Security with Public Key Infrastructure


Progressively organisations' requirements to secure communications within the business and between the business and the outside world have grown. Many of these interfaces have traditionally been secured with an ID and a password (one factor authentication) but this is now deemed too weak. Secondly the actual data once authenticated has either been transmitted using clear text or an older encryption technique.

More than ever businesses are looking at strengthening their encryption and authentication processes and this is being addressed namely with a two factor identification process ensuring the person or device is who it claims to be and the transmission of a longer cipher key used in a more complex algorithm.


Two Factor Authentication

To deliver two factor authentication the choices range between physical devices that a user can carry with them such as a smart card or algorithmic number generator or a client or server certificate that is used in the identification process. Once a secure connection has been made the encryption may be based on the certificate or identifying object in some cases.


What is PKI

Public Key Infrastructure centres on the generation, management, deployment and revocation of Public and Private Keys via digital certificates or hardware devices. It is a complex area that can be off putting especially with the number of solutions available.


How Embrionic can make the difference

Embrionic have engaged with their customers to help them secure their systems using Microsoft Certificate Authority software and services which are included in Windows Server 2003 at no extra cost and represent a great opportunity to extend security measures without purchasing further products. Using Embrionic services and Microsoft software you can achieve:

  • Two factor certificate based Wireless network security

  • IPSec traffic encryption

  • Two factor authentication using digital certificates for users

  • Server and Web Site secure channel

  • Extended security on web interfaces using client side Certificates

  • The management infrastructure to administer digital certificates in conjunction with Active Directory