• No results found

Secure User Authentication

N/A
N/A
Protected

Academic year: 2021

Share "Secure User Authentication"

Copied!
6
0
0

Loading.... (view fulltext now)

Full text

(1)

OTP is known as "one-time password" or "dynamic password"; features a robust protection lock ensures account access safety and protection against important data theft by hackers or others, rapidly enhances the application system safety.

CHANGING MOTP helps you meet

Personal Data Protection Act, PCI-DSS, HIPAA requirements, etc, by providing OATH certified 2FA access control and auditing log.

BYOD

(Bring Your Own Device)

Strong 2-factor Authentication with password and OTP,

keep your users’identity safe.

Secure User Authentication

Mobile One Time Password

www.changingtec.com

(2)

Over the last few years, Mobile internet Device (MID) and e-commerce is threatened by more security challenges than ever. It happens always like hacking account and online game because of traditional login which fixed user name and password is easily hacked by Trojan, keylogger, or back door. No more secure. One-Time Password (OTP) is a strong lock to protect account access safe. It avoids losing important information from password peep and hackers, dramatically increases system security, and simplifies access steps for users (both employee and external ones).

MOTP Token

A variety of authentication tokens are supported including both "software" and "hardware" tokens. These are very easy to use and suitable for all types of users.

MOTP Agent (Applications)

●RADIUS / LDAP authentication (support VPN,

firewalls, UTMs, VMware VDI and Citrix) ●Web server authentication (IIS/JAVA Web Filter) ●Customized ID/Password web page (.NET, ASP, JSP, PHP) ●Linux, Windows login

●OWA (Outlook Web Access)

●Mail Active Sync Management on Mobile Device (iOS&Android)

MOTP Authentication Server

The server takes the managing and authentication part of the solution. It validates the dual factor password, and manages authentication policy. It is available as "standard rack mount server" and "virtual machine (VM)".

●Standard hardware server :It simplifies installation, enhances system security, lowers setup costs and shortens setup time.

>Specification: 19-inch rack, 1U, 80GB for authentication logging.

>Support HA (fail-over) mechanism.

●Virtual machine :The server can be delivered as a VM image to meet the special environment on the client side.

Strong Two-Factor Authentication

Certified by OATH International Standard

Enterprise

application FinanceNegotiable Game industry securities Online Shop Governmental agency Website、 Homepage protection Remote login

The MOTP system offers the most convenient two-factor authentication solution. Users can use the MOTP token to access application systems such as VPN, firewalls, remote connections, webpage servers, web applications, operating systems and more.

PW ID OTP USERNAME

* * * * * *

3 1 5 4 0 7 Login OTP

MOTP Solutions

It has 3 parts including token, agent and server.

Login Success

(3)

Provide Complete OTP

Authentication Server Functionality

Web based management interface

Support batch import and activation

Stores OTP key in DB after encryption

Provide auditing log

Online activation mechanism

Anti hostile attack prevention mechanism

Provide temporary block/unblock and temporary OTP mechanism

HA structure

Event, time based, OCRA, Push APP and On-demand OTP verification support.

*OCRA : OATH Challenge-Response Algorithm

SMS

Push APP

Smart Phone

PAD

797974 797974

Server

Agent

Token

MOTP Server

VPN、Firewall

Windows AD, IIS, OWA

Active Sync

Web AP

RADIUS / LDAP

API

System Config

Token

E-Mail

Display Card

Flash Drive

OCRA

563 068 OK C Login 請使用密碼或PassCode進行登入 帳號: 密碼: Passcode: 登入

Internet

Intel® IPT

(4)

Software Tokens

Support Platforms:iOS, Android, J2ME, Windows PC / Phone ...

Full series of OTP Tokens

797974

797974

797974

797974 797974

797974

E-mail (On-Demand token)

Using e-mail as an OTP carrier. An e-mail contains an OTP will be send if a service is requesting MOTP server.

[ Advantages ]

No need for additional hardware. Easy to deploy. Low cost.

SMS (On-Demand token)

Distribute OTP through the SMS server. The service requests MOTP server to send an OTP SMS on user login. The user receives the OTP by SMS.

Software Token

The software is able to be installed on PC and mobile devices, like smart phone or tablet. Support Android, iOS, Windows Phone, etc. Generates OTP anytime, anywhere.

[ Advantages ]

No need to distribute hardware. Works on all phones with SMS feature. High immediateness.

[ Advantages ]

Easy to use on mobile devices. Daily carry, hard to forget.

No attrition issue while redistribute to others. Perpetual license, no time limit.

Support Offline mode and Mobile App Push mode

(OTP Push and Mobile online confirmation mode).

Support NFC unlock (Android) and Fingerprint

(5)

Display Card Type C221 Seires

Time-based algorithm. Generates OTP by pressing button. Displayed on e-paper. OTP valid 60 seconds.

[ Advantages ]

Button can withstand more than 14,000 times.

Battery life 3 years.

Thin and light, size like a credit card. Easy to carry. Support Mifare Entry Access Control System.

FISC II Smart Card

Generates OTP in the embedded OTP algorithm of the smart card, which counts the number of usage, by component or 2nd Generation reader.

[ Advantages ]

Generates OTP with existing bank card.

OCRA Type T300

Challenge-Response Type:The token generates OTP by enter a challenge code which is sent by the server.

Signature Type:The token generates OTP by enter specific information, like account and amount, for ensuring the correctness and integrity to avoid MIM (Man in the middle attack).

[ Advantages ]

Enhances the security by adding more

parameters to 2FA to lower the risk of embezzled token.

OK C

Hardware Tokens

[

Advantages

]

Intel® Identity Protection Technology is as

convenient as s / w token, and as secure as h / w token.

Intel® IPT

Intel® Identity Protection Technology ( Intel®

IPT ) can be found on Intel CPU, including PC, laptop, tablet, and smart phone ( Windows 8 and Android ).

Button Type T210

Time-based algorithm. Generates OTP by pressing button. Large-size LCD display. OTP valid 60 seconds.

[ Advantages ]

Button can withstand more than 14,000 times.

Low battery consumption. Battery life 5 years.

Anti-tampering. Compatible with IP68. Large-size LCD comforts eyes.

[ Advantages ]

● No need to read and type OTP. ● Solid and durable, easy to carry.

USB Type Y100

Enter OTP by simply plug in to USB port and then press the metal button.

(6)

Applications & Benefits

Authorized Reseller

Enterprise Realtek, acer, UMC, ADATA, Panasonic, initio, tsmc, FUJITSU, YTEC, Farglory Group, Mitsubishi, Shin Etsu,Chunghwa Telecom, Taiwan Mobile, HiNet, 104jobbank, Pan Asia, Formosa Laboratories, Inc., books.com.tw, United Daily News, EVA Air, FamilyMart, Yuen Foong Yu, Coca-Cola, Aop, KUO CHING, Precision Intemational Corp, PICHTEK, MPI, ASUS Cloud, OMG, Soft-World International Corporation, Cyber Power, SUMIKA, Happy Go, Global Unichip Corp ,Garena

F i n a n c i a l Taichung Bank, E.SUN Bank, Bank of Taipei, Industrial Bank of Taiwan, Taiwan Cooperative Bank, COTA Bank, Bank of Kaohsiung, KGI Bank, Hua Nan Bank, Chang Hwa Bank, Capital Investment Trust Corporation, Franklin Templeton Investments, Chung Kuo Insurance, Taishin Securities Government Industrial Development Bureau, Ministry of Economic Affairs, Export Processing Zone Administration, Taipei Metro,

NAR Labs, Ministry of Health and Welfare, Centers for Disease Control, Taipei City Revenue Service, Ministry of Culture, National Treasury Administration, Food and Drug Administration, Financial Supervisory Commission

Education Jinan University, Chien Hsin University, National Kaohsiung University, National Chung Hsing Univer M e d i c a l Pok Oi Hospital, En Chu Kong Hospital, Mennonite Christian Hospital

Applications and Case Studies

Success Stories

[ Chain Store ]

A chain convenient store which has more than 3,000 branches in Taiwan has introduced CHANGING MOTP Mobile One Time Password with hundreds of tokens which allows its employees of HQ and managers of each city from access control.

It also applies MOTP system to its supply chain to track login detail information.

In the past, store managers access their intranet via VPN which relies on smart card readers to engage PKI. This

hardware has poor mobility and flexibility. After adopting MOTP, it eased employees

by simplifies login procedures and incredible high secure level.

[ Aviation ]

A global leading aviation company migrate its access control system to highly secure protection technology, CHANGING MOTP. Before that, they had deployed other OTP system by other supplier which is not able to satisfy their maintain requirements. It suffered MIS from controlling, managing and auditing.

It adopts MOTP system using RADIUS to migrate from deployed system after deliberative evaluation and consideration on MOTP architecture.

It was a pain-free migration, and goes on-line successfully with one-time configuration.

MOTP is Citrix ready and experienced numerous success adoptions. We provide local services and professional trainings to your system managing team.

Changing Information Technology Inc.

2F, 48 Park Ave.2, Hsinchu Science Park,Hsinchu 30075,Taiwan

TEL : +886-3-5630688 FAX : +886-3-5630618

MOTP Server Intranet VPN Token

563 068

Second-Factor Authentication SSO

515769

515769

Desktop 1 Desktop 2 Desktop 3 User A User A User A App 1 App 2 App3

References

Related documents

Lee College defines full-time students as those who enroll for 12 or more SCHs (semester credit hours) and/or take courses which require 16 or more hours of lecture and labo-

Death of Abraham — birth of Esau and Jacob (twins) to Isaac and Rebekah — Esau sells birthright to Jacob, 25 3d. God confirms covenant to Isaac — Isaac misrepresents relationship

This first phase - implementation of energy efficiency within industries - would constitute the platform for a second phase, in which biomass CHP technologies with district

Load of the mass pike report back to stay off the roads through most americans to discuss their jobs safely and our professionals involved in the average vehicle.. Benefits of the

The phenotype of expanded V δ 2 cells after 14 days of exposure to PAM was analyzed in a subgroup of 8 ART-treated, suppressed HIV-infected donors (6 patients treat- ed in

Hu et al., “Recovery of neurological function of ischemic stroke by application of conditioned medium of bone marrow mesenchymal stem cells derived from normal and cerebral

Below, we present additional details and results that could not fit into the main paper: the explicit expres- sions of the cross-covariance matrices from Section 2.1, a comparison