|
The CAT is a software token that runs on Java enabled Cell phones. The CAT is downloaded like a Cell phone Game or Ringtone and becomes part of the Cell phone Menu. The CAT Generates One Time Passwords (OTP) for CAT enabled Web Sites. Each time you login to your CAT enabled Web Servce, you enter a different password, instead of using the same password every time.
top
The CAT is a software token that runs on Java enabled Cell phones. The CAT is downloaded like a Cell phone Game or Ringtone and becomes part of the Cell phone Menu. The CAT Generates One Time Passwords (OTP) for CAT enabled Web Sites. Each time you login to your CAT eabled Web Servce, you enter a different password, instead of using the same password every time.
top
The CAT MS is the software that runs on the Web Server of the Service provider - on the Bank Server or the eCommerce provider server. The CAT MS manages the registered customers and also verified the ID and One Time Password.
top
The primary administrator of CAT MS is "root". This username is defined during the installation and the password is set by the Administrator. Details in CAT Authentication Server Administrator User Guide. Only if other registered and enabled user is defined as CAT Admin he is allowed to access the CAT Management System. All other registered (and enabled) users are authenticated by the system but they have no rights to access Management System.
top
The end user or customer does not pay. The CAT is free for the customer. The Web Server owner pays for the CAT Management System.
top
Yes. The CAT is available for Internet and Intranet. By supporting Radius protocol for Authentication Queiries, the CAT is able to connect to most Intranet security features.
top
The CAT was specialy designed to support Web Sites. Since there is no hardware token involved, it is the most easy solution to deploy. Each new customer that wants the TFA OTP security level, just downloads the CAT to their Cell phone and can start using it.
top
Very simple. There is an open API to include the CAT in Active Pages. The CAT comes with ASP templates for Login frame and Register Frame.
top
eAuthentication is a service. The service provides real time Authentication of ID and OTP for web sites that do not want to install the CAT. This would be intended for businesses that do not own their web site server. The service is similar to Credit Card verification in eCommerce sites. The verification is usualy done by a third party like PayPal, using a simple API.
top
eAuthentication monthly payments are based on the number of Authentication queries coming from your web site during the month. Contact us for further information.
top
Simple: - It is unsafe. It is free text exposed to all. - It is un reliable. No guarantee that you'll get the message. - Low quality. Are you sure you'll have communication when you need the SMS password ? - It costs a lot... just think of the number of customers you'll need to SMS.
top
The Cell phone Authentication Token – CAT is software token. The CAT has several versions for different OS and devices. The most common environment is Cell phone device that can run J2ME and supports CLDC and MIDP. You can find lists of supported devices.
To receive a more specific answer, contact us and send the exact information about your device.
top
To provide maximum security the Cell phone Authentication Token software uses several algorithms. To generate the OTP, the CAT is utilizing a combination of standards of the industry public algorithms. For example see Secure Hash Algorithm (SHA-1) and RC4 pages.
top
It's important to remember biometrics devices aren't replacements for passwords. The point of biometrics is to be part of a two-factor authentication system. Two-factor systems are generally stronger because they require two layers of authentication, while a user ID and password combination alone, or a biometrics device by itself only provides one layer of protection. It's best to add biometrics to augment a user ID and password set up, rather than deploy it as a standalone, because it's only a marginally better authentication mechanism by itself.
top
|