31
AUTHSHIELD™ – TWO FACTOR AUTHENTICATION “The threats from within are increasing on a daily basis. 78% of all information security breaches happen internally”

Authshield lab- 2 factor authentication solutions

Embed Size (px)

DESCRIPTION

AuthShield supports diverse user bases by allowing users to authenticate with whatever form factor suits most. Some users prefer AuthShield Mobile authentication (AuthShield Push, AuthShield Mobile Token, SMS / Call token) while other prefer to authenticate via a hard or soft token. - PowerPoint PPT Presentation

Citation preview

Page 1: Authshield lab- 2 factor authentication solutions

AUTHSHIELD™ – TWO FACTOR AUTHENTICATION

“The threats from within are increasing on a daily basis. 78% of all information security breaches happen internally”

Page 2: Authshield lab- 2 factor authentication solutions

INNEFU LABS“Information Security at it’s best”

Page 3: Authshield lab- 2 factor authentication solutions

ABOUT US

Information Security R&D Organization specializing in creating unique technologies and products

All technologies are indigenous and have been evaluated and approved by multiple Government Agencies

Empanelled with DRDO for providing - Two Factor Authentication Social Media Monitoring Link Analysis and Pattern Recognition

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 4: Authshield lab- 2 factor authentication solutions

CONTD.

More than Six years of experience in Information Security

Served key clients in Private and Public sector

Unique and Innovative technologies including – AuthShield - Two Factor Authentication Chronos – WhiteListing Ani-Virus Innsight – Social Media Analysis InteleLinx - Link Analysis and Pattern Matching

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 5: Authshield lab- 2 factor authentication solutions

PATENT PENDING TECHNOLOGIES

AuthShield 2FA – One Touch Authentication integrated with Mail

solutions including POP / IMAP protocol

One Touch Authentication integrated with Database update queries for workflow management

04

/19

/23

5

Priv

ate

and C

onfidentia

l - INN

EFU

LAB

S

Page 6: Authshield lab- 2 factor authentication solutions

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

SSOME OF OUR GOVERNMENT CLIENTS

Delhi Police

JK PoliceMinistry of Home AffairsIndian Army

Ministry of Defense

National Investigation Agency

AP Police

UP Police

National Technical Research Organization

Chandigarh Police

Page 7: Authshield lab- 2 factor authentication solutions

SOME OF OUR CORPORATE & PSU’S CLIENTS

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 8: Authshield lab- 2 factor authentication solutions

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 9: Authshield lab- 2 factor authentication solutions

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

HACKER’S - POINT OF ATTACK

Page 10: Authshield lab- 2 factor authentication solutions

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

METHODS OF ATTACK

Targeted Phishing

SIM Cloning

Viruses

Trojans

Mobile Hacking

Page 11: Authshield lab- 2 factor authentication solutions

Map the physical identity of the user to the server (Two Factor Authentication)

Identify the user based on – Something he knows (user name / password)Something in the users possessions

Page 12: Authshield lab- 2 factor authentication solutions

DIFFERENT TOKENS

Soft Soft TokenToken

SMS TokenSMS Token

Push TokenPush TokenMobile TokenMobile Token

Hard Hard TokenToken

USB USB TokenToken

Page 13: Authshield lab- 2 factor authentication solutions

ONE TOUCH AUTHENTICATION – EASE OF CONVENIENCE

Application installed on Smart Phone to receive ‘Push’ notifications from AuthShield Server

Anytime a user wants to log in, AuthShield server sends a ‘PUSH’ Notification to the app installed on user’s mobile phone

Page 14: Authshield lab- 2 factor authentication solutions

CONTD. Notifications contains the following info –

IP Address making the request Date Time Location

User has the option to Approve / Deny the request

In case the user ‘Approves’ the request, user is automatically validated

User ‘Does NOT’ see or enter the OTP in any application

Page 15: Authshield lab- 2 factor authentication solutions

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 16: Authshield lab- 2 factor authentication solutions

ADVANTAGES

Hackproof Tokens - Protect against Hacking attacks against systems as well as Mobile phones

No effect by server access

User gets to know if his credentials have been compromised

Uses the fast growing smart phone industry in the country for validating users

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 17: Authshield lab- 2 factor authentication solutions

OUR OTHER TOKENSPriv

ate

and C

onfidentia

l -INN

EFU

LAB

S

•Indigenous Token

•Customizable as per client’s requirements

•Generates a new password after every 96 seconds

• Indigenous Token

• Customizable as per client’s requirements

• Available for all smart phones

Page 18: Authshield lab- 2 factor authentication solutions

CONTD.Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

• Indigenous Token

• Desktop Token available on all OS

• OTP sent as a SMS

• Options to chose between alpha-numeric / numeric passwords

Page 19: Authshield lab- 2 factor authentication solutions

MANAGEMENT PANEL

Complete Management control with the Client’s IT Team

Management Portal to Add / Delete users Associate a Token with a User De-associate a Token with a

User Lock a lost Token Transfer a Token to another

User

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 20: Authshield lab- 2 factor authentication solutions

CASE STUDIES“Information Security at it’s best”

Page 21: Authshield lab- 2 factor authentication solutions

UNIQUE CASE STUDIES

Database Queries - Workflow Management

Mail Solutions

SAP GUI and Net weaver

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 22: Authshield lab- 2 factor authentication solutions

INTEGRATION – WITH POP/IMAP

2FA integration with Mail servers – Web Interface Desktop Clients (Microsoft Outlook etc) Smart Phones

Seamless integration

Prompt for OTP generation – Only when IP changes Specific duration of time passes

PUSH Notification to replace OTP

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 23: Authshield lab- 2 factor authentication solutions

Mail Servers

Back End Servers

12

36 6

6

5 4

6

User enters User Name and Password in his POP/IMAP Client and

forwards to Load Balancer

2FA INTEGRATION WITH POP / IMAP

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 24: Authshield lab- 2 factor authentication solutions

DATABASE QUERIES – WORKFLOW MANAGEMENT For specific users, when they fire a Database query –

A PUSH notification is generated and sent to the reporting manager

The notification contains details on – User making the request Details on the request

The query is only processed if the reporting manager approves the query

The same architecture can be replicated from Database to any other workflow

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 25: Authshield lab- 2 factor authentication solutions

SAP GUI INTEGRATION

2FA integration with SAP – SAP Netweaver and SAP GUI

User enters – User Name OTP and Password

User Name and OTP are authenticated by AuthShield Server

User Name and Password are authenticated as normal

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 26: Authshield lab- 2 factor authentication solutions

SAP Servers

12

3

5

4

User enters User Name and OTP + Password in

SAP GUI

2FA INTEGRATION WITH SAP

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 27: Authshield lab- 2 factor authentication solutions

INTEGRATION POINTS FOR BANKING INDUSTRY

Internet Banking

Credit Card Transaction Validation

Critical Intranet Applications including Core Banking Solutions

Login to Remote Servers

Mutual Funds Accounts

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 28: Authshield lab- 2 factor authentication solutions

INTERNET BANKING SOLUTION

Client wanted Two Factor Authentication with – Reset Password Options

Source Code available with the Client

Changes made to the Authentication Module of the client application – Innefu’s 2FA API’s were integrated with the application Users were provided One Time Password via SMS any

time a user needed to reset his password

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 29: Authshield lab- 2 factor authentication solutions

WHY GIVE US A CHANCE!

S.no Features AuthShield Others

1 One Touch Authentication

2 PKI Token using smart Phones

3 Reusable response based on IP and time duration

4 Indigenous Tokens thereby offering co-branding opportunities and instant turnaround time

5 Customization as per client’s requirements

6 Superior support at cheaper costs

7 Unparalleled experience of working with large Government clients

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S

Page 30: Authshield lab- 2 factor authentication solutions

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

SPREVENT IDENTITY THEFT!! –

COUNT ON

Page 31: Authshield lab- 2 factor authentication solutions

THANK YOUQUESTIONS WELCOME

INNEFU LABS PVT. LTD

www.innefu.com

+91-11-47065864 / 66

[email protected], [email protected]

Priv

ate

and C

onfidentia

l -INN

EFU

LAB

S