Top Banner
MARET Consulting | 109, chemin du Pont-du-Centenaire | CH 1228 Plan-les-Ouates | Tél +41 22 727 05 57 | Fax +41 22 727 05 50 | www.maret-consulting.ch Conseil en technologies Strong Authentication & OpenID Using YUBICO & Clavid 17-2-2009 Sylvain Maret
12

Strong Authentication OpenID & Yubico

Jun 25, 2015

Download

Technology

Sylvain Maret

This cookbook shows you how to use an YubiKey for Strong authentication with OpenID
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Strong Authentication OpenID & Yubico

MARET Consulting | 109, chemin du Pont-du-Centenaire | CH 1228 Plan-les-Ouates | Tél +41 22 727 05 57 | Fax +41 22 727 05 50 | www.maret-consulting.ch

Conseil en technologies

Strong Authentication & OpenID

Using YUBICO & Clavid

17-2-2009Sylvain Maret

Page 2: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

Introduction

This cookbook shows you how to use an YubiKey for Strong authentication with OpenID

We will use Clavid as a OpenID provider (IDP) This solution is really easy to implement No need to install software You just an YubiKey from Yubico

Page 3: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

About Yubico

Provide a USB Device for Strong Authentication Use AES Standard No need to install software (driver) Not a expensive solution Provide a One Time Password event based

For more information: http://www.yubico.com

Page 4: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

About Clavid

A Swiss company providing OpenID based on:

Swiss Post Digital Certificate All SSL Client Digital Certificate X509 Yubikey Axsionics And Username & Password (no Strong

Authentication……) And Soon more !

Page 5: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

Let’s define the scenario

Use a Strong Authentication PIN Code and an Yubikey

Use OpenID Clavid.ch http://www.clavid.ch/

Use Plaxo to test this example

Page 6: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

Connect to Plaxo and choose OpenID

Page 7: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

Enter your OpenID Account from Clavid.ch

Page 8: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

You are redirected to Clavid.ch: Your Identity Provider

Page 9: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

Enter you PIN Code and Put your Finger on your Ubikey

Page 10: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

Ok, now you are redirected to Plaxo: That it

Page 11: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

If you want to force Strong Authentication with Yubikey

Page 12: Strong Authentication OpenID & Yubico

Conseil en technologieswww.maret-consulting.ch

"Le conseil et l'expertise pour le choix et la mise

en oeuvre des technologies innovantes dans la sécurité

des systèmes d'information et de l'identité numérique"