SlideShare a Scribd company logo
1 of 17
t w o -f a c t o r a u t h e n t ic a t io n w it h
y u b ik e y
     H elmuth N euberger , hn@zarafaserver.de



                                                2 0 12 j u n e 2 1
c o nte nt

        p r o b le m a n d
        s o lu t io n
        y u b ik e y c lo u d
           – la s t p a s s
           – z a ra fa
        …. .
        y u b ik e y in t e r n a l
        ( 4 z a ra fa )

        y u b ik e y
        t e c h n o lo g y

        d o 's a n d d o n t's
        de mo
        c o s ts
p r o b le m a n d s o lu t io n
          To many passwords
          → easy passwords used many times
          → hacks like Sony , Nortel, linkedin ….

          New ways of authentication

          Secure passwords ( thRpf-X%$§1o32 )
          One time passwords
          Secure password managers / repositories
          → new keys → yubikey !
y u b ik e y c lo u d
     small USB device
     emulate USB keyboard
     secure storage of 2 keys
     → one time passwords @ yubico cloud
     → one time passwords @ yourserver
     → up to 64 character static password

     Why two-factor-auth. ?

     → normal password + onetimepassword
h o w -t o u s e t h e k e y ?
          validation service

          → yubikey cloud

          → lasstpass

          → Zarafa

          Symantec VIP, Google Apps, OneLogin …....
la s t p a s s
 Secure cloud storage of ALL your passwords

 → only remember one “strong” password

 → make it more secure with yubikey
z a r a fa




  YubiCloud with Zarafa WebAccess
y u b ik e y t e c h n o lo g y
y u b ik e y t e c h n o lo g y
y u b ik e y t e c h n o lo g y




                                      NFR


R F ID

                                           na n
                                            o
y u b ik e y t e c h n o lo g y




                                      NFR


R F ID

                                           na n
                                            o
d o ´ s a nd d o n t's

     Allways use “backup” keys !

     Make pictures of all keys ( serial ) !

     Use the YubiRevoke service !

     Never leave yubikey in device !

     Never use yubikey as a one-factor-auth.

     Never store key info on filesystem !
       → use YubikeyHSM
Yu b i k e y H S M
c o s ts

1 pcs → 25 $               YubiCloud → free

50 pcs → 15 $ each         YubiRevoke → free
de mo
Th a n k yo u !
Zarafa SummerCamp 2012 - Yubikey integration

More Related Content

Viewers also liked

Ritesh_Resume_SAP_Basis_Consultant
Ritesh_Resume_SAP_Basis_ConsultantRitesh_Resume_SAP_Basis_Consultant
Ritesh_Resume_SAP_Basis_Consultant
ritesh paul garg
 

Viewers also liked (14)

Film Faced Plywood Catalogue
Film Faced Plywood CatalogueFilm Faced Plywood Catalogue
Film Faced Plywood Catalogue
 
Some words and their antonyms
Some words and their antonymsSome words and their antonyms
Some words and their antonyms
 
Ritesh_Resume_SAP_Basis_Consultant
Ritesh_Resume_SAP_Basis_ConsultantRitesh_Resume_SAP_Basis_Consultant
Ritesh_Resume_SAP_Basis_Consultant
 
умови всеукраїнського екологічного конкурсу
умови всеукраїнського екологічного конкурсуумови всеукраїнського екологічного конкурсу
умови всеукраїнського екологічного конкурсу
 
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»
 
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑ
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑ
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑ
 
Αντιπολεμικά
ΑντιπολεμικάΑντιπολεμικά
Αντιπολεμικά
 
οι πιτσιρικοι
οι πιτσιρικοιοι πιτσιρικοι
οι πιτσιρικοι
 
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣ
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣ
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣ
 
Ο Σασμός
Ο ΣασμόςΟ Σασμός
Ο Σασμός
 
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...
 
Distributed DBMS - Unit 6 - Query Processing
Distributed DBMS - Unit 6 - Query ProcessingDistributed DBMS - Unit 6 - Query Processing
Distributed DBMS - Unit 6 - Query Processing
 
ALEXIS JAVIER SANCHEZ
ALEXIS JAVIER SANCHEZALEXIS JAVIER SANCHEZ
ALEXIS JAVIER SANCHEZ
 
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...
 

More from Zarafa

Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin developmentZarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa
 
Zarafa SummerCamp 2012 - Android Workshop
Zarafa SummerCamp 2012 - Android WorkshopZarafa SummerCamp 2012 - Android Workshop
Zarafa SummerCamp 2012 - Android Workshop
Zarafa
 
Zarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa SummerCamp 2012 - Steve Hardy Friday KeynoteZarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa
 
Zarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa SummerCamp 2012 - Project approach when migrating to ZarafaZarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa
 
Zarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa SummerCamp 2012 - Keynote Peter GantenZarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa
 
Zarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa SummerCamp 2012 - Exchange Web Services, technical informationZarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa
 
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa
 
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdfZararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zarafa
 
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-pushZararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zarafa
 
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zarafa
 
Zararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zararfa SummerCamp 2012 - Community update and Zarafa Development ProcessZararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zarafa
 
Zararfa summer camp 2012 interesting tips & tricks when migrating to zarafa
Zararfa summer camp 2012   interesting tips & tricks when migrating to zarafaZararfa summer camp 2012   interesting tips & tricks when migrating to zarafa
Zararfa summer camp 2012 interesting tips & tricks when migrating to zarafa
Zarafa
 
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovationsZarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa
 
Zarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa SummerCamp 2012 - Deploying Zarafa ArchiverZarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa
 
Zarafa SummerCamp 2012 - Open Generation Gap
Zarafa SummerCamp 2012 - Open Generation GapZarafa SummerCamp 2012 - Open Generation Gap
Zarafa SummerCamp 2012 - Open Generation Gap
Zarafa
 
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxyZarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa
 
Zarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa SummerCamp 2012 - Zarafa 7.1 featuresZarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa
 
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administratorsZarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa
 
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zarafa
 
Zarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa SummerCamp 2012 - Exchange Web Services on ZarafaZarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa
 

More from Zarafa (20)

Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin developmentZarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
 
Zarafa SummerCamp 2012 - Android Workshop
Zarafa SummerCamp 2012 - Android WorkshopZarafa SummerCamp 2012 - Android Workshop
Zarafa SummerCamp 2012 - Android Workshop
 
Zarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa SummerCamp 2012 - Steve Hardy Friday KeynoteZarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa SummerCamp 2012 - Steve Hardy Friday Keynote
 
Zarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa SummerCamp 2012 - Project approach when migrating to ZarafaZarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa SummerCamp 2012 - Project approach when migrating to Zarafa
 
Zarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa SummerCamp 2012 - Keynote Peter GantenZarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa SummerCamp 2012 - Keynote Peter Ganten
 
Zarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa SummerCamp 2012 - Exchange Web Services, technical informationZarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa SummerCamp 2012 - Exchange Web Services, technical information
 
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
 
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdfZararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
 
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-pushZararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
 
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
 
Zararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zararfa SummerCamp 2012 - Community update and Zarafa Development ProcessZararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zararfa SummerCamp 2012 - Community update and Zarafa Development Process
 
Zararfa summer camp 2012 interesting tips & tricks when migrating to zarafa
Zararfa summer camp 2012   interesting tips & tricks when migrating to zarafaZararfa summer camp 2012   interesting tips & tricks when migrating to zarafa
Zararfa summer camp 2012 interesting tips & tricks when migrating to zarafa
 
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovationsZarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
 
Zarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa SummerCamp 2012 - Deploying Zarafa ArchiverZarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa SummerCamp 2012 - Deploying Zarafa Archiver
 
Zarafa SummerCamp 2012 - Open Generation Gap
Zarafa SummerCamp 2012 - Open Generation GapZarafa SummerCamp 2012 - Open Generation Gap
Zarafa SummerCamp 2012 - Open Generation Gap
 
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxyZarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
 
Zarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa SummerCamp 2012 - Zarafa 7.1 featuresZarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa SummerCamp 2012 - Zarafa 7.1 features
 
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administratorsZarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
 
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
 
Zarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa SummerCamp 2012 - Exchange Web Services on ZarafaZarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa SummerCamp 2012 - Exchange Web Services on Zarafa
 

Recently uploaded

+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 

Recently uploaded (20)

TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Tech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfTech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdf
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your Business
 

Zarafa SummerCamp 2012 - Yubikey integration

  • 1. t w o -f a c t o r a u t h e n t ic a t io n w it h y u b ik e y H elmuth N euberger , hn@zarafaserver.de 2 0 12 j u n e 2 1
  • 2. c o nte nt p r o b le m a n d s o lu t io n y u b ik e y c lo u d – la s t p a s s – z a ra fa …. . y u b ik e y in t e r n a l ( 4 z a ra fa ) y u b ik e y t e c h n o lo g y d o 's a n d d o n t's de mo c o s ts
  • 3. p r o b le m a n d s o lu t io n To many passwords → easy passwords used many times → hacks like Sony , Nortel, linkedin …. New ways of authentication Secure passwords ( thRpf-X%$§1o32 ) One time passwords Secure password managers / repositories → new keys → yubikey !
  • 4. y u b ik e y c lo u d small USB device emulate USB keyboard secure storage of 2 keys → one time passwords @ yubico cloud → one time passwords @ yourserver → up to 64 character static password Why two-factor-auth. ? → normal password + onetimepassword
  • 5. h o w -t o u s e t h e k e y ? validation service → yubikey cloud → lasstpass → Zarafa Symantec VIP, Google Apps, OneLogin …....
  • 6. la s t p a s s Secure cloud storage of ALL your passwords → only remember one “strong” password → make it more secure with yubikey
  • 7. z a r a fa YubiCloud with Zarafa WebAccess
  • 8. y u b ik e y t e c h n o lo g y
  • 9. y u b ik e y t e c h n o lo g y
  • 10. y u b ik e y t e c h n o lo g y NFR R F ID na n o
  • 11. y u b ik e y t e c h n o lo g y NFR R F ID na n o
  • 12. d o ´ s a nd d o n t's Allways use “backup” keys ! Make pictures of all keys ( serial ) ! Use the YubiRevoke service ! Never leave yubikey in device ! Never use yubikey as a one-factor-auth. Never store key info on filesystem ! → use YubikeyHSM
  • 13. Yu b i k e y H S M
  • 14. c o s ts 1 pcs → 25 $ YubiCloud → free 50 pcs → 15 $ each YubiRevoke → free
  • 15. de mo
  • 16. Th a n k yo u !