by Arif Bozkurt, APIIDA AG
Due to increasing security requirements, using only the user name-password-combination is insufficient for many companies. Therefor many companies rely on two-factor-authentication.
This means that two factors – which are different and independent from each other – are used to verify identities. Possible factors could be:
• Something the user owns (possession)
• Something, the user knows (knowledge)
• A characteristic feature (biometric)
The smartcard based authentication is the most common method since it is considered as very safe thanks to the two-factor authentication. Nevertheless, it is not the most comfortable and cost-effective solution. Not every laptop has a card reader included which forces companies to buy external card readers. Due to missing USB ports this option is not feasible in combination with smartphones and tablets.
Moreover, the company’s security can be at risk when employees leave their smartcard in the reader, so the two-factor-authentication is not valid anymore. If somehow third parties find out the password they have access to the computer and all intern systems connected with it.
A comfortable alternative which does not depend on physical authenticators but provides the same level of security as the smartcard is the authentication via smartphone. The only requirement for that option is that the smartphone is integrated in the existing certificate / PKI infrastructure.
This option is also very user friendly, because most of them already use a smart device on a regular basis. Initial solutions, such as our product APIIDA Mobile Authentication, which uses the eSIM (specially secured storage area) of a smartphone for the storage of a user certificate, offer such an alternative to the smart card. By storing the user certificate on the eSIM, the certificate is secured in a protected storage area via encrypted channels. This makes APIIDA Mobile Authentication a comfortable, secure and cost-effective alternative to smartcards.
Maybe one day solutions like that will replace smartcards completely.
AMA ist so leicht bedienbar, dass Sie innerhalb weniger Minuten die Einrichtung mit nur wenigen Klicks abschließen können. Die 2 faktorbasierte Anmeldung erfolgt mithilfe des Smartphones innerhalb von Sekunden.
<script>(function(t,e,s,n){var o,a,c;t.SMCX=t.SMCX||[],e.getElementById(n)||(o=e.getElementsByTagName(s),a=o[o.length-1],c=e.createElement(s),c.type=”text/javascript”,c.async=!0,c.id=n,c.src=[“https:”===location.protocol?”https://”:”http://”,”widget.surveymonkey.com/collect/website/js/tRaiETqnLgj758hTBazgd54_2Bs_2F1hO_2BSEM61LjHc_2FumOgop_2F_2FzoNypuJbSiCJD_2FTz.js”].join(“”),a.parentNode.insertBefore(c,a))})(window,document,”script”,”smcx-sdk”);</script><a style=”font: 12px Helvetica, sans-serif; color: #999; text-decoration: none;” href=”https://de.surveymonkey.com”> Erstellen Sie Ihre eigene Umfrage zu Nutzerfeedback. </a>
APIIDA Mobile Authentication ist zu 100% „MADE IN GERMANY“ und wird komplett an unserem Standort in Groß-Bieberau in Deutschland entwickelt, programmiert und optimiert. Die kompletten Prozesse und Informationen kommen aus unserem Hause.
Wir als APIIDA AG haben uns bewusst zum Standort Groß-Bieberau am nördlichen Rand des Odenwaldes entschieden und möchten in dieser Region wachsen. Unser Team arbeitet hier täglich daran, die bestmögliche Lösung für Ihre jeweiligen Aufgabenstellungen anbieten zu können.
APIIDA Mobile Authentication is 100% „MADE IN GERMANY“ and completely developed, programmed and optimized at our location in Groß-Bieberau, Germany. The whole processes and information are from our company.
We have decided to the location Groß-Bieberau on the northern edge of the Odenwald and would like to grow in this region. Our team works daily to provide the best possible solution for your specific tasks.