1. Catalogs
  2. HID
  3. 4TRESS Authentication Server Secure, multi-channel customer authentication

4TRESS Authentication Server Secure, multi-channel customer authentication

4TRESS Authentication Server   Secure, multi-channel customer authentication

4TRESS Authentication Server Secure, multi-channel customer authentication

Product catalog summary
Overview
The 4TRESS Authentication Server is designed to provide secure, multi-channel authentication for financial institutions, managed service providers, and other organizations. It supports a wide range of authentication methods, enhancing consumer confidence in online transactions, increasing security, and reducing costs.

Benefits
  • Consistent Authentication: Implements a uniform customer verification model across various service channels.
  • Ease of Management: Supports multiple concurrent authentication methods, allowing for appropriate security levels for different user groups and phased migration between models.
  • Scalable Resilient Architecture: Supports large customer bases with high availability for customer-facing systems.
  • Ease of Deployment: Integrates with existing and future applications using industry-standard technologies, with a browser-based user interface requiring no client installation.
  • Return on Investment: Consolidates multiple authentication servers into a single solution, reducing operational costs through web self-service functions.

Key Features
  • Wide Range of Authentication Methods: Includes OTP tokens, smart cards, static passwords, and more, with a pluggable framework for new methods like mobile OTP and voice biometrics.
  • Comprehensive Management Tools: Supports a wide range of authentication methods, consolidating them into a single logical model within a Service Oriented Architecture.
  • Rapid Deployment Capabilities: Deployable on various platforms with functions exposed through a standards-based public API for easy integration.

Technical Specifications
  • Operating Systems: IBM AIX 5.3, Redhat Enterprise Linux 5.
  • Hardware: Sun SPARC, IBM pSeries, optional nCipher Hardware Security Module.
  • Application Server: IBM WebSphere, JBOSS, Oracle databases.
  • Devices: ActivIdentity Solo Reader, OTP Tokens, DisplayCard, and OATH HOTP compliant tokens.
  • Authentication Schemes: OTP, PIN verification, static passwords, question and answer, extendable framework for third-party tokens.

Administration Features
  • Password Management: Includes self-reset, auto-generation, secure PIN mailer, and help desk support.
  • Device Management: Synchronization, unlocking, assignment, and import functions.
  • Credential Management: Status management, channel-specific policies, usage statistics, and validity periods.
  • User and Permission Management: User, group, and role management with secure audit capabilities.

Standards Compliance and Integration
  • Complies with Sun J2EE, Java RMI, SOAP, OATH HOTP, MasterCard EMV CAP, VISA DPA, and FIPS140-2 level 3 standards.
  • Integration support for Java RMI, Sun Java, C, C#, and SOAP clients.

Encryption and Authorization
  • Protects cryptographic keys using HSM, with Triple DES encryption and database row-level signing.
  • Manages transaction authorization policies specific to service channels and authentication methods.
See more

Catalog excerpts

4TRESS Authentication Server   Secure, multi-channel customer authentication-1

Օ (Web, IVR, ATM etc.) using a single authentication platform. Comprehensive management tools Օ card activation, PIN reset and password maintenance. Multiple service channel support Rapid deployment capabilities Support for a wide range of credentials and physical devices. All authentication and administration actions are recorded within a centralized, digitally-signed audit log. Web self-service tools including token/ Օ authentication methods plus easy adoption of new methods enables organizations to consolidate multiple physical methods into a single logical authentication model within a Service Oriented Architecture.Full lifecycle management of user 4TRESS Authentication Server can be > deployed on a variety of platforms. All 4TRESS Authentication Server functions are exposed through a standards-based public API that can be accessed via SOAP for easy integration to a wide range of environments. > 4TRESS ՙ Authentication Server enables financial institutions, managed service providers, and other organizations to support a wide range of authentication methods, building consumer confidence in online transactions, increasing security, and reducing costs. Whether interested in one-time password (OTP) tokens or smart cards, static passwords or Q&A, 4TRESS Authentication Server provides a highly scalable, secure, centralized authentication server with the capability to manage a wide range of user credentials. > Consistent authentication > Enables a consistent customer verification model to be implemented across various service channels. Ease of management > Supports multiple concurrent authentication methods enabling an organization to implement an appropriate level of security for different user groups and the phased migration of users between authentication models. Wide range of authentication methods Օ ActivIdentiy or OATH-based one-time password (OTP) authentication. EMVՙ CAP/DPA card based authentication. Static secrets, in full or partial mode, including passwords, PINs, and secret questions. Pluggable framework enables easy Scalable resilient architecture > Scales to support large customer bases, such as retail banking, and provides the high availability required for customer-facing systems. adoption of new authentication methods such as mobile OTP and voice biometrics. Ease of deployment > Streamlines integration with existing and future applications through industry standard technologies and interfaces. 4TRESS Authentication Server also provides a browser-based user interface that requires no client installation. Multiple authentication devices & access pointsSupport for multiple service channelsCentralized authentication management and audit Multiple business units ATM CredentialsAdministrator Return on investment > 4TRESSAuthenticationServer Consolidate multiple authentication servers across separate business units or subsidiaries into a single solution. In addition, web self-service functions such as card activation and token unlock reduces operational cost of administering strong authentication. Credentials Administrator Multiple usercommunities &authenticationdevices NetworkWebPhonePDA Internet Call CentreIVRATM Credentials Administrator 4TRESS Authentication Server enables financial institutions, managed service providers, and other organizations to reduce costs and increase security with a scalable and open standards-based platform. size="-1">

 Open the catalog to page 1
4TRESS Authentication Server   Secure, multi-channel customer authentication-2

IBMծ AIX 5.3 - Unlock Ε Management and application of Redhatծ Enterprise Linux 5 - Assign/unassign transaction authorization policiesService channel and authentication > - Import Ε Sunՙ SPARC (Sun FireΙ 280R, 240) Credential management method specific authorization Օ IBM pSeriesή System p5 Servers - Status (enable/disable) Optional: nCipherծ Hardware Security - Channel specific usage policies > Module (nShield and payShieldٙ for EMV) - Usage statistics 4TRESS Authentication SDK - Maintains validity periods Օ ActivIdentity Tokens > User and permission management Օ ActivIdentity Solo Reader IBM...

 Open the catalog to page 2
*Prices are pre-tax. They exclude delivery charges and customs duties and do not include additional charges for installation or activation options. Prices are indicative only and may vary by country, with changes to the cost of raw materials and exchange rates.