User Account

File Information

Now you can download the following file from Feitian Global Web Site:


 

As more and more businesses are getting online, Information security is becoming more and more important and authentication security is one of the most important security tasks. Fixed password, as a common way to authenticate an end-user, has obvious shortcomings such as hard-to-maintain, low security, low anti-attack ability etc. Dynamic password technology, to some extent, can improve security, convenience and anti-attack ability of a system. However, most systems only use dynamic passwords to simply replace fixed passwords to authenticate an end-user before he/she logs in, which becomes a weak point in security as system authentication is not provided to the end-user, and online transactions are not signed. In this case, hackers can easily adopt techniques such as phishing attack and man-in-the-middle attack s to cheat end-users of personal sensitive information.

This document is intended to provide detailed descriptions on the high security authentication schemes that are provided by the OTP Server Authentication System, which adopts the technologies of double-way authentication and transaction signing. The schemes provided by OTP Server Authentication Systems do not only help the application system to authenticate end-users, but also help endâ??users to authenticate the system, meanwhile supporting digitally signing critical transactions between the two. Thus, endâ??users are protected from logging into fake systems, receiving man-in-the-middle attacks and losing sensitive data. By adopting the schemes provided by the OTP Server Authentication System, businesses are able to employ higher security systems.

File Name: FOASv3_Authentication_Scheme.pdf
Size: 562.9 KB (576452 Bytes)
Last Update: May 7, 2010.
Operation System: OS Independent