|
|
Like this article? PLEASE +1 it! |
|
Microsoft®’s Forefront Review
|
| Guest post by: Dovell Bonnett |
Article Overview: Microsoft ‘s Forefront Identity Manager (FIM) 2010 provides IT with the tools needed for identity and access management through a SharePoint-based policy management console. Microsoft correctly targets the importance of identity management for users, devices, and services due to cyber attacks, regulatory mandates and privacy protection compliance. While FIM 2010 is designed around secure identity management, the logical question follows: How is the user properly identified during Windows authentication?
![]() |
Free Download - Zappos Data Breach - Customer Safety and Security By Dovell Bonnett |
Microsoft®’s Forefront Review
Microsoft®’s Forefront Needs More Than Identity Management for Cyber Attack Prevention
Microsoft
‘s Forefront Identity Manager (FIM) 2010 provides IT with the tools
needed for identity and access management through a SharePoint-based
policy management console. Microsoft correctly targets the importance of
identity management for users, devices, and services due to cyber
attacks, regulatory mandates and privacy protection compliance. While
FIM 2010 is designed around secure identity management, the logical
question follows: How is the user properly identified during Windows
authentication?
FIM 2010 has integrated passwords and certificates
functions with smartcards to deliver a secure network. If the first
link in the chain is insecure then the entire network is also insecure.
Can you really trust and know who really is logging in, accessing files
or purchasing unauthorized services? Smartcards two- or three- factors
of authentication capabilities are a key component to establish trust.
Users
who manual type in a user name and password are the weakest link in
computer, network or cloud authentication. Not because passwords are
insecure, but because how users choose and manage their passwords.
- Using asimple, easy to remember password
- Password written on sticky notes and posted on their monitors
- Using the same password for the company’s network as they use for their PlayStation account
- And not having proper malware protection on a home computer that allow thieves to steal passwords witha keylogger.
But which smartcard authentication is best, a password manager or a digital certificate. Both technologies have their pros and cons (see our “Security Technology Comparison” white paper). The better questions are: what is the environment, cost considerations, time to implement, value of data being protected, etc.? Certificate systems, especially Public Key Infrastructure (PKI), are very secure but also very expensive for most businesses to implement. Many systems require expensive smartcard chips, hardware modifications to the server, relationships with Certificate Authorities, annual certificate renewal fees, non-transferal of certificates when there is employee turnover, advanced IT training, and typically years to fully integrate. Certificates are great for those people that have to digitally sign documents and want the non-repudiation, but it’s not something every employee needs.
Access Smart® created a secure password manager for Windows called Power LogOn®. The user simply authenticates themselves with a PIN and/or biometric.
- No more manually entering passwords that keyloggers can pick up.
- No more employees writing passwords on sticky notes for others to find.
- No more using the same simple password for every account.
- Something you have
- Something you know
- Something you are
- Something the card has
- Something the card knows
- Something the server and card knows
- Something an application and card knows
Related Articles
Article Tags: identity theft, internet security, password management, smart cards
|
About the Author: Dovell Bonnett RSS for Dovell's articles - Visit Dovell's website Founded in 2005 and headquartered in Ladera Ranch, California, Access Smart delivers Access-as-a-Service (AaaS) solutions by way of a password manager for Windows authentication to reduce the risk of cyber-attacks. Access Smart implements AaaS using contact or contactless smartcards, magnetic stripe or 125kHz Prox technologies. The value that Access Smart brings is to offer more security functions and affordability onto a single employee ID badge. Security does not have to be cumbersome to be affective. That is why our products are designed using state-of-the-art security technologies while focusing on ease-of-use and low cost-of -ownership. Previously, smartcard technology was only available to governments and Fortune 500 companies. Access Smart has turned that model upside down by matching the technology to the needs, no annual subscription fees and fully transferable licenses to keep security affordable to even high employee/student turnover businesses. The Access Smart team has over 50 combined years in the smartcard and security industry. By addressing the very real problems from a systems mindset, Access Smart delivers everything for a company to implement AaaS within hours and not months/years. Please contact Dovell Bonnett at Access Smart as to discuss how best to implement Authentication, Authorization and Non-Repudiation into your business. Access Smart - The Alternative to PKI. Click here to visit Dovell's website Corporate Network Security Technology Comparison OBAMA ADMINISTRATION PLANS INTERNET ID How Thieves Physically Steal Your Data Safeguard Business Data Value Advantage of Integrating Logical Access on an Employee ID Badge Data Security is Mandatory |
Related Forum Posts
Share this article with your friends. Fund someone's dream.
Leave a comment below or share on the left and you'll help support entrepreneurs in Africa through our partnership with Kiva. Over $50,000 raised and counting - Please keep sharing! Learn more.
Get advice & tips from famous business
owners, new articles by entrepreneur
experts, my latest website updates, &
special sneak peaks at what's to come!
Email us your ideas on how to make our
website more valuable! Thank you Sharon
from Toronto Salsa Lessons / Classes for
your suggestions to make the newsletter
look like the website and profile younger
entrepreneurs like Jennifer Lopez.



