RSA IT Business Applications Remediation Plan

RSA User Authentication Updates
- Download Central
- SecurCare Online
- RSA Online
User Training
© Copyright 2011 EMC Corporation. All rights reserved.
1
User Authentication Overview
• Migrate from current Authentication Platform
to Authentication Manager
• Introduction to new processes
– User Enrollment and Setting User Profile
– Self Service Console
© Copyright 2011 EMC Corporation. All rights reserved.
2
User Authentication - New Updates
User ID
updated
• User ID information in email
Password
• Set new password during
enrollment
Enrollment
• Enroll into Authentication
Manager
• Setup user profile for RBA
© Copyright 2011 EMC Corporation. All rights reserved.
3
User Authentication Overview
- Risk Based Authentication (RBA)
Assesses risk by evaluating
• Information about the client device
• User behavior
⁻ What are you doing
⁻ When are you doing it
⁻ Where are you doing it from
⁻ Is this expected behavior
If the risk is high, the user is challenged using:
• On Demand Authentication (ODA), or
• Security Questions
© Copyright 2011 EMC Corporation. All rights reserved.
4
User Authentication Overview
- On Demand Authentication (ODA)
• Supplies a token to a user at the time that the
user requires it
• User does not carry a token but receives token
via SMS (text message) to cell phone
© Copyright 2011 EMC Corporation. All rights reserved.
5
User Authentication Overview
• RBA authentication requires user to enroll
and set their profile.
• RSA SecurID Hardware Authenticator (Hard
Token authentication) does not require
user to enroll
© Copyright 2011 EMC Corporation. All rights reserved.
6
User Authentication Overview
Three Simple Steps!
Step1: Enrollment Process
• You receive an enrollment email from RSA
([email protected])
i.
Contains link to Enrollment Portal, User ID
Step 2: Set your Authentication Profile
Step 3: Authenticate and Login!
© Copyright 2011 EMC Corporation. All rights reserved.
7
User Authentication Overview
Three Simple Steps!
Step1: Enrollment Process
• You receive an enrollment email from RSA
([email protected])
•
Contains link to Enrollment Portal, User ID
Step 2: Set your Authentication Profile
Step 3: Authenticate and Login!
© Copyright 2011 EMC Corporation. All rights reserved.
8
Step1: Enrollment Process
Enter User ID
On Submit, User receives an email containing:
• Link to Self Service Console,
• Temporary password
© Copyright 2011 EMC Corporation. All rights reserved.
9
User Authentication Overview
Three Simple Steps!
Step1: Enrollment Process
• You receive an enrollment email from RSA
([email protected])
•
Contains link to Enrollment Portal, User ID
Step 2: Set your Authentication Profile
Step 3: Authenticate and Login!
© Copyright 2011 EMC Corporation. All rights reserved.
10
Step 2: Set up Account Profile
Users set their profile for RBA:
 Set Password
 Provide cell phone number for On Demand
Authentication (ODA) and set PIN, or set
security questions
 Require ODA/ Security questions at first login
to:
• Download Central
• SecurCare Online
• RSA Online
• Self Service Console
© Copyright 2011 EMC Corporation. All rights reserved.
11
Step 2: Set up Account Profile
Email notification from
[email protected]
containing:
First Name Last Name
• Link to Self Service
Console
• Temporary Password
https://auth.rsasecurity.com/console-selfservice
© Copyright 2011 EMC Corporation. All rights reserved.
12
Step 2: Set up Account Profile
Enter User ID
© Copyright 2011 EMC Corporation. All rights reserved.
13
Step 2: Set up Account Profile
[email protected]
m
Enter Temp
password
© Copyright 2011 EMC Corporation. All rights reserved.
14
Step 2: Set up Account Profile
Reset new password
© Copyright 2011 EMC Corporation. All rights reserved.
15
Step 2: Set up Account Profile
Select either or both Identity
Confirmation Method:
• Security Questions, or
• On Demand
Authentication
© Copyright 2011 EMC Corporation. All rights reserved.
16
Step 2: Set up Account Profile
- Set Security Questions
System displays set of
questions when user
selects Security Questions
as Identity Confirmation
Method
© Copyright 2011 EMC Corporation. All rights reserved.
17
Step 2: Set up Account Profile
- Set ODA Set mobile
number
Set PIN
© Copyright 2011 EMC Corporation. All rights reserved.
18
Step 2: Set up Account Profile
- Self Service Console
Update
Profile
Help link
Update phone
number
Change
password
+1 123-1231234
© Copyright 2011 EMC Corporation. All rights reserved.
19
User Authentication Overview
Three Simple Steps!
Step1: Enrollment Process
• You receive an enrollment email from RSA
([email protected])
•
Contains link to Enrollment Portal, User ID
Step 2: Set your Authentication Profile
Step 3: Authenticate and Login!
© Copyright 2011 EMC Corporation. All rights reserved.
20
Step 3: Authenticate and Login!
Login to Applications (Download Central, SecurCare Online, RSA
Online)
Utilize common login page for each Application
Download Central: https://download.rsasecurity.com
SecurCare Online:
https://knowledge.rsasecurity.com
RSA Online: https://rsao.rsasecurity.com
© Copyright 2011 EMC Corporation. All rights reserved.
21
Step 3: Authenticate and Login!
- Download Central, SecurCare Online, RSA Online
Enter User
Id
Register for RSA SecurCare
Online
Help with RSA SecurCare
Online
Forgot Password/PIN?
Need to Token Authenticate?
Need to Enroll?
Need Assistance?
© Copyright 2011 EMC Corporation. All rights reserved.
22
Step 3: Authenticate and Login!
- Download Central, SecurCare Online, RSA Online
[email protected]
m
© Copyright 2011 EMC Corporation. All rights reserved.
Enter
Password
23
Step 3: Authenticate and Login!
- Download Central, SecurCare Online, RSA Online
Select Identity Confirmation
Method:
• On- Demand Authentication, or
• Security Questions
© Copyright 2011 EMC Corporation. All rights reserved.
24
Step 3: Authenticate and Login!
- On Demand Authentication
[email protected]
m
Enter PIN
© Copyright 2011 EMC Corporation. All rights reserved.
25
Step 3: Authenticate and Login!
- On Demand Authentication
Enter Token code
from text
message on cell
phone
© Copyright 2011 EMC Corporation. All rights reserved.
26
Thank you for using RSA
© Copyright 2011 EMC Corporation. All rights reserved.
27