

Swivel PINsafe Mobile Based Authentication offers SMS and Java Midlet applications to smartphones.
The mobile phone is already a business critical tool, and using this device as a basis for authentications produces a solution with low incremental management costs as the device is already being managed. Also the mobile phone is a personal device, the loss or failure of which is addressed immediately by the user.
X VirusnX SpywarenX Spamn5 Web/IMnX IPS/Patch Mgmtn5 Data/System Mgmtn
The user receives a randomly generated security string via SMS. They then use their PIN to extract their one-time code (OTC). This becomes their authentication credential.
This PINsafe interface provides true two-factor authentication as the security string can only be accessed by the user's registered mobile phone and has the additional security that the two key elements of the authentication process are not transmitted on the same network.
The SMS option can be implemented in a number of modes.
On-Demand - At the time of authentication the user requests a security string to be sent to them, usually via a button on an authentication form. The security string is only valid for a finite period
Automatic - The user is sent a new security string after every authentication attempt, thus ensuring that the user always has the next security string in their inbox ready to use for their next authentication.
Multi-String - This is a variation of the Automatic mode, where a user is sent a number of security strings in each SMS message; the user uses each string in turn (from Version 3.6 the user will be told which one to use). When they have used the last one a new one is sent to them. This has the benefit of reducing the SMS costs and also means the user can have a number of security strings available to them even when they are out of GPRS coverage.
A simple Java (MIDP2.0) application that can download and store 99 security strings from the PINsafe server. This means authentication is possible even during prolonged time outside mobile network coverage. The user enters their PIN into the phone keypad and the midlet extracts their OTC for them. The user can download a new batch of 99 strings at any time.
© Copyright Castleforce 2007-2012. Web design by Theme Group