plug´n´trust ©

As the other charismathics products, the plug´n´trust © is an easy to use, flexible and inexpensive product to fit your demands for all identity management purposes, such as certificate management and user authentication for various demands and applications. Never before has it been so easy to integrating a full identity management system into an existing infrastructure.
PKI appliance and token management system as only one device
The plug´n´trust © is able to generate digital certificates in its function as certificate authority or imports and administers externally generated certificates. These certificates can be issued for various user purposes and application areas. These certificates and the certificate revocation list (CRL) can be provided as part of a PKI-Infrastructure via LDAP (e.g. for e-mail clients). In order to meet the highest security requirements the certificates can be safely isolated on a smart card or a USB token. A PIN is always required for encryption or authentication. Only the owner of the token may then authenticate, encrypt or sign documents by a so called two-factor-authentication.
plug´n´trust © allows you to directly generate certificates into the Windows certificate administration and therefore works together with all hardware certificate stores supporting the Microsoft standard interfaces. Additionally, plug´n´trust © provides a secure user authentication for Firewalls, VPN-Server, Remote Access Router, Unix-/ Windows-Server or other components. All users are centrally stored in a LDAP-directory to which the IT-components have access with diverse authentication methods. Among others, the RADIUS server supports authentication, server storage and retrieval of certificates via LDAP.
A PKI appliance for all directory services
With plug´n´trust ©, the personalization and enrolment of a smart card or USB token may be handled through a web browser on any given PC connected to the internet. To simplify the procedure, the end user may generate the certificates (or initialise the optional OTP generator) easily guided step by step. The web front-end can be individually altered by the administrator, so it allows the end user to only access the required functions. The installation of all required smart card or token drivers may also be conducted via web interface.
The configuration and administration of the appliance can be done from any workplace with a web browser through an HTTPS connection. A finely subdivided user rights management permits administrative tasks to be delegated, without allowing the user more rights than necessary for their function. All appliances can be centrally and comfortably configured from a master appliance.
Features and Benefits
-
issuing of own certificates and administration of externally generated certificates
-
generation, administration and storage and retrieval of certificates with LDAP
-
generation of software-certificates
-
storage of certificates on Smartcards or USB-Token
-
generation of certificates directly on Smartcard or USB-Token
-
generation of certificates directly into Windows certificate management
-
easy to use and customizable web front-end for certificate enrolment
-
authentication through certificate, LDAP bind and RADIUS protocol
-
administration of static passwords
-
plugs into any existing directory service
-
finely subdivided user rights management
-
load sharing
-
optional: high avalability module and one-time-password (OTP) module

© Copyright Charismathics GmbH, 2004-2010 |