Security with Public Key Infrastructure
Progressively organisations' requirements to secure communications within the
business and between the business and the outside world have grown. Many of
these interfaces have traditionally been secured with an ID and a password (one
factor authentication) but this is now deemed too weak. Secondly the actual data once authenticated has either been transmitted using clear text or an older encryption technique.
More than ever businesses are looking at strengthening their encryption and authentication processes and this is being addressed namely with a two factor identification process ensuring the person or device is who it claims to be and the transmission of a longer cipher key used
in a more complex algorithm.
Two Factor Authentication
To deliver two factor authentication the choices range between physical devices that a user can carry with them such as a smart card or algorithmic number generator or a client or server certificate that is used in the identification process. Once a secure connection has been made the encryption may be based on the certificate or identifying object in some cases.
What is PKI
Public Key Infrastructure centres on the generation, management, deployment and revocation of Public and Private Keys via
digital certificates or hardware devices. It is a complex area that can be off putting especially with the number of solutions available.
How Embrionic can make the difference
Embrionic have engaged with their customers to help them secure their systems using Microsoft Certificate Authority software and services which are included in
Windows Server 2003 at
no extra cost and represent a great opportunity to extend security measures without purchasing further products. Using Embrionic
services and Microsoft software you can achieve:
Two factor certificate based Wireless network security
IPSec traffic encryption
Two factor authentication using digital certificates for users
Server and Web Site secure channel
Extended security on web interfaces using client side Certificates
The management infrastructure to administer digital certificates in conjunction with Active Directory