2
Data Sheet Multi-factor, Multi-layer Security Multi-factor, multi-layer strong authentication EzIdentity Au thentica ti on platf orm ena bles financial instit uti ons , manage d service providers, and other organiza t ions to support a wide range of authentication methods, building customer confidence in online transac t ions, increas ing sec uri t y, and reducing costs. Whether interested in s t rong 2 nd fac tor authe ntication or Trans action s ec urit y or PK I Digit al  Signatures, the EzIdentity™ Authentication platform provides a highly scalable, centralized authenti ca tion serve r w it h t he ca pabilit y t o manage a wide r ange of se curit y t okens . Key features Wide range of aut henticati on met hods Hardware and Software One-Time Password strong authentication Tokens. Hardware and Software One-Time Password Signature Token transaction security Tokens. Certificate Management, PKI-based Digital Signing Tokens. C ompr ehe nsive mana gement t ools Integration with remote authentication servers, such as LDAP and RADIUS, enables consolidation of multiple physical schemes into a single logical authentication model within a Service Oriented Architecture. Full lifecycle management of Software and Hardware token devices. All authentication and administration actions are recorded within a centralized , audit logs. Web self-service tools including token/ card activation, PIN reset and password maintenance. Multiple service channel support (Web, IVR, ATM etc.) using a single authentication method. R apid deployment ca pabilit ies 4TRESS Authentication Server can be deployed in a variety of ways: As an appliance Software as a Service (SaaS) exposed as a through a standards based public API that can be accessed via SOAP, RMI, standardized XML schemas such as SAML, or HTTP APIs Software installation Benefits C ons istent authent ication Enables a consistent customer verification model to be implemented across various applications and channels. E ase of management  Supports multiple c oncurren t authenticatio n methods enabling an organization to implement an appropriate level of security for different user groups and the phased migration of users between authentication models S ca lable resilient archit ec t ure Scales to support large customer bases, e.g. retail banking, and provides the high availability required for customer-fac ing systems. E ase of Deployment  Streamlines integration with existing and future applications through industry standard technologies and interfaces. EzIdentity™ also provides a browser-based user interface that requires no client installation. Return on investment Consolid ate multiple authentication servers across separate business units or subsidiaries into a single solution. In addition, web based self-service function such as card activation and token unlock reduces operation al cost of administering strong authentication. EzIdentity™ Strong Authentication, Transa ction Security, Digital Si gning

EzIdentity Platform

Embed Size (px)

Citation preview

8/8/2019 EzIdentity Platform

http://slidepdf.com/reader/full/ezidentity-platform 1/2

Data Sheet

Multi-factor, Multi-layer Security

Multi-factor, multi-layer 

strong authentication

EzIdentity ™ Authentication platf orm 

enables financial instit utions, managed 

service providers, and other 

organizations to support a wide range of 

authentication methods, building 

customer confidence in online 

transactions, increasing security, and 

reducing costs. Whether interested in 

strong 2 nd factor authentication or 

Transaction security or PKI Digital 

Signatures, the EzIdentity™ 

Authentication platform provides a 

highly scalable, centralized 

authentication server w ith the 

capabilit y to manage a wide range of 

security t okens.

Key features

Wide range of authentication methods 

• Hardware and Software One-Time

Password strong authentication

Tokens.

• Hardware and Software One-Time

Password Signature Token

transaction security Tokens.

• Certificate Management, PKI-based

Digital Signing Tokens.

Comprehensive management t ools 

• Integration with remote

authentication servers, such as LDAP

and RADIUS, enables consolidation

of multiple physical schemes into a

single logical authentication model

within a Service Oriented

Architecture.

• Full lifecycle management of

Software and Hardware token

devices.

• All authentication and administration

actions are recorded within a

centralized, audit logs.

• Web self-service tools including

token/ card activation, PIN reset and

password maintenance.

• Multiple service channel

support (Web, IVR, ATM etc.)

using a single authentication

method.

Rapid deployment capabilit ies 

• 4TRESS Authentication Server can

be deployed in a variety of ways:

• As an appliance

• Software as a Service (SaaS)

exposed as a through a standards

based public API that can be

accessed via SOAP, RMI,

standardized XML schemas such

as SAML, or HTTP APIs

• Software installation

Benefits

Consistent authentication 

Enables a consistent customer verification

model to be implemented across various

applications and channels.

Ease of management 

Supports multiple c oncurrent

authentication methods enabling an

organization to implement an appropriate

level of security for different user groups

and the phased migration of usersbetween authentication models

Scalable resilient architecture 

Scales to support large customer bases,

e.g. retail banking, and provides the high

availability required for customer-facing

systems.

Ease of Deployment 

Streamlines integration with existing and

future applications through industry

standard technologies and interfaces.

EzIdentity™ also provides a browser-baseduser interface that requires no client

installation.

Return on investment 

Consolidate multiple authentication

servers across separate business units or

subsidiaries into a single solution. In

addition, web based self-service function

such as card activation and token unlock

reduces operational cost of administering

strong authentication.

EzIdentity™Strong Authentication, Transaction Security, Digital Signing

8/8/2019 EzIdentity Platform

http://slidepdf.com/reader/full/ezidentity-platform 2/2

Operating systems • RED HAT® Linux 5.3

• Centos®

Hardware • Dell R-200 Series

• IBM x and p Series® Servers

Application server 

• IBM WebSphere® Application Server

• Oracle® Database and Microsoft®SQL Server

Devices 

• ActivIdentity Tokens•• VASCO Tokens

• InCard® DisplayCard® and all

other OATH compliant hardware

devices

• OATH compliant software tokensfor mobile phones

• OATH compliant software tokensfor laptops, PC, Workstations

Authentication schemes 

• One-time passwords (OATH)

• One-time password (OCRA)

• Out-of-band authentication(SMS | IVR | e-mail | USSD)

• PKI PKCS#1 PKCS#7

Administration features • Token Provisioning

- Assign

- Uassign

- Mark as Active | Inactive | Lost

- Search

• Device management

- Synchronise

- Unlock

- Import• Certificate management

- Generate

- Revoke

- Reissue

• User and permission management

- User and user group management

- Role management

- User / role / grouppermission management

Secure audit • Audit log queries

• Online audit verification

Event report ing 

EzIdentity™ platform is in-built with itsown monitoring and reportingmodule. Real-time alerts are notifiedvia e-mail | SMS.

Standards compliance 

• Sun J2EE™

• RMI and SOAP

• PCI DSS v2

Encryption information 

• Protects cryptographic keys usingHSM

• Triple DES encryption / decryptionof secrets

• Database row level signing

External authentication schemes • Support for 3rd Party token

vendors supporting RADIUSauthentication interface

• Remote RADIUS servers

• LDAP v3 systems, enablingintegration into directories such as:

- Computer Associates®eTrust Directory

- IBM Tivoli Directory Server

- Microsoft® Active Directory

- Novell® eDirectory

- Oracle Internet Directory

Sun Java™ System Directory

Related data sheets 

• EzIdentity™EzToken

• EzIdentity™EzSign

• EzIdentity™EzCert

Related solut ion briefs 

• EzIdentity™ Strong Authentication

• EzIdentity™ Transaction Signing

• EzIdentity™ Digital Signing

America  +1 (510) 396 3894

Asia Pacific  +60 12 644 1115

Email  [email protected]

Copyright © 2009 EZMCOM, Inc.. All rights reserved. EZMCOM® andEzIdentity are trademarks of EZMCOM Inc. All other trademarks,tradenames, service marks, service names, and images mentionedand/or used herein belong to their respective owners.

EzIdentity™Strong Authentication, Transaction Security, Digital Signing