Two Factor Authentication for Salesforce


Published on

This whitepaper details how ArrayShield IDAS Two Factor authentication system can be integrated with

Published in: Technology
  • Be the first to comment

  • Be the first to like this

No Downloads
Total views
On SlideShare
From Embeds
Number of Embeds
Embeds 0
No embeds

No notes for slide

Two Factor Authentication for Salesforce

  1. 1. Solution Brief – 2FA for Salesforce.comSolution Brief – 2FA for Need for Two Factor Authentication for Salesforce application You use Salesforce because you want to take advantage of their capabilities without having to install and maintain the application on-premise. However, you have some concerns about verifying who is accessing your companys confidential data that is stored outside of your IT environment. You are looking for a solution that will provide strong authentication to protect your company and your users from fraud.SolutionArrayShield’s innovative two factor authentication system - IDAS provides a secure access application. By using its innovative pattern based authentication it providesOne-Time-Secret-Code for every transaction.In IDAS, every user is shown with an array on the login screen which is populated with randomcharacters for every transaction. User has to choose a pattern which is a sequence of cells inthe array and should register the same with the system prior accessing. A translucent card isprovided to each user which has a similar structured array with transparent and opaque cellsand some random characters imprinted on the opaque cells. Each card is unique in terms of theposition of the opaque cells and the characters imprinted on them.At the time of accessing application, the user is shown with the randomlypopulated array as a challenge. User will overlap the translucent card on the shown array andwill key in the characters present in the chosen pattern in the same order as a response. Thesecharacters form the One-Time-Secret-Code for the user for that particular transaction. TheArrayShield IDAS server verifies the user credentials by comparing user’s registered pattern andthe pattern values entered by the user. Access is given to the user if the user credentials arevalid. ArrayShield | Page 1
  2. 2. Solution Brief – 2FA for Salesforce.comIntegration FlowThe following diagram shows how Salesforce application can be integrated with ArrayShieldIDAS to enable its secure two factor authentication system. Figure: Integration flow diagram for the Salesforce Application with ArrayShield IDASFeaturesInnovative TechnologyArrayShield IDAS is a patent pending (globally) technology and has won severalawards/recognitions in various forums for its innovative concept.Ease of UseArrayShield IDAS is based on user-intuitive patterns which are easy to remember than complexpasswords than can be easily compromised ArrayShield | Page 2
  3. 3. Solution Brief – 2FA for Salesforce.comInteroperable SystemArrayShield IDAS can also be configured as add-on module with various products of leadingtechnology players. Support is available for SAML, LDAP, RADIUS, TACACS protocol etc.Easily CustomizableArrayShield IDAS can be easily customizable to the unique needs of every organization. Oncedeployed, organizations can also configure the security strength and mechanism to the amountof risk involved in the user’s role and usability requirements.BenefitsLow Total Cost of OwnershipArrayShield IDAS provides Strong Authentication at a fraction of cost of traditional alternatives.Minimal Cost is incurred during purchase as well as maintenance. As there is no need of havingcostly hardware tokens or transactional costs incurred because of SMS etc, ArrayShield’sProduct provides lowest Total Cost of Ownership. No costly server hardware needed.Mobility of the userAs ArrayShield uses a simple plastic card that can be carried on the go, it doesn’t have anydependencies. Hence user will be able to access the application any-time, any-where.Provides peace of mindProtects Organizations and customers from Online Identity and data theft, hence provide peaceof mind.Provides Compliance with regulationsRegulatory agencies agree that passwords are a weak link and are requiring companies toimplement stronger authentication. ArrayShield is a rapid, cost-effective way to comply withIndustry Guidelines, Security Standards and other Industry regulations.ConclusionBy using IDAS Two-Factor authentication solution, organizations can enable the secure accessto their Salesforce account. The solution will make organizations of all sizes and complexitiesprotect from the malicious attacks happening on their online accounts. ArrayShield | Page 3