View
214
Download
1
Tags:
Embed Size (px)
Citation preview
®
IGEL Technology Many functions. One device. 1Security, April 2009
SecurityThin computing secures your data
®
IGEL Technology Many functions. One device. 2Security, April 2009
Content
Overview
IGEL Security Solutions– Authentication– Communication– Management– Update
Partner solutions– Citrix Hot Desktop solution– Aladdin eToken & PKI – Kobil myIdentity & PKI
IGEL Features
®
IGEL Technology Many functions. One device. 3Security, April 2009
Overview – IGEL Security Solutions
Authentication– Smartcard Reader integrated or optional– High security with Multi-Factor-
Authentication – Hot Desktop Integration enables fast user-
switching and roaming
Communication– VPN Client– WiFi WPA security– Call Back on dial-up lines
Administration– Trusted relationship between server and
client through certificates– Local configuration can be disabled
Update – IGEL Failsafe Firmware Updates
®
IGEL Technology Many functions. One device. 4Security, April 2009
Authentication
Smartcard readerSupport for numerous security and authentication solutions
Logon AutomationAutostart of local and server-based applications on smartcard insertion
Session Protection– Suspend of ICA and RDP sessions at smart card
removal– Resume and re-authentication at smart card re-
insertion
Desktop SafeguardAutomated lock or logoff of the thin client on smartcard removal
Application RoamingResume of suspended ICA and RDP session on any thin client on the network
®
IGEL Technology Many functions. One device. 5Security, April 2009
Communication
IGEL Digital Services secured via VPN
IGEL Thin Clients come with integrated VPN support
Allows secured communication with branch and home offices
Wide Area Network (WAN)
Headquater – Data center Branch Office LAN
Digital Service Provider, e.g. VoIP Gateway, Connection Broker, SAP, Mediaserver
VPN Tunnel
Digital Services, e.g. VoIP Client, Connection Broker Client, Local Browser, SAP GUI, Mediaplayer
®
IGEL Technology Many functions. One device. 6Security, April 2009
RM Public KeyRM Public KeyRM Public KeyUMS Private Key
UMS
Secure certificate-based Management
Rogue
UMS
Registration
Management
Rogue UMS Private Key
Key Ok – Management allowed
Key mismatch – Management denied
®
IGEL Technology Many functions. One device. 7Security, April 2009
Partner Solutions
®
IGEL Technology Many functions. One device. 8Security, April 2009
Citrix Hot Desktop - User scenarios
Shared workstations
Roaming workers
Challenges– Multiple logon logoff during the
workday– Inefficient, slow logon process – Generic account logins not acceptable
due to sensitive data and compliance
Solution– Citrix Hot Desktop with XenApp and
Password Manager– Gemalto .Net Smartcard– IGEL Thin Clients with integrated
Smartcard Readers and Hot Desktop support out-of-the-box
®
IGEL Technology Many functions. One device. 9Security, April 2009
Citrix Hot Desktop - Solution
®
IGEL Technology Many functions. One device. 10Security, April 2009
Citrix Hot Desktop - Benefits
13,40
2,00
21,70
4,30
User Logon Change User - Userlogoff and new user
logon
Standard User Hot Desktop User
Tim
e (
in s
eco
nds)
fro
m logon t
o a
pplic
ati
on
acc
ess
Reduced logon times up to 90%Increased security– Strong authentication through
Smartcards– Inactivity timeout locks workstation – User authentication events are logged
for accountability and auditingIncreased productivity for roaming users– Single Sign-on to applications– Any user may unlock the workstation– Published applications follow the user
(Smooth Roaming) – Local applications can be
automatically launched and signed on
Source: Citrix Systems
®
IGEL Technology Many functions. One device. 11Security, April 2009
Aladdin eToken & PKI
ICA
RDP
PKIAuthentication succesfull
User certificate
Certificate based login
Secure two-factor authentication
Certificate can additional be used to sign eMails and Files within the ICA or RDP session
®
IGEL Technology Many functions. One device. 12Security, April 2009
Kobil myIdentity & PKI
ICA
RDP
PKIAuthentication succesfull
User certificate
Certificate based login
Secure two-factor authentication
Certificate can additional be used to sign eMails and Files within the ICA or RDP session
®
IGEL Technology Many functions. One device. 13Security, April 2009
IGEL Features
IGEL Universal Management Suite included free-of-charge
Failsafe firmware update mechanism
Broad hardware range fitting for every usage scenario