WHITE PAPER AIRWATCH SUPPORT FOR OFFICE 365

Choosing the right two-factor authentication solution for healthcare

Mohit Saxena Senior Technical Lead Microsoft Corporation

TECHNOLOGY Introduction The Difference Protection at the End Points Security made Simple

Cloud Access Manager Overview

WHITEPAPER. Security overview. podio.com

IBM Tivoli Directory Server

Cloud sicherung durch Adaptive Multi-factor Authentication

Enterprise Product Guide

UNCLASSIFIED. Mimecast UK Archiving Service Description

Best Practices in Securing Your Customer Data in Salesforce, Force.com & Chatter

Business White Paper IDENTITY AND SECURITY. Access Manager. Novell. Comprehensive Access Management for the Enterprise

Features. HDX WAN optimization. QoS

Dell One Identity Cloud Access Manager 8.0. Overview

Security Enhancements

CYBER SECURITY. formerly Wick Hill DOCUMENT* PRESENTED BY I nuvias.com/cybersecurity I

Overview. Premium Data Sheet. DigitalPersona. DigitalPersona s Composite Authentication transforms the way IT

Office 365 and Azure Active Directory Identities In-depth

Whose Cloud Is It Anyway? Exploring Data Security, Ownership and Control

OpenIAM Identity and Access Manager Technical Architecture Overview

Keeping your VPN protected. proven. trusted.

VMware Enterprise Desktop Solutions. Tommy Walker Enterprise Desktop Specialist Engineer Desktop Platform Solutions

LinQ2FA. Helping You. Network. Direct Communication. Stay Fraud Free!

Keeping your VPN protected

Adaptive Authentication Adapter for Citrix XenApp. Adaptive Authentication in Citrix XenApp Environments. Solution Brief

Never Drop a Call With TecInfo SIP Proxy White Paper

Unlocking Office 365 without a password. How to Secure Access to Your Business Information in the Cloud without needing to remember another password.

Today s workforce is Mobile. Cloud and SaaSbased. are being deployed and used faster than ever. Most applications are Web-based apps

Directory Integration with Okta. An Architectural Overview. Okta Inc. 301 Brannan Street San Francisco, CA

ADAPTIVE AUTHENTICATION ADAPTER FOR IBM TIVOLI. Adaptive Authentication in IBM Tivoli Environments. Solution Brief

DIGIPASS Authentication for Cisco ASA 5500 Series

Storage Made Easy. Mirantis

Guide to Deploying NetScaler as an Active Directory Federation Services Proxy

Liferay Security Features Overview. How Liferay Approaches Security

NetMotion Mobility and Microsoft DirectAccess Comparison

Storage Made Easy. SoftLayer

MITEL MiVOICE FOR LYNC

OWA Security & Enhancements

ipad in Business Security Overview

McAfee Security Management Center

Microsoft Windows Server 2008 R2 Remote Desktop Services Session Virtualization and VDI Microsoft RemoteFX

The Device Has Left the Building

Deliver and manage customer VIP POCs. The lab will be directed and provide you with step-by-step walkthroughs of key features.

Securing Office 365 with MobileIron

VMware AirWatch Certificate Authentication for Cisco IPSec VPN

1. Introduction. 2. Why Mi-Token? Product Overview

Introducing KASPERSKY ENDPOINT SECURITY FOR BUSINESS

AXIAD IDS CLOUD SOLUTION. Trusted User PKI, Trusted User Flexible Authentication & Trusted Infrastructure

Workspace ONE UEM Certificate Authentication for Cisco IPSec VPN. VMware Workspace ONE UEM 1810

Security Specification

PROTECTED EXTENSIBLE AUTHENTICATION PROTOCOL

App Gateway Deployment Guide

Busting the top 5 myths of cloud-based authentication

Flexible, robust, easy and thorough authentication

Augmenting security and management of. Office 365 with Citrix XenMobile

PCI DSS Compliance. White Paper Parallels Remote Application Server

BEYOND AUTHENTICATION IDENTITY AND ACCESS MANAGEMENT FOR THE MODERN ENTERPRISE

hidglobal.com HID ActivOne USER FRIENDLY STRONG AUTHENTICATION

Integration Guide. SafeNet Authentication Manager. Using RADIUS Protocol for Cisco ASA

SOLUTION OVERVIEW THE ARUBA MOBILE FIRST ARCHITECTURE

SafeNet Securing Microsoft Solutions

Kenna Platform Security. A technical overview of the comprehensive security measures Kenna uses to protect your data

Unleash the Power of Secure, Real-Time Collaboration

SCALEFAST COMMERCE CLOUD INFRASTRUCTURE

VMWARE VIEW WITH JUNIPER NETWORKS SA SERIES SSL VPN APPLIANCES

SECURING AWS ACCESS WITH MODERN IDENTITY SOLUTIONS

Adaptive Authentication Adapter for Juniper SSL VPNs. Adaptive Authentication in Juniper SSL VPN Environments. Solution Brief

Two-Factor Authentication User FAQ s

A Practical Step-by-Step Guide to Managing Cloud Access in your Organization

VMware Identity Manager Administration. MAY 2018 VMware Identity Manager 3.2

Setting Up Resources in VMware Identity Manager (On Premises) Modified on 30 AUG 2017 VMware AirWatch 9.1.1

BOMGAR.COM BOMGAR VS. WEBEX UPDATED: 2/28/2017

Zero Trust with Okta: A Modern Approach to Secure Access from Anywhere. How Okta enables a Zero Trust solution for our customers

4TRESS AAA. Out-of-Band Authentication (SMS) and Juniper Secure Access Integration Handbook. Document Version 2.3 Released May hidglobal.

GLOBALPROTECT. Key Usage Scenarios and Benefits. Remote Access VPN Provides secure access to internal and cloud-based business applications

7 Things ISVs Must Know About Virtualization

Adding value to your MS customers

External Authentication with Checkpoint R77.20 Authenticating Users Using SecurAccess Server by SecurEnvoy

Endpoint Protection with DigitalPersona Pro

SIMPLIFY MULTI-PLATFORM ENTERPRISE MOBILITY MANAGEMENT

Integration Guide. SafeNet Authentication Manager. SAM using RADIUS Protocol with Check Point Security Gateway

Yubico with Centrify for Mac - Deployment Guide

Setting Up Resources in VMware Identity Manager

Integration Guide. SafeNet Authentication Manager. SAM using RADIUS Protocol with SonicWALL E-Class Secure Remote Access

Transcription:

TECHNOLOGY LEADER IN GLOBAL REAL-TIME TWO-FACTOR AUTHENTICATION SMS PASSCODE is the leading technology in a new generation of two-factor authentication systems protecting against the modern Internet threats. It is the first solution to implement a global real-time OTP delivery platform combined with a more secure login process, plug-and-play protection of standard login systems and a reliable, scalable architecture.

TECHNOLOGY LEADING SECURITY LEVEL SMS PASSCODE - An award winning more secure login process that offers greater protection against modern threats on the Internet. Unlike traditional two-factor authentication solutions - widely known as tokens - SMS PASSCODE deploys a more secure challenge and session specific real-time login process that unlike traditional solutions protects against the modern threats on the internet. Essentially, a user is first authenticated with a user name and password challenge. Once that is passed, SMS PASSCODE generates and delivers in real-time a session-specific one-time passcode (OTP), and once that is validated, the user is granted access. This significantly improves protection against modern threats on the Internet. User Name: Password: joe.smith@smspasscode.com Login SMS PASSCODE easy2 Passcode: Status: Time left: 00:01:05 Passcode sent Cancel Login FAST INSTALLATION AND DEPLOYMENT Out of The Box Installation: Connect SMS Gateway modem(s), run plug-and-play installation of the SMS PASSCODE software, and the system is ready for use. Support two-factor authentication dedicated service for SMS delivery, Voice call or Secure E-mail for Blackberry or mail centric countries. Simple Enterprise Deployment: SMS PASSCODE allows for one-click integration to Active Directory (AD) without schema changes or extensions. SMS gateway hardware is included and the advanced cloud enabled component architecture offers maximum installation flexibility. Installation Flexibility: Distribute SMS PASSCODE components for unmatched on-the-fly scalability and fault-tolerance. Distribution of hardware-tokens is history, you can get thousands of users up and running within minutes by extracting all cell phone numbers from your Active Directory, import users from any source via CSV files, or via user updates through the Self Service Portal.

GLOBAL TWO-FACTOR AUTHENTICATION PLATFORM SMS PASSCODE is designed as an easy to implement and easy to administer enterprise class platform that consists of a transmitter and OTP Delivery Service, an advanced Policy- and Load balancing Service, a Self Service Portal for leading edge user authentication flexibility and activation and the industry s broadest set of authentication clients. SMS PASSCODE DELIVERS INDUSTRY LEADING VALUE IN FOUR KEY AREAS More secure login process: A more secure login process that prompts the user to first validate user name and password before a session specific code that is valid only for that login attempt is generated and send real-time to the users phone. This protects against the modern threats on the internet. Plug-and-play installation: The solution plugs transparently directly into the leading VPN systems from vendors like Cisco, Juniper, Checkpoint, F5, Cloud, Citrix, Microsoft and web systems. This gives an easy-to-use and intuitive user experience including user status feedback during the login process. Fault tolerant and scalable: The platform is designed from the ground up as loosely coupled cloudready components that can securely be distributed around the globe. This makes it easy to configure and manage fault tolerant designs as well as scaling the solution. Total cost of ownership: The cost of ownership is typically about half that of a legacy hardware token based two-factor authentication solution as it is easier to implement and require no client hardware handling. This gives a more agile solution and free up resources to focus on other tasks. EFFORTLESS OPERATION AND ADMINISTRATION SMS PASSCODE runs on Windows Server 2003, 2008 and 2008 R2 in both 32 and 64 bit versions. No administration of hardware-tokens required. No need to involve IT personnel in the event of a lost cell phone. Users will quickly recognize the loss, and act on own impulse to block the SIM-card. SMS PASSCODE takes full advantage of Active Directory: Supports all configurations including LDAP and Global Catalog lookups No schema extension of your Active Directory! Simply add users to a group Multiple separate domains are supported via a list of LDAP / Global Catalogue lookups Even nested groups, child domains and trusted domains are supported! A STRONG TECHNICAL FOUNDATION AND GREAT USER SATISFACTION The strong technical foundation of SMS PASSCODE ensures greater protection as the authentication process is challenge-based and session specific. The solution supports all the leading login systems through a plug-and-play easy installation. The platform is designed from the ground up as fault-tolerant and inherently scalable. Passcodes are cryptographically strong random OTP s using FIPS-140 validated crypto modules and all communication between components is AES 256bit encrypted. In addition SMS PASSCODE makes use of advanced brute force and Denial-of-service attack detection and protection. Users care about their mobile phone. Therefore, when lost, users take action to block the phone themselves. However, if notified, central IT can also remove the mobile phone as an authentication device with a single click. This has proven to deliver quicker response times and increased security compared with traditional token-based solutions.

COMPREHENSIVE PLATFORM WITH EASY IMPLEMENTATION AND ADMINISTRATION PRIVATE OR PUBLIC CLOUD PRIVATE CLOUD PUBLIC CLOUD AD1 AD2 CUSTOM WEB ISA / TMG MS OFFICE 365 VOICE DIAL-OUT (USA) CLOUD KEYS SMS (GLOBAL) SECURE E-MAIL (BLACKBERRY & ASIA) GLOBAL OTP DELIVERY GLOBAL OTP DELIVERY PLATFORM DATABASE SERVICES USER INTEGRATION POLICIES USER GROUP POLICIES LOAD BALANCING POLICIES SELF SERVICE PORTAL BROADEST CLIENT SUPPORT PRIVATE CLOUD & LEGACY CITRIX WI SSL VPN S REMOTE DESKTOP DIRECT ACCESS OUTLOOK VMware VDI GOOGLE APPS SALES FORCE PRM ADD-ON MODULES CITRIX AG WINDOWS SECURE TIME-BASED FAIL-OVER PASSWORD RESET MODULE LOCATION & BEHAVIOR AWARE SECURITY IPsec VPN CITRIX RECEIVERS MICROSOFT AD FS GLOBAL ONE-TIME-PASSWORD DELIVERY PLATFORM The SMS PASSCODE global distribution platform supports a broad range of geographically specific delivery services to ensure safe and secure authentication regardless of where and when the login session is initiated. Delivery services include The user preferences and mobile infrastructures vary from region to region. To meet the different premises and cloud delivery needs across the globe, delivery services include: Globally or locally deployed SMS Gateways to enable local services in different countries Multi-carrier operation for redundancy or as sheer gateway pools for infinite scalability Voice dial-out to read the code at two-factor authentication quality of service level Secure e-mail when deployed on Blackberry and in certain Asian countries and cloud keys for users without a mobile phone Secure time-based personal passcodes can be set by helpdesk or by users themselves if the administrator has granted rights ENTERPRISE CLASS POLICY- AND LOAD BALANCING ENGINE SMS PASSCODE ships with an advanced, yet easy to configure and administer, policy- and load balancing engine that offers greater user integration flexibility and improved self service capabilities: User Integration and Group Policies: When a user or group of users are protected, the integration and group policies allow for import and advanced settings such as North American users go to the North American modem or all Blackberry users are allowed to use e-mail. Load balancing policy and service: For mission critical deployments including larger enterprise or global implementations, load balancing and fail over on the system is done intelligently based on load parameters like primary or secondary gateway service, domain relation ship for hosting or alternate one-time-password delivery as a fall-back rou tine. Secondly, critical components and data are replicated across nodes providing the ability for a service component to enter or leave the SMS PASSCODE cloud on the fly without downtime for 24/7 operation. Self Service Portal: Self service is not a new concept in SMS PASSCODE, but it is new that an administrator can configure and manage a service that allows users to go to a Self Service Portal at activation and define their preferred OTP delivery method, specific phone settings and their own encrypted time-limited code delivers new levels of user satisfaction.

BROADEST CLIENT SUPPORT FOR LEADING LOG-IN SYSTEMS SMS PASSCODE supports the broadest set of login systems used by remote access. The solution is designed to integrate seamlessly into any of the third party systems listed below, in order to ensure a more secure login process that is intuitive to the end-user. While named client support, the client refer to a SMS PASSCODE server component installed or connected to the login system. The following systems are supported: RADIUS VPN/SSL VPN Clients: Check Point Cisco Citrix Access Gateway (CAG) & Netscaler Juniper Microsoft Forefront (UAG) incl. Direct Access VPN Microsoft SharePoint Portal Server 1 Any other RADIUS client supporting challenge/response SMS PASSCODE enabled clients (Citrix Receivers, VMware View etc.) Microsoft ISA/TMG Server & Web Sites: Support for Microsoft ISA/TMG published web sites: Outlook Web Access 2003 / 2007 / 2010 Terminal Service / Remote Desktop Service (Windows Server 2008 / 2012) Microsoft SharePoint Portal Server IIS Web Sites using Basic or Integrated Windows Authentication Any Web Site not requiring any Authentication Delegation Cloud Application Authentication: Microsoft Active Directory Federated Services plug-in for two-factor authentication Transparent support Cloud Applications such as Salesforce.com, Microsoft Office 365, Google Apps etc. LOCATION AND BEHAVIOR AWARE SECURITY An innovative use of contextual information such as location enables SMS PASSCODE to leverage the real-time session specific login process to detect and alert users if advanced threats, also known as real-time phishing, man-in-the-middle and similar attacks occur. This is done by blocking or alerting the user of login details, such as location, in the real-time message which combined with a policy driven more granular personalized login process further advances security. PASSWORD RESET MODULE FOR SECURE PASSWORD RESET For users who want to adhere to a more secure two-factor authentication approach, SMS PASSCODE now offers a module extension called PRM or Password Reset Module, that supports secure Active Directory Password Reset. When users access the Self-Service Password Reset page, they are first asked to validate user ID and their personal passcode PIN entered at activation, after which a passcode is generated and delivered in real-time. Once the passcode is entered, the system allows for an AD password reset. Internet Information Services (IIS) Web Sites Support for the following types of web sites: Outlook Web Access 2007 / 2010 Terminal Service / Remote Desktop Web Access (Win Server 2008 / 2012) Web Sites using Basic / Integrated Windows Authentication Web Sites using Custom / SAML based Authentication 2 Windows Logon, Remote Desktop/Terminal Services: Support for the following Servers and Services: Remote Desktop / Terminal Services (RDP Connections) Windows Servers 2003 / 2008 / 2008R2 / 2012 Windows XP, Vista and Windows7 (incl. Single-Sign-On), Windows8 VMware Virtual Desktop Portal & Client Access Citrix Access Gateway Advanced Edition Citrix Web Interface Citrix Receiver for iphone SMS Authentication (1) Protection of SharePoint Portal Server using RADIUS is only supported, if the SharePoint Portal server is published through an Application Gateway, which will ensure that the user is only required to authenticate once during the initial logon. E.g. using the Microsoft IAG/UAG, Citrix Access Gateway configured to make use of persistent cookies. (2) Configuration required.

EXCELLENT USER COMPLIANCE SMS PASSCODE - The leading global technology for two-factor authentication via your mobile phone - Lets you stay in business wherever you are. UK 06-1-2012 Copyright 2012. All rights reserved. SEAMLESS INTEGRATION SMS PASSCODE transparently integrates to all the major login systems, for an intuitive and user-friendly login experience. USER SELF SERVICE A Self Service Portal allows users to configure their preferred login process such as regular or Flash SMS, Voice Dial-out or Secure E-mail for Blackberry users and some Asian countries. The self service privileges are defined by the administrator. STATUS FEEDBACK SMS PASSCODE provides an unrivaled status feedback feature that enables the user to follow the actual login progress. Status feedback inspires user confidence and reduces the number of support calls to IT personnel. FLASH SMS By default, passcodes are sent as Flash SMS, which automatically pop up on the user s mobile phone without any user action, and the Flash SMS is not stored on the cell phone. Regular SMS is supported as an option. LOCATION AWARE The phone enables real-time delivery of location information. ALWAYS CONNECTED As opposed to tokens, users rarely forget their cell phone, which in turn means more productive hours. MEMOPASSCODES Innovative easy-to-read passcodes. SECURE PASSWORD RESET The Password Reset Module PRM offers Active Directory password reset via an easy to use 24/7 self service page, secured by SMS PASSCODE two-factor authentication. SMS PASSCODE A/S Park Allé 350 D 2605 Brondby Denmark PHONE: +45 7022 5533 www.smspasscode.com