“Our infrastructure was ageing, and required investment...we had 1,000 key fobs, and it was a monthly chore to replace them. Additionally, RSA couldn’t offer us the changeable battery technology... and, because under CRYPTOCARD’s licensing model the tokens don’t expire after three years, the total cost of ownership is significantly lower.” - Dudley MBC |
CRYPTOCARD tokens are convenient, inexpensive, reliable and of course, never expire. Choose from a wide range of phone, software, SMS and physical tokens, or consider the grIDsure tokenless method.
CRYPTOCARD’s BLACKSHIELD authentication platform also supports a wide variety of 3rd party tokens, including any token supporting industry standards such as OATH, and also certain other vendors’ tokens such as those from RSA.
All of our token and tokenless methods can be mixed and matched.
The question of which token or combination of tokens to issue to users is answered by finding the optimum balance of convenience, cost and mobility that satisfies the organization’s security policy and desired end user experience.
More Secure, by design
All CRYPTOCARD tokens allow customisable length and complexity of both the passcode generated by the token and the user’s PIN, hence allowing organisation’s to control their security posture. The importance of this feature is best understood by considering the limitation of old, cheap keyfob tokens that could only produce a 6-digit numeric passcode. Such tokens can only generate 1 million different passcodes – not a large number in today’s world, leaving an organisation with two equally unpleasant choices.
Maintain security posture by mandating that user PINs are long and complex, resulting in significantly increased help desk calls and dissatisfied users due to the frequency of forgotten PINs, or Maintain simple PINs but reduce the security posture Passcode length and complexity are important, and by using CRYPTOCARD’s flexible tokens you can control both. The major RSA breach reported in March 2011 has brought the concept of seed data into the spotlight for hardware tokens. CRYPTOCARD is unique among tier one authentication vendors in that its customers are not vulnerable to such an attack. Because CRYTOCARD protected organisations can initialise (enter the seed data) into the tokens themselves, CRYPTOCARD does not have a copy of the seed data and hence there is no copy of the seed data to be compromised.
|