Linux Authentication Using OpenLDAP
This is the first of two articles that will discuss a number of issues with LDAP authentication on Linux. In this installment, I will discuss an overview of LDAP, installing and configuring OpenLDAP, migrating to OpenLDAP and setting up LDAP queries. In this series, I will focus on Red Hat Linux version 7.1 (with some comments about earlier revisions
|
|
Enterprise Identity Management
The CEO of your average 50,000 employee company knows this function costs her company upwards of $32,000,000 per year. More than 60% of all helpdesk effort is spent on password management.
|
|
Kerberos An Authentication System for Open Network Systems
This document tries to explain the basics of the Kerberos authentication system for open networks along with the motivations for its development. It describes the Kerberos system as developed in the MIT as a part of the ATHENA project.
|
|
Authentication as the Foundation for eBusiness
This article outlines the reasons why authentication is critical for a successful business, along with a discussion of the two main security methods it can be applied to. Additionally, this article will discuss authentication methods that are currently available, along with some factors that businesses must take into account to ensure they choose an authentication system that makes the most sense for them.
|
|
Managing Identity in the Digital World
Ultimately the solution you implement should best serve your environment. Though the examples used in this paper deal primarily with the username and password methodology for access control, a number of other options exist. SecureID cards, certificates, biometrics and other tokens are all other forms of identification used today. These considerations need to be applied when choosing your solution.
|
|
Understanding EAP-MD5 Authentication with RADIUS
This document has been compiled as an effort to understand the process of Authentication involved when using RADIUS with EAP-MD5. The document will look into the details of the EAP-MD5 authentication process when used with RADIUS. We shall see how RADIUS protocol can be extended to support third-party authentication process. We shall also discuss the advantages and disadvantages of the protocol and look at the alternatives that are available to address the shortcomings of the protocol.
|
|
Authentication
An overview of various types of authentication ranging from simple username/password and CHAP to smart cards and biometrics.
|
|
Federated Identity Management
Federated Identity management makes it possible for an authenticated identity to be recognized and take part in personalized services across multiple domains. It avoids pitfalls of centralized storage of personal information, while allowing users to link identity information between different accounts. Users control linking of account management (to an extent) and personalization of services. Federated identity requires two key components: trust and standards [2]. Trust model of Federated Identity management is based on Circle of Trust.
|
|
A System to Enhance Security in Kerberos Authentication System
This paper aims to outline a general introduction to kerberos systems, gives a brief account of cryptography & steganography, elucidates the proposed algorithm, and illustrates how performance of kerberos systems can be enhanced using the proposed algorithm. This paper discusses only Kerberos version 4, the most popular, but also briefly explains the differences between version 4 and version 5, the latest.
|
|
Evaluating Strong Authentication Systems
The purpose of this document is to provide the information required for you to evaluate the WiKID Authentication System on its financial, technical and operational merits.
|
|
Dos and Dont's of Client Authentication on the Web
Client authentication has been a continuous source of problems on the Web. Although many well-studied techniques exist for authentication, Web sites continue to use extremely weak authentication schemes, especially in non-enterprise environments such as store fronts. These weaknesses often result from careless use of authenticators within Web cookies. Of the twenty-seven sites we investigated, we weakened the client authentication on two systems, gained unauthorized access on eight, and extracted the secret key used to mint authenticators from one.
|
|