Upload
authshield-lab
View
13
Download
0
Tags:
Embed Size (px)
DESCRIPTION
AuthShield supports diverse user bases by allowing users to authenticate with whatever form factor suits most. Some users prefer AuthShield Mobile authentication (AuthShield Push, AuthShield Mobile Token, SMS / Call token) while other prefer to authenticate via a hard or soft token.
Citation preview
AUTHSHIELD TWO FACTOR AUTHENTICATIONThe threats from within are increasing on a daily basis. 78% of all information security breaches happen internally
**Private and Confidential
INNEFU LABSInformation Security at its best
**Private and Confidential
ABOUT USInformation Security R&D Organization specializing in creating unique technologies and products
All technologies are indigenous and have been evaluated and approved by multiple Government Agencies
Empanelled with DRDO for providing - Two Factor AuthenticationSocial Media MonitoringLink Analysis and Pattern Recognition
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
CONTD.More than Six years of experience in Information Security
Served key clients in Private and Public sector
Unique and Innovative technologies including AuthShield - Two Factor AuthenticationChronos WhiteListing Ani-VirusInnsight Social Media AnalysisInteleLinx - Link Analysis and Pattern Matching
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
PATENT PENDING TECHNOLOGIESAuthShield 2FA One Touch Authentication integrated with Mail solutions including POP / IMAP protocol
One Touch Authentication integrated with Database update queries for workflow management
**Private and Confidential - INNEFU LABS
Private and Confidential - INNEFU LABS
Private and Confidential -INNEFU LABSSOME OF OUR GOVERNMENT CLIENTSDelhi PoliceJK PoliceMinistry of Home AffairsIndian ArmyMinistry of DefenseNational Investigation AgencyAP PoliceUP PoliceNational Technical Research OrganizationChandigarh Police
Private and Confidential -INNEFU LABS
SOME OF OUR CORPORATE & PSUS CLIENTSPrivate and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABSHACKERS - POINT OF ATTACK
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABSMETHODS OF ATTACKTargeted PhishingSIM CloningVirusesTrojansMobile Hacking
Private and Confidential -INNEFU LABS
Map the physical identity of the user to the server (Two Factor Authentication)
Identify the user based on Something he knows (user name / password)Something in the users possessions
*
DIFFERENT TOKENS
Soft TokenSMS Token
Push TokenMobile Token
Hard Token
USB Token
ONE TOUCH AUTHENTICATION EASE OF CONVENIENCEApplication installed on Smart Phone to receive Push notifications from AuthShield Server
Anytime a user wants to log in, AuthShield server sends a PUSH Notification to the app installed on users mobile phone
CONTD.Notifications contains the following info IP Address making the requestDateTimeLocation
User has the option to Approve / Deny the request
In case the user Approves the request, user is automatically validated
User Does NOT see or enter the OTP in any application
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
ADVANTAGESHackproof Tokens - Protect against Hacking attacks against systems as well as Mobile phones
No effect by server access
User gets to know if his credentials have been compromised
Uses the fast growing smart phone industry in the country for validating users
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
OUR OTHER TOKENSPrivate and Confidential -INNEFU LABS
Indigenous Token
Customizable as per clients requirements
Generates a new password after every 96 seconds
Indigenous Token
Customizable as per clients requirements
Available for all smart phones
Private and Confidential -INNEFU LABS
CONTD.Private and Confidential -INNEFU LABS
Indigenous Token
Desktop Token available on all OS
OTP sent as a SMS
Options to chose between alpha-numeric / numeric passwords
Private and Confidential -INNEFU LABS
MANAGEMENT PANELComplete Management control with the Clients IT Team
Management Portal to Add / Delete usersAssociate a Token with a UserDe-associate a Token with a UserLock a lost TokenTransfer a Token to another User
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
CASE STUDIESInformation Security at its best
**Private and Confidential
UNIQUE CASE STUDIES
Database Queries - Workflow ManagementMail Solutions
SAP GUI and Net weaverPrivate and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
INTEGRATION WITH POP/IMAP2FA integration with Mail servers Web InterfaceDesktop Clients (Microsoft Outlook etc)Smart Phones
Seamless integration
Prompt for OTP generation Only when IP changesSpecific duration of time passes
PUSH Notification to replace OTP
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
Mail ServersBack End Servers123666546 User enters User Name and Password in his POP/IMAP Client and forwards to Load Balancer2FA INTEGRATION WITH POP / IMAPPrivate and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
DATABASE QUERIES WORKFLOW MANAGEMENTFor specific users, when they fire a Database query
A PUSH notification is generated and sent to the reporting manager
The notification contains details on User making the requestDetails on the request
The query is only processed if the reporting manager approves the query
The same architecture can be replicated from Database to any other workflow
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
SAP GUI INTEGRATION2FA integration with SAP SAP Netweaver and SAP GUI
User enters User NameOTP and Password
User Name and OTP are authenticated by AuthShield Server
User Name and Password are authenticated as normal
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
SAP Servers12354 User enters User Name and OTP + Password in SAP GUI2FA INTEGRATION WITH SAPPrivate and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
INTEGRATION POINTS FOR BANKING INDUSTRYInternet BankingCredit Card Transaction Validation
Critical Intranet Applications including Core Banking SolutionsLogin to Remote ServersMutual Funds AccountsPrivate and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
*Private and Confidential*
INTERNET BANKING SOLUTIONClient wanted Two Factor Authentication with Reset Password Options
Source Code available with the Client
Changes made to the Authentication Module of the client application Innefus 2FA APIs were integrated with the applicationUsers were provided One Time Password via SMS any time a user needed to reset his password
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
WHY GIVE US A CHANCE!Private and Confidential -INNEFU LABS
S.noFeaturesAuthShieldOthers1One Touch Authentication2PKI Token using smart Phones3Reusable response based on IP and time duration4Indigenous Tokens thereby offering co-branding opportunities and instant turnaround time5Customization as per clients requirements6Superior support at cheaper costs7Unparalleled experience of working with large Government clients
Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABSPREVENT IDENTITY THEFT!!
COUNT ON
Private and Confidential -INNEFU LABS
THANK YOUQUESTIONS WELCOME
INNEFU LABS PVT. LTDwww.innefu.com+91-11-47065864 / [email protected], [email protected] Private and Confidential -INNEFU LABS
Private and Confidential -INNEFU LABS
**Private and Confidential
Private and Confidential
**Private and Confidential
Private and Confidential
*Private and Confidential
**Private and Confidential
Private and Confidential
*Private and Confidential*Private and Confidential