Aladdin Partner Newsletter
March 2007
SOLUTION PARTNER NEWS
A GLOBAL RESOURCE FOR ALADDIN SOLUTION PARTNERS
 
News You Can Use

PRODUCT NEWS



New eToken PASS One-Time Password Device eToken Pass

eToken PASS One-Time Password (OTP) authentication device is the latest addition to the eToken device family. eToken PASS is scheduled for general availability in June, with beta versions slated for March 2007.

Aladdin, the leading provider of USB-based strong authentication solutions, extends its broad, existing authentication device offering for the enterprise market by offering eToken PASS, a complementary OTP device that provides a lower TCO by enabling them to deploy any mix of devices that best meet their users' specific needs.

eToken PASS is fully integrated with the eToken offering, supplementing Aladdin's core USB-based authentication devices. With the introduction of eToken PASS, customers will soon be able to choose between smart card-based authentication devices in both USB and card form factors (eToken PRO), hybrid USB and OTP tokens (eToken NG-OTP), USB authentication tokens with flash memory (eToken NG-FLASH) and OTP only devices (eToken PASS) for each one of their users, including employees, customers or partners.

Fully manageable through Aladdin's Token Management System (TMS) and supported by the eToken OTP authentication solution, eToken PASS provides a strong, secure access solution for users who do not require PKI functionality. eToken PASS is an event-based OTP token, fully compliant with the OATH industry standard.

eToken Token Management System (TMS) 2.0 Beta Release

What is eToken TMS?

The Token Management System (TMS) is a robust full life-cycle management system of the eToken solution within an organization.

Aladdin TMS provides a unique solution for one of the main challenges in managing security in an enterprise. TMS connects the users, their security devices, organizational rules, and the associated security applications in a single automated and fully configurable system. TMS removes the barriers to the implementation of security services - in particular those that rely on PKI technology.

TMS provides powerful tools so that you can cost-effectively and conveniently handle all aspects of token life cycle management. TMS capabilities include token deployment and revocation; web-based user self-service token enrolment and password reset; automatic backup and restore of user credentials; handling of lost and damaged tokens, and much more. In addition, TMS provides comprehensive auditing and reporting capabilities, with superb auditing tools, built-in reports and support for external reporting tools.

TMS is built on an open, standards-based architecture, providing configurable connectors for integrating with a wide variety of security applications. Recognizing the inherent complexity and the needs facing network and IT managers charged with managing user and security services, Aladdin developed its TMS based on the proven Microsoft Active Directory framework. TMS can also be operated in a stand-alone mode, allowing the organization to use any standard user management system.

Key Features

Token, user and security solutions management ? TMS enables full enterprise-wide deployment and life- cycle management of all eToken devices, users, and their related security solutions.

New! Enhanced support for managed services providers ? addressing both the security and usability requirements of managed services providers by offering role-based administration capabilities; multi-domain management via a single web-based interface; and the ability to encrypt each domain?s data using a separate encryption key.

New! Web-based user self-service management tools ? for easy administration and reduction in help-desk calls.

New! Full auditing and reporting capabilities ? with superb auditing tools, built-in reports and support for external reporting tools.

New! Easy installation ? with a simple wizard-based installation.

New! Handling of lost tokens ? users can download or activate eToken Virtual as a temporal replacement to a lost or damaged token, using a self-service website or a helpdesk call.

Seamless integration with Microsoft Active Directory ? making eToken device management identical to user management within Active Directory. AD is a leading industry standard, recognized for its scalability, reliability, and high availability.

TMS Connector SDK - for integration and management of third-party security applications


^Top

eToken PKI Client 4.0 GA Release

What is the eToken PKI Client?

The eToken PKI Client is middleware software that enables the eToken USB operation and the implementation of eToken PKI solutions. It enables the integration of eToken with security applications, and is the basis for the wide variety of eToken security solutions offered by both Aladdin and Aladdin?s solution partners. eToken PKI solutions include certificate-based strong two-factor authentication, encryption, and digital signing. PKI keys and digital certificates can be securely generated, stored and used on-board the smart-card-based eToken device. Generic integration with both the Microsoft CAPI and PKCS#11 security interfaces enables interoperability with a variety of security applications such as web access, VPN access, network logon, PC and laptop protection, and secure e-mail.

The eToken PKI Client supports Windows, Linux, and Macintosh operating systems, providing unparalleled support for organizations with heterogeneous multi-platform environments.

Key Features

New! Support for Windows Vista ? in addition to supporting Windows 2000, 2003, and XP.

New! Improved token password quality check feature ? Enhanced tool for determining eToken password policy and strength requirements.

New! Token password quality settings stored on the token ? eToken password policy and strength requirements are stored on the token itself, increasing security and ensuring that the token password strength requirements are properly set for each user.

New! Infrastructure for exception handling ? with the PKI Client, users get the required infrastructure for eToken Virtual, the temporary software-based token, which allows handling employee-on-the-road lost token scenarios. Also provided is the capability of users to unlock their token.

New! Localization and multilingual support ? Infrastructure for supporting any language is available (please contact eToken Technical Support team for further details).

New! One-factor authentication ? Organizations may initialize an eToken device to enable authentication using only the device itself, without a password. This enhances eToken usability but lowers security.

RSA 2048-bit key generation and storage ? RSA keys up to 2048 bit can be securely generated and stored on-board the smart card chip.

Root CA certificate storage capability ? Supports storing of both user and root CA certificates (certificate chain) on the eToken, providing increased mobility.

Administrator password support ? Enables creation and modification of eToken administrator password, for advanced eToken behavior control and unlocking of tokens.

Digital certificate importing feature ?Enables importing of certificates and PKI keys from computer to eToken, either from a .CER or .PFX file (PKCS #12 format) or from the local store.

Secondary password support for private key access ? Enables stronger protection of PKI private keys.

eToken Properties advanced features ? Includes choosing certificates for particular tasks, power management, support for eToken Virtual, and more.

Infrastructure for token unlocking with challenge-response mechanism ? Enables unlocking of a locked token without revealing the user password to the administrator.

Adjusts to computer?s standby behavior ? Requires authentication to the eToken after the computer is powered up from standby or hibernation.

Web-based enrollment capabilities ? the PKI Client can be automatically installed from a web page (please contact eToken Technical Support team for further details).


^Top

eToken PKI Client 3.65 for Linux GA Release

What is eToken PKI Client for Linux?

The eToken Middleware for Linux provides support for secure token-based authentication and PKI solutions within the Linux environment. It enables the usage of eToken for a number of security applications on a number of Linux distributions. Using the Linux Middleware you can execute various cryptographic operations which enable certificate based access to secure Web sites, protect your email applications, and access VPN protected sites, using the unique cryptographic ability of the eToken.

Key Features

New! Supporting all eToken devices - including CardOS 4.2B based devices and eToken NG-FLASH.

Key generation on secure smartcard device ? PKI keys are securely generated onboard the token smartcard chip. The user?s private keys never leave the token, ensuring the highest level of security.

Secure storage of PKI keys and digital certificates ? user personal certificates are safely stored on a secure smartcard device.

Support for security applications:

  • Importing digital certificates to the eToken
  • Email signing and encryption using Mozilla and Firefox
  • SSL v.3 secure authentication
  • Certificate based VPN authentication
  • Thin client authentication

Supported Linux OS Versions

  • Fedora Core 4.0 / 5.0
  • Suse 9.3 / Linux Enterprise 10
  • Red Hat Enterprise 4.0 / 4 AS 3

Supported Browsers

  • Netscape
  • Mozilla Firefox


^Top

eToken PKI Client 3.65 for Mac GA Release

What is eToken PKI Client for Macintosh?

The eToken Middleware for Mac provides unparalleled support for secure token-based authentication and PKI solutions within the Mac environment. It enables the usage of eToken for a variety of security applications on Mac systems. With eToken PKI Client for Mac any Mac Keychain or PKCS#11-enabled application can utilize the eToken PKI capabilities.

  • The following security functions and applications are enabled with eToken:
  • Importing digital certificates to the eToken
  • Email signing and encryption over Mozilla Thunderbird
  • SSL v3 secure authentication
  • 3rd party applications that use Mac Keychain or PKCS#11

Key Features

New! Support for PowerPC and Mac Intel based machines ? users can use the smartcard-based solution from any Mac machine

New! Support for PKCS#11 and Mac Keychain ? eToken supports Mac Keychain and PKCS#11 enabled applications.

New! Support for Smartcard Login ? eToken supports logging in using a Smartcard.

New! Additional operating systems supported - The eToken PKI Client for Mac now supports the following operating systems:

  • PowerPC - Mac OS X 10.3/10.4
  • Intel ? Mac OS X 10.4.7

New! Support for all eToken devices - including CardOS 4.2B based devices and NG-FLASH.

Supported Browsers and Applications ?

  • Mozilla
  • Firefox
  • Thunderbird
  • Netscape


^Top

eToken Web Sign On (WSO) 1.5 Release

What is eToken Web Sign-On (WSO)?

eToken WSO enables easy, convenient and secure storage and management of all of your web logon and access credentials. Your personal web form credentials can be securely saved on the eToken smartcard and accessed only by you. You no longer need to memorize all your web account passwords and other credentials; all you need to do is to connect your eToken to the computer and enter your eToken password.

Key Features

New! The new WSO 1.5 includes support for Windows Vista (in addition to already supported Operating Systems)





eSafe Web Threat Analyzer (WTA)

wta reports

eSafe Web Threat Analyzer is a dedicated security appliance designed to provide Aladdin?s global network of channel partners with a simple, fast tool for evaluating and reporting customers? existing Web vulnerabilities through a fast, transparent audit.

Current security solutions only alert organizations to intrusions they were able to intercept. Conducting a straightforward, detailed threat audit, the Aladdin eSafe WTA content security appliance fits transparently at the network entrance ? it does not require any changes to the network or interfere with network traffic -- and collects information on Web threats that pass through an organization?s current defenses. It then provides detailed reports that identify threats hidden from conventional firewalls, intrusion detection/prevention systems, URL filters, and gateway antivirus, utilizing its unique ability to perform fast, deep inspection of all Web activity.

Aladdin eSafe WTA is able to inspect Web traffic for any size organization without interruption, providing a detailed set of 20 different activity reports and an audit summary reviewing findings that highlight important threats and problematic activities. The new audit tool monitors all HTTP traffic, including all Web browsing, Web site access by categories, inbound and outbound spyware communications, and unauthorized Internet-enabled applications.

Aladdin?s channel partners, armed with the new eSafe WTA, are able to easily illustrate the power of eSafe?s integrated, gateway-based anti-virus, spyware control, Web browsing security and application filtering technology:

  • The only solution offering real-time deep content inspection in all Web / "Web 2.0" pages
  • Identifies known and unknown spyware, Trojans, zombies, viruses, worms, phishing, Web 2.0 / Web mail exploits
  • Monitors and enforces Web site access and the usage of various unauthorized applications in 19 categories, including IM, P2P, tunneling, anonymizers, remote PC, etc.
  • Scalable with no upper limit - starting at 5 million inspected Web pages per hour without latency
  • Transparent ? no impact on user experience or on the network
For additional information on Aladdin eSafe WTA, visit www.Aladdin.com/WTA.


^Top

New eSafe Reporter

eSafe Report

This enterprise-class reporting tool will include over 30 canned reports that can provide in-depth details on all the traffic inspected by eSafe.

eSafe Reporter enables either generation of reports in real-time, or easy scheduling of their generation and emailing via the eSafe Reporting Center. Its flexible data manipulation features enable the performance of historical trending and forensic analysis by tracing events in more detail. The Reporter is based on IIS Server and allows access from anywhere on the LAN.

eSafe Reporter includes:

  • eSafe Reporter Collection Agent: imports sessions.log files from all eSafe servers, exports the data to the SQL database.
  • eSafe Reporter Configurator: configures eSafe Reporter to scan for the sessions.log files, manage the database (aggregation and purge), launch daily, weekly or monthly reports and schedule the generation of dashboard reports.
  • eSafe Reporting Center: enables the generation of more than thirty predefined real-time or scheduled statistical reports from the data exported into the database by the eSafe Reporter Import Agent. The eSafe Reporter Scheduler allows users to schedule the running and emailing of individual reports or daily, weekly, or monthly reports.

^Top

eSafe Hellgate Appliance

eSafe Hellgate Appliance

HellGate appliance is a gateway-based anti-virus, spyware control, Web browsing security and application filtering solution specifically designed for the SMB market. Now, SMB business clients with 50 to 500 users can benefit from eSafe content security on their own eSafe appliance ? technology previously only available to larger enterprise customers.

Unveiled at the RSA Conference 2007, the Aladdin eSafe HellGate appliance equips small businesses with the same award-winning eSafe Web security technology relied upon by large organizations. Simply priced and packaged to provide maximum simplicity and cost-effectiveness, the eSafe HellGate Appliance stands as Aladdin's well-positioned entry into the SMB market - a market that values straightforward, uncomplicated Web security at an attractive price. In December 2006, IDC released its Worldwide IT Security Software, Hardware, and Services 2006-2010 Forecast (IDC #204736) titled, "The Big Picture," explaining, "Worldwide security hardware revenue will increase from $6 billion in 2005 to $13.6 billion in 2010, representing an 18 percent CAGR. Threat management appliances and secure content management appliances offer the greatest opportunity for growth and revenue."

Based largely on the same technology provided to organizations with tens of thousands of employees, the Aladdin eSafe HellGate appliance packs the same power into a quickly deployed solution for smaller organizations. It stands as a transparent shield from threats while also enhancing employee productivity ? a significant benefit easily noticeable in smaller organizations. The appliance supplies secure Web surfing through a security gateway with powerful anti-spyware and unauthorized application filtering; advanced spam management; and URL filtering with transparent inspection of HTTP, FTP, SMTP and POP3.

The eSafe HellGate appliance contains a front LCD screen for quick and easy setup; comes preconfigured with best practices security configurations; ensures built-in load-balancing and fail-over with a new eSafe Cluster mode; and provides full flexibility to customize as an organization's needs change. Part of the family of eSafe products, the eSafe HellGate appliances possess the comprehensive, proactive security features on which eSafe has established its reputation as a market leading solution. These include:

  • Adaptive content security
  • Multi-layer content inspection
  • Fully addresses "Layer 8," the new focus of exploits and web attacks
  • Readiness for Web 2.0 threats
  • Ideal for targeted attacks
  • Blocking of more than 95 percent of new threats


^Top

Solution Partners

PARTNER NEWS


New Solution Partners

New Partners ? Criptolex SL Criptolex

Review full eToken and eSafe partner list


^Top

SOLUTION PARTNER PROGRAM


During the coming year, Aladdin would like to invest sales and marketing funds to support and promote its partners. We welcome partner suggestions for go-to-market activities with Aladdin. Please contact Amit Wohl, Aladdin Solution Partner Program Manager directly at +972 3 978 1335 to discuss go-to-market opportunities with Aladdin.


^Top

Sales and Marketing tools

UPCOMING EVENTS



March 15–21 CeBIT 2007
Hannover, Germany
Hall 7 booth B30
March 21–22 Infosecurity.be
Brussels, Belgium
Booth B042
March 27–29 SITI/ asLAN 2007
Madrid, Spain
Booth 56

Full list of events
 


Contact the Solution Partner Program

PARTNER PROGRAM CONTACT
Amit Wohl
Partner Program Manager
Aladdin Knowledge Systems
35 Efal St., Kiryat Arye
P.O. Box 3968
Petach Tikva, Israel 49511
T: +972-(0)3-978-1335
F: +972-(0)3-978-1010
M: +972-(0)54-560-4810


Past issues

 
Aladdin.com
© Aladdin Knowledge Systems, Inc. 1985-2007. All rights reserved.