Developers: | Aladdin R.D. |
Last Release Date: | 2013/06/11 |
Technology: | Cybersecurity - Authentication, Means of enciphering are cybersecurity |
Content |
SAM Agent is the new solution in the field of information security support created by Aladdin R.D. company the press service of the company reported on June 11, 2013.
Appointment
The product is intended for the organizations where is available unrolled by PKI and SAM (SafeNet Authentication Manager). SAM Agent is intended for process automation of management of lifecycle of key carriers of users that significantly simplifies work with a system both for end users, and for administrators.
Functionality
The functionality of a product allows to take during a short period under management any number of key carriers, without attraction to this process of administrators.
SAM Agent implements (basic scenarios):
Binding of tokens to the user
The user can attach to himself the connected token if it:
- it is not registered in SAM;
- it is registered in SAM, but not appointed to any user.
At the same time it is performed:
- registration of a token in SAM (if it is not registered yet);
- token binding to the current user;
- initialization of a token;
- initial release on a token of the objects required on politicians of SAM.
Settings of a product allow to change behavior of this functionality - it is possible to prohibit the user to execute a binding of new tokens, or to include the mode of an automatic binding of tokens.
Automatic start of synchronization of a token
SAM Agent automatically detects need of start of synchronization of a token.
Check is performed on the next events:
- the first user login, i.e. opening of a session;
- repeated input in earlier blocked session (shutdown in settings is possible) connection of a token;
- on the timer (shutdown in settings is possible).
The decision on need of updating of a token is made in the following cases:
- SAM reports that client data were reconfigured, and it is necessary to execute synchronization.
- SAM reports that at some object (for example, the certificate) on a token validity period comes to the end, and it is necessary to update token contents. In this case the PIN code to a token is requested from the user, and when entering the correct PIN code synchronization of a token is started.
Forced completion of the user session
SAM Agent compulsorily completes active sessions of the users blocked in SAM. Before completion of a session the precautionary window is shown to the user and the 10-second timeout is given.
Settings of a product allow to change behavior of this functionality – to include the mode of blocking of a session instead of its final completion, or to completely disconnect this functionality.
Blocking of the withdrawn token
SAM Agent automatically blocks tokens in the status "Disabled" or "Revoked". Blocking is implemented through accomplishment of several attempts of an input in a token with the incorrect user password that leads to key lock. For an unblocking it is necessary or to come on a token under the administrative password, or to completely initialize a token.
Settings of a product allow to change behavior of this functionality - to change the number of the executed attempts of an input to a key; change the list of the statuses at which blocking of a token is executed; to completely disconnect this functionality.
Support of the connectors SAM
The product supports work only with three connectors SAM:
- MSCA (is a part of SAM);
- MSCP of version 2.0.0.112;
- UTs Crypto Pro of version 2.0.0.121.
Support of hardware tokens
The product is tested on the following models of tokens:
- eToken Pro;
- eToken Java (with eToken Pro applet).
Supported platforms and architecture
- Server part of service is implemented in two options: x86 and x64.
The following OS are supported:
- Windows Server 2008 x86/x64;
- Windows Server 2008 R2.
- The client agent is implemented as x86 the application working as well at x64 platform in the compatibility mode. SAM Agent supports the following OS:
- Windows XP SP2 x86;
- Windows 7 x86/x64.