Deepnet Unified Authentication for Outlook Anywhere.

6
Deepnet Unified Authentication for Outlook Anywhere

Transcript of Deepnet Unified Authentication for Outlook Anywhere.

Page 1: Deepnet Unified Authentication for Outlook Anywhere.

Deepnet Unified Authentication

for

Outlook Anywhere

Page 2: Deepnet Unified Authentication for Outlook Anywhere.

Internet

Outlook ClientRPC over HTTP

Exchange Server

AD

Outlook Anywhere- Logon with a Static Password

Verify: Username/Password

23 Verify:

successful

Logon: Username/Password1

4 Logon: successful

Key Benefits:No need for VPNAnywhere AccessFull Outlook Functions

Key Issues:Weak AuthenticationUnmanaged DevicesInsecure Local Email History

Page 3: Deepnet Unified Authentication for Outlook Anywhere.

Outlook ClientRPC over HTTP

Exchange Server

AD

Outlook Anywhere- Logon with Device Authentication

Verify: UsernamePassword

78 Verify:

successful

9 Logon: successful

Deepnet Outlook

Agent

Deepnet Exchange

Agent

Logon: UsernamePassword

1

Deepnet Authentication

Server

5 Verify:successful

UsernamePassword

6

2

DevicePassGenerating

Device Fingerprint

UsernamePassword +3

4

Users are only allowed to use Outlook Anywhere on registered and trusted PCs or laptops

Page 4: Deepnet Unified Authentication for Outlook Anywhere.

Deepnet DevicePass- Real Device Authentication

Machine Fingerprint=

Chassis S/N Motherboard ID Hard Disk S/N CPU ID BIOS Video Card Sound Card Network Card MAC Address More…

Page 5: Deepnet Unified Authentication for Outlook Anywhere.

Enhanced Polices

To achieve the ultimate security, the company can choose to apply some additional enhanced policies to the users who use the Outlook Anywhere on laptops, such as:-

The machine must have Anti-Virus installed & running! The hard disk must be Full-Disk encrypted!

Page 6: Deepnet Unified Authentication for Outlook Anywhere.

Problems Solved!

Key Issues:Weak AuthenticationUnmanaged DevicesInsecure Local Email History

Deepnet Solutions:Strong, two-factor authenticationManaged and Trusted devices onlyEnforce Full-Disk Encryption policy