Intel Identity Protection Technology (IPT)



Similar documents
Intel Identity Protection Technology Enabling improved user-friendly strong authentication in VASCO's latest generation solutions

with PKI Use Case Guide

Deeper Levels of Security with Intel Identity Protection Technology

Intel Media SDK Library Distribution and Dispatching Process

Intel Cyber Security Briefing: Trends, Solutions, and Opportunities. Matthew Rosenquist, Cyber Security Strategist, Intel Corp

Intel Identity Protection Technology with PKI (Intel IPT with PKI)

Intel Desktop Board D945GCPE Specification Update

CLOUD SECURITY: Secure Your Infrastructure

Intel Desktop Board D945GCPE

Intel Desktop Board DG41BI

Intel Desktop Board DG43RK

Intel Core i5 processor 520E CPU Embedded Application Power Guideline Addendum January 2011

Intel Solid-State Drive Pro 2500 Series Opal* Compatibility Guide

Intel Desktop Board DP55WB

Intel Desktop Board DG41TY

Intel Desktop Board DG41WV

Intel Desktop Board DG31PR

Intel SSD 520 Series Specification Update

Intel Desktop Board DQ43AP

Intel Desktop Board D945GCL

Intel Desktop Board DQ35JO

Intel vpro Technology. How To Purchase and Install Symantec* Certificates for Intel AMT Remote Setup and Configuration

Intel vpro Technology. How To Purchase and Install Go Daddy* Certificates for Intel AMT Remote Setup and Configuration

Intel Desktop Board DQ965GF

Intel Remote Configuration Certificate Utility Frequently Asked Questions

Intel Desktop Board DG33TL

Intel Desktop Board DG965RY

Intel Desktop Board DP43BF

Intel Cyber-Security Briefing: Trends, Solutions, and Opportunities

The Case for Rack Scale Architecture

Intel Desktop Board D101GGC Specification Update

Intel Platform Controller Hub EG20T

Intel HTML5 Development Environment. Tutorial Test & Submit a Microsoft Windows Phone 8* App (BETA)

Intel Service Assurance Administrator. Product Overview

Intel Network Builders: Lanner and Intel Building the Best Network Security Platforms

Resetting USB drive using Windows Diskpart command

Intel Management Engine BIOS Extension (Intel MEBX) User s Guide

RAID and Storage Options Available on Intel Server Boards and Systems

Cloud based Holdfast Electronic Sports Game Platform

Intel Active Management Technology Embedded Host-based Configuration in Intelligent Systems

System Image Recovery* Training Foils

Software Token Security & Provisioning: Innovation Galore!

Intel Data Direct I/O Technology (Intel DDIO): A Primer >

iscsi Quick-Connect Guide for Red Hat Linux

Intel System Event Log (SEL) Viewer Utility

Intel and Qihoo 360 Internet Portal Datacenter - Big Data Storage Optimization Case Study

Specification Update. January 2014

Intel Modular Server System MFSYS25

This guide explains how to install an Intel Solid-State Drive (Intel SSD) in a SATA-based desktop or notebook computer.

Intel Technical Advisory

Software Solutions for Multi-Display Setups

Intel Core TM i3 Processor Series Embedded Application Power Guideline Addendum

Intel Cloud Builder Guide: Cloud Design and Deployment on Intel Platforms

Creating Overlay Networks Using Intel Ethernet Converged Network Adapters

Intel Desktop Board D945GCZ

System Event Log (SEL) Viewer User Guide

Intel HTML5 Development Environment Article Using the App Dev Center

How To Manage A Plethora Of Identities In A Cloud System (Saas)

Intel HTML5 Development Environment. Article - Native Application Facebook* Integration

Intel Internet of Things (IoT) Developer Kit

Douglas Fisher Vice President General Manager, Software and Services Group Intel Corporation

RAID and Storage Options Available on Intel Server Boards and Systems based on Intel 5500/5520 and 3420 PCH Chipset

Intel Virtualization Technology (VT) in Converged Application Platforms

Intel Small Business Advantage (Intel SBA) Release Notes for OEMs

Intel Cyber-Security Briefing: Trends, Solutions, and Opportunities. John Skinner, Director, Secure Enterprise and Cloud, Intel Americas, Inc.

Intel Matrix Storage Console

Version Rev. 1.0

Intel Desktop Board DG43NB

Intel RAID RS25 Series Performance

DDR2 x16 Hardware Implementation Utilizing the Intel EP80579 Integrated Processor Product Line

Intel vpro Technology Module for Microsoft* Windows PowerShell*

Intel Extreme Memory Profile (Intel XMP) DDR3 Technology

How To Reduce Pci Dss Scope

Citrix and Intel Deliver Client Virtualization

Cloud Service Brokerage Case Study. Health Insurance Association Launches a Security and Integration Cloud Service Brokerage

Intel Software Guard Extensions(Intel SGX) Carlos Rozas Intel Labs November 6, 2013

Intel Solid-State Drives Increase Productivity of Product Design and Simulation

Intel Network Builders

TABLE OF CONTENTS. Introduction 3 OTP SMS Two-Factor Authentication 5 Technical Overview 9 Features 10 Benefits 11 About MobiWeb 12 Quality 13

Benchmarking Cloud Storage through a Standard Approach Wang, Yaguang Intel Corporation

Intel Desktop Board D945GNT

Hormuzd Khosravi, Principal Engineer, Intel Corporation

How to Configure Intel X520 Ethernet Server Adapter Based Virtual Functions on Citrix* XenServer 6.0*

Intel Trusted Platforms Overview

WHITE PAPER. LVDS Flat Panel Display Interface on Intel Desktop Boards. July 2009 Order Number: E

How To Get A Client Side Virtualization Solution For Your Financial Services Business

Intel Desktop public roadmap

Intel RAID Volume Recovery Procedures

Solution Recipe: Improve PC Security and Reliability with Intel Virtualization Technology

Intel Atom Processor E3800 Product Family

Intel Unite Solution. Standalone User Guide

VNF & Performance: A practical approach

* * * Intel RealSense SDK Architecture

Running Windows 8 on top of Android with KVM. 21 October Zhi Wang, Jun Nakajima, Jack Ren

A Superior Hardware Platform for Server Virtualization

Intel Core TM i7-660ue, i7-620le/ue, i7-610e, i5-520e, i3-330e and Intel Celeron Processor P4505, U3405 Series

Power Benefits Using Intel Quick Sync Video H.264 Codec With Sorenson Squeeze

Intel Integrated Native Developer Experience (INDE): IDE Integration for Android*

Transcription:

Intel Identity Protection Technology (IPT) Enabling improved user-friendly strong authentication in VASCO's latest generation solutions June 2013 Steve Davies Solution Architect Intel Corporation 1 Copyright 2013, Intel Corporation. All rights reserved.

Legal INFORMATION IN THIS DOCUMENT IS PROVIDED IN CONNECTION WITH INTEL PRODUCTS. NO LICENSE, EXPRESS OR IMPLIED, BY ESTOPPEL OR OTHERWISE, TO ANY INTELLECTUAL PROPERTY RIGHTS IS GRANTED BY THIS DOCUMENT. EXCEPT AS PROVIDED IN INTEL'S TERMS AND CONDITIONS OF SALE FOR SUCH PRODUCTS, INTEL ASSUMES NO LIABILITY WHATSOEVER AND INTEL DISCLAIMS ANY EXPRESS OR IMPLIED WARRANTY, RELATING TO SALE AND/OR USE OF INTEL PRODUCTS INCLUDING LIABILITY OR WARRANTIES RELATING TO FITNESS FOR A PARTICULAR PURPOSE, MERCHANTABILITY, OR INFRINGEMENT OF ANY PATENT, COPYRIGHT OR OTHER INTELLECTUAL PROPERTY RIGHT. Intel may make changes to specifications and product descriptions at any time, without notice. Designers must not rely on the absence or characteristics of any features or instructions marked "reserved" or "undefined". Intel reserves these for future definition and shall have no responsibility whatsoever for conflicts or incompatibilities arising from future changes to them. The information here is subject to change without notice. Do not finalize a design with this information. The products described in this document may contain design defects or errors known as errata which may cause the product to deviate from published specifications. Current characterized errata are available on request. Contact your local Intel sales office or your distributor to obtain the latest specifications and before placing your product order. No system can provide absolute security under all conditions. Requires an Intel Identity Protection Technology-enabled system, including a 2nd or 3rd gen Intel Core processor enabled chipset, firmware and software, and participating website. Consult your system manufacturer. Intel assumes no liability for lost or stolen data and/or systems or any resulting damages. For more information, visit http://ipt.intel.com. Intel, Intel Core, Ultrabook, Insider, vpro, Atom and the Intel logo are trademarks or registered trademarks of Intel Corporation or its subsidiaries in the United States and other countries. *Other names and brands may be claimed as the property of others. Copyright 2013, Intel Corporation. All rights reserved. 2

Your questions coming into this session 1. What is this improved user-friendly strong authentication? 2. What is it that Intel offers to support this? 3. What is it that VASCO offers to support this? 3

4 ebanking Use Case

5 Garanti Example Login using OTP generated by hardware token

Garanti Example Login using OTP generated by hardware token Enter hardware token generated One-Time Password for 2 nd factor authentication 6

7 Garanti Example Login using OTP generated by hardware token

8 Garanti Example Login using OTP sent by SMS to mobile phone

9 Garanti Example Login using OTP sent by SMS to mobile phone

10 Garanti Example Login using OTP sent by SMS to mobile phone

11 Garanti Example Login using OTP generated by Intel IPT

12 Garanti Example Login using OTP generated by Intel IPT

I see the user experience benefit But is it giving up some security? No, it is not giving up security 13

14 Enterprise VPN Use Case

15 VPN Example Login by typing OTP generated by hardware token

VPN Example Login by copy/paste OTP generated by Intel IPT My VPN token - X 16834096 copy 16

I see the user experience benefit But it is not really something new? Yes it is something new 17

18 B2B and B2C Websites

19 B2B / B2C Example Traditional login with username / password only

20 B2B / B2C Example Login with Mydigipass.com OTP

21 B2B / B2C Example Login with Mydigipass.com OTP phone or token

22 B2B / B2C Example Login with Mydigipass.com OTP Intel IPT

I see the user experience benefit But is it giving up some security? No, it is not giving up security 23

Add More Security PIN protect the Intel IPT OTP release My VPN token 0 9 7 4 3 1 8 2 6 5 Enter PIN My VPN token - X 16834096 copy 24

PIN Entry with Software Applets User view and malware view My VPN token 0 9 7 4 1 Confirm $50,000 transfer to account 3 # 8 9237-4602 5 2 6 Enter PIN What User Sees My VPN token 0 9 7 4 3 1 8 2 What Malware Sees 6 5 Enter PIN X My VPN token - X 16834096 copy 25

26 PIN Entry embedded in Webpage This is what the user sees

27 PIN Entry embedded in Webpage This is what malware sees

Hardware-based Security in the platform Win Apps Browsers Main OS Malware Win OS ME-based Apps ME DLL Separate CPU/RAM/Flash Trusted Execution Environment for Security Operations Crypto, Secure Display Main CPU Chipset Hardware based security isolated from the host 28

How It Works: Intel Components Intel Identity Protection Technology (IPT) Security features built into the chipset Security Service algorithm applet runs in the firmware Intel IPT generates OTP in isolated space 698731 29

Your questions coming into this session 1. What is this improved user-friendly strong authentication? 2. What is it that Intel offers to support this? 3. What is it that VASCO offers to support this? 30

Intel Identity Protection Technology Platform Roadmap Atom Tablets Install Base Ultrabooks vpro Desktops & Laptops Core Desktops Core Tablets Core Laptops Atom Phones 2012 2013 2014 Mid 2013, on all Intel Core systems and extending to Intel Atom based phones and tablets in 2H 2013 To become ubiquitous in worldwide Intel-based platforms 31 Intel, Intel Core, Ultrabook, Insider, vpro, Atom and the Intel logo are trademarks or registered trademarks of Intel Corporation. *Other names and brands may be claimed as the property of others.

Intel Identity Protection Technology Service Building Solution Blocks Internet On-Premise or Cloud or Mixed Website Consumer - Enterprise Authentication Server Provisioning & Verification Services Token Record Storage 32 *Other names and brands may be claimed as the property of others.

Your questions coming into this session 1. What is this improved user-friendly strong authentication? 2. What is it that Intel offers to support this? 3. What is it that VASCO offers to support this? 33

Why is this relevant to you? Your Customer s Benefits Easy to use Protects against many types of attacks Opt-in gives you freedom Complements existing 2FA with : Hardware based User friendly strong authentication solution Enhance brand value & reputation Complements existing 2FA with 34

35