Início
Conheça mais
Enviar pesquisa
Carregar
Entrar
Cadastre-se
Anúncio
Check these out next
SAML VS OAuth 2.0 VS OpenID Connect
Ubisecure
TrustBearer - Virginia Security Summit - Web Authentication Strategies - Apri...
TrustBearer
The Client is not always right! How to secure OAuth authentication from your...
Mike Schwartz
Webinar: Identity Wars: The Unified Platform Awakens
ForgeRock
Mobile Single-Sign On: Extending SSO Out to the Client - Layer 7's CTO Scott ...
CA API Management
SSO Strategy Implementation Considerations
John Bauer
Webinar: ForgeRock Identity Platform Preview (Dec 2015)
ForgeRock
Webinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
ForgeRock
1
de
43
Top clipped slide
Authentication and strong authentication for Web Application
7 de Oct de 2010
•
0 gostou
3 gostaram
×
Seja o primeiro a gostar disto
mostrar mais
•
825 visualizações
visualizações
×
Vistos totais
0
No Slideshare
0
De incorporações
0
Número de incorporações
0
Baixar agora
Baixar para ler offline
Denunciar
Tecnologia
WebCast: Authentication and Strong Authentication in Web Applications WebCast
Sylvain Maret
Seguir
Security Architect em MARET Consulting
Anúncio
Anúncio
Anúncio
Recomendados
Identiverse - Microservices Security
Bertrand Carlier
1.7K visualizações
•
28 slides
Trust Elevation: Implementing an OAuth2 Infrastructure using OpenID Connect &...
Mike Schwartz
2.6K visualizações
•
52 slides
RSA Conference 2016: Don't Use Two-Factor Authentication... Unless You Need It!
Mike Schwartz
1.7K visualizações
•
44 slides
CIS 2017 - So you want to use standards to secure your APIs?
Bertrand Carlier
939 visualizações
•
28 slides
TrustBearer - CTST 2009 - OpenID & Strong Authentication
TrustBearer
3K visualizações
•
15 slides
OpenID Connect: The new standard for connecting to your Customers, Partners, ...
Salesforce Developers
12.1K visualizações
•
41 slides
Mais conteúdo relacionado
Apresentações para você
(20)
SAML VS OAuth 2.0 VS OpenID Connect
Ubisecure
•
1.7K visualizações
TrustBearer - Virginia Security Summit - Web Authentication Strategies - Apri...
TrustBearer
•
1.9K visualizações
The Client is not always right! How to secure OAuth authentication from your...
Mike Schwartz
•
2K visualizações
Webinar: Identity Wars: The Unified Platform Awakens
ForgeRock
•
1.1K visualizações
Mobile Single-Sign On: Extending SSO Out to the Client - Layer 7's CTO Scott ...
CA API Management
•
3K visualizações
SSO Strategy Implementation Considerations
John Bauer
•
4.6K visualizações
Webinar: ForgeRock Identity Platform Preview (Dec 2015)
ForgeRock
•
4.1K visualizações
Webinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
ForgeRock
•
1.9K visualizações
Introduction to Solus
Solus
•
477 visualizações
Smart Cards & Devices Forum 2012 - Securing Cloud Computing
OKsystem
•
938 visualizações
Web Single sign on system
Swati Sinha
•
459 visualizações
Session 7 e_raja_kailar
Hai Nguyen
•
486 visualizações
Sp 29 two_factor_auth_guide
Hai Nguyen
•
701 visualizações
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.
ForgeRock
•
519 visualizações
SSL Certificate and Code Signing
Li-Wei Yao
•
1.3K visualizações
Multi-Factor Authentication & Authorisation
Ubisecure
•
147 visualizações
Federation in Practice
ForgeRock
•
6.2K visualizações
Incredible Edible Identity
ForgeRock
•
2K visualizações
FIDO Technical Specifications Overview
FIDO Alliance
•
647 visualizações
DevOps & Apps - Building and Operating Successful Mobile Apps
Apigee | Google Cloud
•
3.4K visualizações
Destaque
(11)
Web authentication
Pradeep J V
•
602 visualizações
Web authentication & authorization
Alexandru Pasaila
•
974 visualizações
The wonderful story of Web Authentication and Single-Sign On
Clément OUDOT
•
2K visualizações
SSL TSL;& SET
Ramesh Ogania
•
7.1K visualizações
Strong Authentication in Web Application / ConFoo.ca 2011
Sylvain Maret
•
3K visualizações
Pmbok 4th edition chapter 11 - Project Risk Management
Ahmad Maharma, PMP,RMP
•
13.9K visualizações
PMP Training - 11 project risk management
ejlp12
•
35.9K visualizações
Implementing Enterprise Risk Management with ISO 31000:2009
Goutama Bachtiar
•
49.5K visualizações
The Purpose And Goals Of Risk Management
Lisa Shannon, RN, BSN, JD.
•
82.7K visualizações
Project Risk Management - PMBOK5
pankajsh10
•
35K visualizações
Risk Management Framework
Anand Subramaniam
•
284.6K visualizações
Anúncio
Similar a Authentication and strong authentication for Web Application
(20)
Cartes Asia Dem 2010 V2
Donald Malloy
•
1.8K visualizações
Identity Federation on JBossAS
Roger CARHUATOCTO
•
1K visualizações
MuleSoft Surat Virtual Meetup#19 - Identity and Client Management With MuleSoft
Jitendra Bafna
•
854 visualizações
Going beyond MFA(Multi-factor authentication)-Future demands much more
indragantiSaiHiranma
•
184 visualizações
Identity and Client Management using OpenID Connect and SAML
pqrs1234
•
382 visualizações
Mobile SSO: Give App Users a Break from Typing Passwords
CA API Management
•
5.7K visualizações
Catalyst 2015: Patrick Harding
Ping Identity
•
1.7K visualizações
Axiom protect-2.0-with-one identity
Vikram Sareen
•
534 visualizações
[POSS 2019] MicroServices authentication and authorization with LemonLDAP::NG
Worteks
•
489 visualizações
#OSSPARIS19 - MicroServices authentication and authorization with LemonLDAP::...
Paris Open Source Summit
•
22 visualizações
ISS SA le presenta IdentityGuard de Entrust
Information Security Services SA
•
5.2K visualizações
Strong Authentication in Web Application #SCS III
Sylvain Maret
•
2K visualizações
IRJET- Graphical Secret Code in Internet Banking for Improved Security Transa...
IRJET Journal
•
35 visualizações
Palo Alto Networks: Protection for Security & Compliance
Amazon Web Services
•
3K visualizações
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
apidays
•
517 visualizações
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
apidays
•
337 visualizações
Web-services
webhostingguy
•
831 visualizações
eMAS Multifactor Authentication
Kalyana Sundaram
•
41 visualizações
Con8823 access management for the internet of things-final
OracleIDM
•
1.8K visualizações
E banking security
Iman Rahmanian
•
24.7K visualizações
Mais de Sylvain Maret
(20)
Air Navigation Service Providers - Unsecurity on Voice over IP Radion
Sylvain Maret
•
700 visualizações
factsheet_4g_critical_comm_en_vl
Sylvain Maret
•
430 visualizações
INA Volume 1/3 Version 1.02 Released / Digital Identity and Authentication
Sylvain Maret
•
2.1K visualizações
INA Volume 1/3 Version 1.0 Released / Digital Identity and Authentication
Sylvain Maret
•
1.4K visualizações
INA Volume 1/3 Version 1.0 RC / Digital Identity and Authentication
Sylvain Maret
•
1.5K visualizações
Securite des Web Services (SOAP vs REST) / OWASP Geneva dec. 2012
Sylvain Maret
•
10.4K visualizações
Strong Authentication State of the Art 2012 / Sarajevo CSO
Sylvain Maret
•
1.2K visualizações
ASFWS 2012 / Initiation à la sécurité des Web Services par Sylvain Maret
Sylvain Maret
•
1.8K visualizações
Threat Modeling / iPad
Sylvain Maret
•
1.3K visualizações
Strong Authentication in Web Applications: State of the Art 2011
Sylvain Maret
•
2.1K visualizações
Geneva Application Security Forum 2010
Sylvain Maret
•
1.1K visualizações
Final conclusions of Working Group 3 at Workshop Münchenwiler 20-21 of May 20...
Sylvain Maret
•
1.3K visualizações
Comment protéger de façon efficace son/ses identité(s) numérique(s) sur le We...
Sylvain Maret
•
979 visualizações
Digital identity trust & confidence
Sylvain Maret
•
852 visualizações
Implementation of a Biometric Solution Providing Strong Authentication To Gai...
Sylvain Maret
•
1K visualizações
Geneva Application Security Forum: Vers une authentification plus forte dans ...
Sylvain Maret
•
2.7K visualizações
Geneva Application Security Forum: Vers une authentification plus forte dans ...
Sylvain Maret
•
975 visualizações
Geneva Application Security Forum: Vers une authentification plus forte dans ...
Sylvain Maret
•
11 visualizações
Geneva Application Security Forum: Vers une authentification plus forte dans ...
Sylvain Maret
•
1.2K visualizações
Corrélation d'évènements dans un environnement VoIP avec ExaProtect
Sylvain Maret
•
498 visualizações
Anúncio
Último
(20)
Ion Sources and Beams
DrAlirezaGanjovi
•
0 visão
ppt on Online IDE.pptx
DhirajTaye
•
0 visão
PHP-04-Forms.ppt
NatureLifearabhi
•
0 visão
Blockchain in Digital Transformation.pptx
TarunTiwari94
•
0 visão
AERO 55 600V Single Core Shielded Wires by Rohit Damodaran
Rohit Damodaran
•
0 visão
Perfecting Customer Management Using Jira Service Management
Cprime
•
0 visão
Arduino Nano V3 CH340
pragyasharma361808
•
0 visão
SkidFleet Brochure, forklift management reporting
ZeljkoJurca
•
0 visão
BlockChain.pptx
Tilani Gunawardena PhD(UNIBAS), BSc(Pera), FHEA(UK), AMIESL
•
0 visão
3.1.+Course+Overview.pdf
Jess Rodriguez
•
0 visão
Tuning Traditional Language Processing Approaches for Pashto Text Classification
kevig
•
2 visualizações
[AgileDevOps West 2023] We're in it together and other perspectives on effect...
Jason Yip
•
0 visão
How to build machine learning apps.pdf
AnastasiaSteele10
•
0 visão
DeFi: Meaning and Application in the World of Crypto
Chima Ezuo
•
0 visão
wire-all-the-things-lambda-days-2023.pdf
Eric Torreborre
•
0 visão
Action Transformer.pdf
AnastasiaSteele10
•
0 visão
NS - CUK Seminar : V.T.Hoang, Review on "Structure-Aware Transformer for Grap...
ssuser4b1f48
•
0 visão
Discover Centralized Management and Administration for Excel to SAP® Automation
Precisely
•
0 visão
synthesisofevidenceresource.pdf
abdelkhaleqelhaddad5
•
0 visão
Ch 2 -ARMAMENT CONTROL & GPS systems design.pptx
bvmohan1
•
0 visão
Authentication and strong authentication for Web Application
Sylvain Maret /
Digital Security Expert @ MARET Consulting BrightTALK - October 7th 2010 Authentication and Strong Authentication in Web Application
Protection of digital
identities: a topical issue…
threats on the
authentication
Definition of strong
authentication Strong Authentication on Wikipedia
«Digital identity is
the cornerstone of trust» More information on the subject
Strong Authentication A
new paradigm !
Which strong authentication
technology? (Legacy Token …..)
* * Biometry
type Fingerprinting OTP PKI (HW) Biometry Strong authentication Encryption Digital signature Non repudiation Strong link with the user
Authentication Server must
be agnostic
New Standards &
Open Source
Integration with web
application
Web applications: basic
authentication model
Web application: strong
authentication model
“ Shielding" approach:
perimetric authentication
Module/Agent-based approach
API/SDK based approach
SSL PKI: how
does it work? Web Server Alice Validation Authority Valid Invalid Unknown OCSP request SSL / TLS Mutual Authentication
Federated identities:
a changing paradigm on authentication
Federation of identity
approach a change of paradigm: using IDP for Authentication and Strong Authentication Web App X Web App Y Identity Provider
Using SAML for
Authentication and Strong Authentication (Assertion Consumer Service)
SAML – How
does it work? Identity Provider e.g. clavid.ch User Hans Muster Enabled Service e.g. Google Apps for Business 1 2 2 6 3 4 4
Example with HTTP
POST Binding
SAML AuthN &
ACS integration in Web Application
OpenID - How
does it work? 1 3 5 Enabled Service 6 4, 4a User Hans Muster Caption 1. User enters OpenID 2. Discovery 3. Authentication 4. Approval 4a. Change Attributes 5. Send Attributes 6. Validation 2 Identity URL https://hans.muster.clavid.com Identity Provider e.g. clavid.com hans.muster.clavid.com
Architecture IPD Authentication
Server
Unique Interface Agnostic
/ Easy SAML
"Le conseil et
l'expertise pour le choix et la mise en oeuvre des technologies innovantes dans la sécurité des systèmes d'information et de l'identité numérique"
Anúncio