Eon RSA SecurID User Manual

RSA SecurID Ready Implementation Guide
Last Modified: May 25, 2006

Partner Information

Product Information
Partner Name Web Site www.etindia.com & www.bankflex.net Product Name
Version & Platform
Product Description
Product Category
Eon Technologies Pvt. Ltd.
Bank-Flex
Bank-Flex Version 1.0 (J2EE) on Windows Server Bank-Flex Version 1.0 (J2EE) on Solaris 9 Bank-Flex comprises of a robust framework called Bank-Flex Platform and
banking Channel solutions. Bank-Flex Platform provides an enterprise solution platform for building end-to-end solutions. Bank-Flex Platform is a set of pre-defined, reusable components and is designed to serve as a base framework and knowledge repository of generic components and services to develop banking/financial software products. This framework lays down the base structure to design and develop front-end and server­side applications.
Bank-Flex Internet Banking, Bank-Flex Mobile Banking and Bank-Flex Teller are the channel solutions that are built over Bank-Flex Platform. e-Commerce / e-Business
1

Solution Summary

The RSA SecurID Authentication feature enhances security by providing two-factor authenticat ion to access banking solutions by its users.
Token-based authentication provides a second layer of system security for Bank-Flex Channe l solutions. RSA SecurID authentication is an optional functionality enabled by the configuration of Bank-Flex Platform with RSA Authentication Manager. RSA SecurID authentication requires users to enter a second, ever-changing password to re-confirm user identity before certain actions. A portable authentication device supplies the dynamic password.
To achieve the highest possible level of additional security, Bank-Flex partners with RSA Security Inc. to provide RSA SecurID authentication at login.
In Bank-Flex, the user is authenticated using the RSA SecurID token (provided the user is enabled for RSA SecurID authentication).
At login, when users enter a PIN and tokencode, which comprises the RSA SecurID passcode, the Bank-Flex sends a request to the system where RSA Authentication Manager is running by invoking the suitable RSA API calls with respect to the request.
Bank-Flex communicates securely with the RSA Authentication Manager to confirm that the RSA SecurID passcode is correct (tokencode values on the device and the server are synchronized).
If the passcode is correct, the user proceeds. If it is not, Bank-Flex blocks the login request.
Partner Integration Overview
Authentication Methods Supported List Library Version Used RSA Authentication Manager Name Locking RSA Authentication Manager Replica Support Secondary RADIUS Server Support
Location of Node Secret on Agent RSA Authentication Agent Host Type
Native RSA SecurID Authentication
5.0.3 for Java Yes Full Replica Support N/A
BEA_HOME\user_projects\bankflex in case of weblogic application server
Net OS
RSA SecurID User Specification
RSA SecurID Protection of Administrative Users RSA Software Token and RSA SecurID 800 Automation Use of Cached Domain Credentials
Designated Users, All Users, Default Method (Bank­Flex Platform can be configured for any of the three)
No No No
2

System Architecture

Product Requirements

Bank-Flex Version 1.0 (J2EE) on Windows Server

Partner Product Requirements: Bank-Flex
CPU Memory Storage
Operating System
Platform Required Patches
Windows 2000 Server Service Pack 4 Windows 2003 Server Service Pack 1
1.80 GHz 2 GB 35 MB free disk space
Additional Software Requirements
Application Additional Patches
Database Server Oracle Version 9.2.0.1.0, DB2 7.2 Browser IE 6.0 and above JRE JDK 1.4.2 Application Server Weblogic 8.1, Websphere 6.1, JBOSS 4.1.2, OC4J 10g Application Clustering requirements Clustering support is available for Weblogic 8.1, Websphere 6.1

Bank-Flex Version 1.0 (J2EE) on Solaris 9

Partner Product Requirements: Bank-Flex
CPU Memory Storage
Operating System
Platform Required Patches
Solaris 9
Additional Software Requirements
Application Version - Additional Patches
Database Server Oracle Version 9.2.0.1.0, DB2 7.2 Browser IE 6.0 and above JRE JDK 1.4.2 Application Server Weblogic 8.1, Websphere 6.1, JBOSS 4.1.2, OC4J 10g Application Clustering requirements Clustering support is available for Weblogic 8.1
1.2 GHz 2 GB 35 MB free disk space
3
Loading...
+ 7 hidden pages