CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We already have sign-ups from twelve different countries!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 7/14, 8/25, 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8.
3. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
4. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > Authentication
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2005-08-13
roadrunner roadrunner is offline
Senior Member
 
Join Date: 2005-08-12
Posts: 162
Rep Power: 3
roadrunner has an average reputation (10+)
Default What is SecurID?

What is SecurID?
SecurID uses a hardware token with a value that changes every minute or so. The card is synchronized with an ACE/Server, which validates the authentication attempt. So long as you do not lose this card, your authentication will be secure.

When you are prompted for authentication, you will be given a passcode prompt. Depending on the type of SecurID card you have, you will either type in a PIN (four to eight alphanumeric digits in length) followed by the six-digit number currently displayed on your SecurID card, or you will enter the PIN on your SecurID card, press the diamond key, and type in the number displayed on the SecurID card. Because the SecurID card and ACE/Server are in sync, the ACE/Server knows what the SecurID card should read at any given moment.

Using SecurID involves purchasing both the ACE/Server (which runs on UNIX or Windows NT workstations) and SecurID keys. The hardware keys expire after a period of time. More information about SecurID can be found at http://www.rsasecurity.com/products/securid/index.html

-- PhoneBoy - 30 Dec 2003


FAQForm
FAQs.Class: AuthenticationFAQs
OperatingSystem?:
FAQs.Version:
Reply With Quote
  #2 (permalink)  
Old 2006-02-16
zencoder zencoder is offline
Junior Member
 
Join Date: 2005-08-26
Location: Mountain Standard Tribe
Posts: 17
Rep Power: 0
zencoder has an average reputation (10+)
Default Re: What is SecurID?

SecurID is the product name of RSA's physical (and in a few cases, software) tokens. The server portion that is required for authentication to work was called RSA ACE/Server through major version 5. With version 6 and greater, the name has been changed to the more descriptive RSA Authentication Manager. The GUI for the application finally made a decent upgrade with 6, but the individual admin interface for user management still leaves a lot to be desired. Win 3.1 API, and ugly ugly ugly.

RSA Authentication Manager is supported on Win2k/2k3, Red Hat ES 3, and UNIX (Solaris, HP-UX, and AIX), but seems to be most popularly deployed on Server 2003 these days. Most Check Point enforcement modules have the RSA agent libraries/calls/software precompiled, and only require the SDCONF.REC and other files, plus some settings changes.

RSA ACE/AuthMgr is a somewhat picky application and can take a lot of learning. There is a fair amount of doco out there if one looks, and us experience folk are hiding under the occasional rock, if you can force us out.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 19:45.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0