Posts Tagged 'cisco'

SMS PASSCODE consistent solid performance results in prestigious AAA-rating once more

Two-factor authentication technology leader SMS PASSCODE® has received the highest AAA rating by Soliditet, the leading rating institution. The AAA -  the Highest Credit Worthiness – is only given to limited liability companies and joint-stock companies with an exceedingly strong ability to meet current payment obligations.   As a result of a strong technology focus, SMS PASSCODE® and the broad network of dedicated and skilled partners have consistently outpaced the competition and delivered results both in the market place and financially as seen with the AAA rating.  The growth has been driven by the significant increase in identity theft, breaches with leading security vendors like RSA and Diginotar and a rapid transition from legacy hardware- and software based tokens to modern real-time message based solutions.  To learn more about this, visit here.

SMS PASSCODE® 6 provides industry-leading end-to-end cloud authentication and password reset in a cutting edge real-time world

The new SMS PASSCODE version 6 introduces the industry’s first end-to-end cloud authentication solution designed to take advantage of the flexibility and ease of use of cloud services in combination with legacy remote access solutions. Specifically, it includes standardized cloud application protection for applications such as Microsoft Office365, Salesforce and Google apps via the Microsoft Active Directory Federation Services version 2.0, It includes support for global real-time delivery via SMS, voice or secure e-mail also as a cloud service and finally, it supports any SMS PASSCODE server to be deployed in any private or public cloud configuration. The release completes our  end-to-end cloud support, which has been a platform evolution strategy, where the SMS PASSCODE version 3 enabled cloud-distribution of the individual components such that it could be deployed on the fly to both public and private cloud services  This continued in Version 4 with our website protection and in Version 5 with our support for cloud delivery via Telesign and cloud key token co-existance support. To learn more click here.

SMS PASSCODE wins in the 3rd Annual 2011 Golden Bridge Awards for two-factor authentication

As yet another testament to our position as the leading technology in two-factor authentication, SMS PASSCODE® has earned the prestigious Golden Bridge Awards title for their SMS PASSCODE version 5 technology leading two-factor authentication solution. The coveted annual Golden Bridge Awards program encompasses the world’s best in organizational performance, products and services, executives and management teams, women in business and the professions, innovations, case studies, product management, public relations and marketing campaigns and customer satisfaction programs from every major industry in the world. Organizations from all over the world are eligible to submit nominations including public and private, for-profit and non-profit, largest to smallest and new start-ups. Winners were honored in New York on Wednesday, August 10, 2011 during the 3rd annual awards dinner and presentations.

SMS PASSCODE has quickly established itself as the de-facto standard in a new generation of real-time two-factor authentication solutions. Essentially, a user first enters user name and password and it is not until that has been validated, that SMS PASSCODE generates and sends a real-time code via SMS, voice call or secure e-mail that is only valid for that particular login attempt or session. Once the code is entered and validated, the user is granted access. This is a more secure login process at lower costs than seen in the first generation hardware token based solutions.  Learn more about it here.

SMS PASSCODE®’s real-time modern solution now available with global token trade-in offer

Before we talk about our reasoning behind the token trade-in program, the recent events publicly announced by a leading token technology vendor including the need to replace tokens is not for us to comment on except the point that it is unfortunate when any security technology is compromised as it brings customers at risk and we are sorry for that.

However, I think it cannot come as a surprise to many of us that a 20+ year old technology like the token has come under pressure from modern threats on the internet and a level of information sharing and a remedy plan on our behalf is obligated here. We believe there has been a lot of innovation in those 20 years, where we are recognized as one of them with a new generation more modern technology that has on the market for a while now and is a proven alternative.

The announced plans to replace tokens cannot only be good news to customers as they are exposed today and the physical replacement of tokens has a time delay and an administration cost often as high as the procurement price itself associated to it. Especially for the SMB and mid-market customers, where we have seen significant adoption, this appear a bigger issue than often anticipated.

We view the  recent events as sad, but also as validation points for our statement on the 20+ year old token technology. Allow us to use it as basis for us to maybe better and more objectively articulate what we mean, when we talk about the difference between the first generation pre-determined token code technology used by token and most SMS based two-factor technologies, and our new modern second generation more secure real-time technology. These first generation technologies have different ways by which they in advance generate a code or list of codes that is valid for a period of time or until used. If this basis technology that is used to pre-deterministic generate the code or list of codes ends in the wrong hands as seen, the ill-intended can get the codes.

Unlike these technologies, we are recognized for having a second generation more secure modern log-in process, where we first validate user ID and password, before we generate and send in real-time a code that is only valid for that log-in attempt (session). It is all happening in real-time. Thus, the code is not pre-determined and thus is not exposed to the type of hacking seen recently. We can do this as we have build a reliable and scalable platform designed specifically for real-time code generation and global delivery via SMS Text Messaging, voice or secure e-mail to any phone. We do this with an unrivaled level of load-balancing, redundancy and alternate code delivery capabilities. Instead of making a trade-off towards a 20 year old less secure pre-deterministic technology like everybody else driven by the belief that the code could not be delivered reliably real-time, we have designed a system that has the capabilities to do just that much more reliably than any physical technology that is perceived to be more available but is not as it is often misplaced, out-of-order or expired. **

In addition to being more secure, SMS PASSCODE® also do not require physical distribution of devices and thus according to our customer driven TCO calculations, it cost less than half that of regular tokens when compared over a project period of 3-4 years.

Global trade-in program

While the removal of token distribution hassles makes it practically free for customers to migrate to SMS PASSCODE®, to entice customers to reconsider avoiding the hurdles to replace tokens, we today launched a global campaign offering customers a financial incentive in the shape of trade-in discount for any valid token, when augmenting existing two-factor token technologies with SMS PASSSCODE ®.  SMS PASSCODE® comes out of the box with support for co-existence to both regular tokens as well as more modern SaaS based token technologies for easy migration.  This enables customers to immediately increase security at lower cost than the token replacement alternative by implementing SMS PASSCODE® side-by-side to the existing token technology and migrate users on a need-to basis fitting your preferred time schedule.  The program, available in select markets through the third calendar quarter of 2011, offers a discount on the procurement of SMS PASSCODE ®  when it replaces a valid token. The trade-in discounts are set on a regional level.

To learn more about the details and the discounts, contact our distributor in your territory listed at www.smspasscode.com or contact us at our web form. You may also call me directly here: Lars Nielsen, phone +45 21 26 81 98.

** The likelihood a SMS PASSCODE user has to call the help desk to gain access is significant less than a physical token system as the misplacement and error rates are much higher than the likelihood a user cannot get a text, voice call or secure e-mail.

New SMS PASSCODE® program for concerned token users provide upgrade to SMS via easy co-existence

First there were the Zeus malware designed specifically to compromise tokens using pre-issued either ‘time-based’ or ‘until used’ codes. Now a leading token manufacturer has had a recent online break-in that has caused concerns. Everybody knows that these threats is something that can cause concerns in corporations resulting in work and efforts to re-evaluate security.  To increase security quickly during such security reviews or to augment existing solutions with the secure SMS PASSCODE two-factor authentication via SMS solution, we today announced a new co-existence program enabling legacy two-factor authentication customers that are concerned with modern internet threats to migrate smoothly to SMS PASSCODE at their own pace. Both last years Zeus malware and the recent online break-in has put the core concept of the traditional tokens ‘pre-issued’ codes under pressure.

However, these threats against legacy two-factor authentication technologies also help demonstrate the subtle but very important difference between these and new generation solutions like SMS PASSCODE®, where the code is generated and send in real time based on the individual login session and thus cannot be phished and re-used or calculated in advance.

It is natural that corporations are hesitant to make major changes to the existing security infrastructure over night. Therefore, when unforeseen threats like above arrive, it is often a desire to have a rapid response that do not require major rework. SMS PASSCODE® responds to this need with the support of a co-existence configuration in which customers can run a legacy token system and SMS PASSCODE side-by-side during a migration and architecture decision process. It solves the immediate security threat pain without a major effort.

How do SMS PASSCODE co-exist with tokens

With SMS PASSCODE, the user first validates user ID and password and it is not until that has been validated that it generates and sends a code in real-time that is only valid for that log-in session. This is more secure than any other alternative on the market. SMS PASSCODE has garnered international recognition for this more secure log-in process with many awards including Secure Computing Top 5 global innovator, Citrix Ready Partner of the year finalist, White Bull Top 30 IT company and most recently the Red Herring Global 100 most interesting IT companies.

When customers run SMS PASSCODE and a legacy token system side-by-side, SMS PASSCODE will forward users that enter the token code on to the token system while the rest are prompted to enter a SMS PASSCODE. It is done very transparent and very easy to deploy.

The SMS PASSCODE co-existence configuration is a proven configuration that is part of the standard product and come at no extra cost. As customers migrate legacy tokens, the program offers trade-in options on a case-by-case basis. Please visit www.smspasscode.com to find our local representative or to request more information. To learn more about SMS PASSCODE or try it out live on your own mobile phone, visit: https://demo.smspasscode.com

Token maker security breach validates the SMS PASSCODE more secure modern approach

The maker of the leading legacy token SecurID, this week announced that they have had a security breach that potentially touches on compromising the SecurID token technology. Apparently, it relates to a data break-in that has given external entities access to critical core technology that the manufacturer apparently deem serious enough to make them warn their clients. Read the note here: http://www.rsa.com/node.aspx?id=3872.

It is no secret, that vi view the main issue with tokens and the other SMS based two-factor authentication technologies to be the fact these solutions are based on the reliance of a pre-issued code that is created and calculated in advance. In other words, if I can gain access to the “activation key” or code to generate that code or just phish it like we see with our competition, then it can be compromised like experienced here.

SMS PASSCODE® is now again proven to be a more secure new generation solution.  SMS PASSCODE uses a real-time more secure login process. Essentially, we first validate user name and password and it is not until that is validated that we generate and send a random code that is only valid for that particular login attempt. Thus the code does not exist prior to the login attempt and can therefore not be compromised either by traditional phishing or these new data breach issues.

We have garnered significant international recognition for this more secure system including Secure Computing Magazine Top 5 innovator, Citrix Partner of the Year Finalist, InfoSecurity Product Guide Customer Choice award and most recently Red Herring Global 100 for the second consecutive year. In addition to a more secure login process, we also offer an easy to implement solution that plugs easily into all the leading authentication systems packaged up in a scalable and fault-tolerant platform. This is a very strong value proposition and the above further validates that.

The World leading Danish Crown meat processing firm chooses SMS PASSCODE® for remote access

This week, we announced that the world leading Danish Crown meat processing firm with more than 23,000 employees have standardized on SMS PASSCODE for secure employee remote access. At Danish Crown, the online threats drove a comprehensive security review including review of alternative methods of protection. This review resulted in the company choosing the SMS PASSCODE solution which has been recognized and awarded as a new generation of two-factor authentication solutions based on SMS.  Briefly explained, SMS PASSCODE first authenticates user ID and password. Once validated, the system creates and sends in real-time a code only valid for that particular user log-in session.

“There are three primary reason for selecting SMS PASSCODE and not a more traditional token approach. First, we save about 30% alone on eliminating hardware purchases as all users today carry a mobile phone. Secondly, the administration burden of our approximately 1.750 users with SMS PASSOCDE is less than that of about 20 traditional token users. Thirdly, it is a very straight forward solution that fully cover our needs” says Soren Sloth, and explains that all employees in Danish Crown has been very positive and receptive to using the solution.

“They think it is brilliant, as they always carry the key to the network in their hand. This has increased the employee efficiency at Danish Crown considerably. It makes it much faster and easier to log on and get to work”

You can learn more about the news and the solution here.

New demonstration of Microsoft ISA / TMG protection released

In our series of client demonstrations, today we launched a demonstration of the Microsoft ISA / TMG (Threat Management Gateway) client used to protect a website resource. The ISA/TMG client support was among the clients released in the latest SMS PASSCODE® version 4 – the technology leading two-factor SMS Authentication solution.

You can see the demonstration video here.

Fortinet’s Fortigate SSL VPN web and client access with SMS PASSCODE® SMS Authentication

Fortinet’s Fortigate UTM appliances includes a powerful SSL VPN and IPSec VPN solution including their own client that is fully standardized. SMS PASSCODE® has been validate to work transparently with both the Fortigate SSL VPN and client VPN access technologies. Today, we released demonstration video’s of both solutions on our “How it works” website here.

This validation extends a long range of VPN, SSL VPN, Citrix, Microsoft, Android and Apple client login system support helping making SMS PASSCODE the proven technology leader with the broadest client support for modern two-factor authentication.  Check this and our many other videos out at our website.

Andriod powered smartphones and tablets with SMS PASSCODE® support

The proliferation of mobile devices also means a lot more situations where the need for secure remote access is present. We monitor this ongoing and work with the various vendors to ensure, our clients has the broadest platform support and thus the broadest set of options possible. Today, we released a set of videos demonstrating that the Citrix Receiver for Android has been validated to seamless integrate with SMS PASSCODE for an smooth and good secure remote access experience. When a user authenticate in the Citrix Receiver for Android application, SMS PASSCODE automatically sends a code that is entered in the two-factor authentication field also prompted automatically.  Please visit our “How it works… ” section on our website to see this live.

This augments our previously posted news of our Apple iPad Receiver Companion application and the iPhone SMS Authentication support that has been jointly developed earlier in the year.

Next Page »



Follow

Get every new post delivered to your Inbox.