SlideShare a Scribd company logo
1 of 17
t w o -f a c t o r a u t h e n t ic a t io n w it h
y u b ik e y
     H elmuth N euberger , hn@zarafaserver.de



                                                2 0 12 j u n e 2 1
c o nte nt

        p r o b le m a n d
        s o lu t io n
        y u b ik e y c lo u d
           – la s t p a s s
           – z a ra fa
        …. .
        y u b ik e y in t e r n a l
        ( 4 z a ra fa )

        y u b ik e y
        t e c h n o lo g y

        d o 's a n d d o n t's
        de mo
        c o s ts
p r o b le m a n d s o lu t io n
          To many passwords
          → easy passwords used many times
          → hacks like Sony , Nortel, linkedin ….

          New ways of authentication

          Secure passwords ( thRpf-X%$§1o32 )
          One time passwords
          Secure password managers / repositories
          → new keys → yubikey !
y u b ik e y c lo u d
     small USB device
     emulate USB keyboard
     secure storage of 2 keys
     → one time passwords @ yubico cloud
     → one time passwords @ yourserver
     → up to 64 character static password

     Why two-factor-auth. ?

     → normal password + onetimepassword
h o w -t o u s e t h e k e y ?
          validation service

          → yubikey cloud

          → lasstpass

          → Zarafa

          Symantec VIP, Google Apps, OneLogin …....
la s t p a s s
 Secure cloud storage of ALL your passwords

 → only remember one “strong” password

 → make it more secure with yubikey
z a r a fa




  YubiCloud with Zarafa WebAccess
y u b ik e y t e c h n o lo g y
y u b ik e y t e c h n o lo g y
y u b ik e y t e c h n o lo g y




                                      NFR


R F ID

                                           na n
                                            o
y u b ik e y t e c h n o lo g y




                                      NFR


R F ID

                                           na n
                                            o
d o ´ s a nd d o n t's

     Allways use “backup” keys !

     Make pictures of all keys ( serial ) !

     Use the YubiRevoke service !

     Never leave yubikey in device !

     Never use yubikey as a one-factor-auth.

     Never store key info on filesystem !
       → use YubikeyHSM
Yu b i k e y H S M
c o s ts

1 pcs → 25 $               YubiCloud → free

50 pcs → 15 $ each         YubiRevoke → free
de mo
Th a n k yo u !
Zarafa SummerCamp 2012 - Yubikey integration

More Related Content

Viewers also liked

Film Faced Plywood Catalogue
Film Faced Plywood CatalogueFilm Faced Plywood Catalogue
Film Faced Plywood CatalogueTracy Duan
 
Some words and their antonyms
Some words and their antonymsSome words and their antonyms
Some words and their antonymsOlga Vareli
 
Ritesh_Resume_SAP_Basis_Consultant
Ritesh_Resume_SAP_Basis_ConsultantRitesh_Resume_SAP_Basis_Consultant
Ritesh_Resume_SAP_Basis_Consultantritesh paul garg
 
умови всеукраїнського екологічного конкурсу
умови всеукраїнського екологічного конкурсуумови всеукраїнського екологічного конкурсу
умови всеукраїнського екологічного конкурсуМарина Московская
 
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»Angeliki Arvanta
 
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑ
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑ
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑΕΥΗ ΚΑΡΟΥΝΙΑ
 
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣ
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣ
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣAlexandra Gerakini
 
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...Araceli Mejia
 
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...John Tzortzakis
 

Viewers also liked (14)

Film Faced Plywood Catalogue
Film Faced Plywood CatalogueFilm Faced Plywood Catalogue
Film Faced Plywood Catalogue
 
Some words and their antonyms
Some words and their antonymsSome words and their antonyms
Some words and their antonyms
 
Ritesh_Resume_SAP_Basis_Consultant
Ritesh_Resume_SAP_Basis_ConsultantRitesh_Resume_SAP_Basis_Consultant
Ritesh_Resume_SAP_Basis_Consultant
 
умови всеукраїнського екологічного конкурсу
умови всеукраїнського екологічного конкурсуумови всеукраїнського екологічного конкурсу
умови всеукраїнського екологічного конкурсу
 
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»
«Ερευνητική Εργασία στην Τεχνολογία»και «Ζώνη Δημιουργικών Δραστηριοτήτων»
 
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑ
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑ
ΟΙΚΟΝΟΜΙΚΗ ΚΡΙΣΗ-ΑΝΕΡΓΙΑ
 
Αντιπολεμικά
ΑντιπολεμικάΑντιπολεμικά
Αντιπολεμικά
 
οι πιτσιρικοι
οι πιτσιρικοιοι πιτσιρικοι
οι πιτσιρικοι
 
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣ
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣ
ΧΡΟΝΙΚΕΣ ΚΑΙ ΥΠΟΘΕΤΙΚΕΣ ΠΡΟΤΑΣΕΙΣ
 
Ο Σασμός
Ο ΣασμόςΟ Σασμός
Ο Σασμός
 
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...
SD Inglés II U2 A2 CCH Vallejo Matutino: Diana Fernández, Luis Daniel Gonzále...
 
Distributed DBMS - Unit 6 - Query Processing
Distributed DBMS - Unit 6 - Query ProcessingDistributed DBMS - Unit 6 - Query Processing
Distributed DBMS - Unit 6 - Query Processing
 
ALEXIS JAVIER SANCHEZ
ALEXIS JAVIER SANCHEZALEXIS JAVIER SANCHEZ
ALEXIS JAVIER SANCHEZ
 
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...
Εκπαιδευτικοί των Ερευνητικών Εργασιών: Ποιοι είναι, γιατί ασχολούνται, τι π...
 

More from Zarafa

Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin developmentZarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin developmentZarafa
 
Zarafa SummerCamp 2012 - Android Workshop
Zarafa SummerCamp 2012 - Android WorkshopZarafa SummerCamp 2012 - Android Workshop
Zarafa SummerCamp 2012 - Android WorkshopZarafa
 
Zarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa SummerCamp 2012 - Steve Hardy Friday KeynoteZarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa SummerCamp 2012 - Steve Hardy Friday KeynoteZarafa
 
Zarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa SummerCamp 2012 - Project approach when migrating to ZarafaZarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa SummerCamp 2012 - Project approach when migrating to ZarafaZarafa
 
Zarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa SummerCamp 2012 - Keynote Peter GantenZarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa SummerCamp 2012 - Keynote Peter GantenZarafa
 
Zarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa SummerCamp 2012 - Exchange Web Services, technical informationZarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa SummerCamp 2012 - Exchange Web Services, technical informationZarafa
 
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...Zarafa
 
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdfZararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdfZarafa
 
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-pushZararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-pushZarafa
 
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...Zarafa
 
Zararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zararfa SummerCamp 2012 - Community update and Zarafa Development ProcessZararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zararfa SummerCamp 2012 - Community update and Zarafa Development ProcessZarafa
 
Zararfa summer camp 2012 interesting tips & tricks when migrating to zarafa
Zararfa summer camp 2012   interesting tips & tricks when migrating to zarafaZararfa summer camp 2012   interesting tips & tricks when migrating to zarafa
Zararfa summer camp 2012 interesting tips & tricks when migrating to zarafaZarafa
 
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovationsZarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovationsZarafa
 
Zarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa SummerCamp 2012 - Deploying Zarafa ArchiverZarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa SummerCamp 2012 - Deploying Zarafa ArchiverZarafa
 
Zarafa SummerCamp 2012 - Open Generation Gap
Zarafa SummerCamp 2012 - Open Generation GapZarafa SummerCamp 2012 - Open Generation Gap
Zarafa SummerCamp 2012 - Open Generation GapZarafa
 
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxyZarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxyZarafa
 
Zarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa SummerCamp 2012 - Zarafa 7.1 featuresZarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa SummerCamp 2012 - Zarafa 7.1 featuresZarafa
 
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administratorsZarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administratorsZarafa
 
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...Zarafa
 
Zarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa SummerCamp 2012 - Exchange Web Services on ZarafaZarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa SummerCamp 2012 - Exchange Web Services on ZarafaZarafa
 

More from Zarafa (20)

Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin developmentZarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
Zarafa SummerCamp 2012 - Basic Introduction WebApp plugin development
 
Zarafa SummerCamp 2012 - Android Workshop
Zarafa SummerCamp 2012 - Android WorkshopZarafa SummerCamp 2012 - Android Workshop
Zarafa SummerCamp 2012 - Android Workshop
 
Zarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa SummerCamp 2012 - Steve Hardy Friday KeynoteZarafa SummerCamp 2012 - Steve Hardy Friday Keynote
Zarafa SummerCamp 2012 - Steve Hardy Friday Keynote
 
Zarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa SummerCamp 2012 - Project approach when migrating to ZarafaZarafa SummerCamp 2012 - Project approach when migrating to Zarafa
Zarafa SummerCamp 2012 - Project approach when migrating to Zarafa
 
Zarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa SummerCamp 2012 - Keynote Peter GantenZarafa SummerCamp 2012 - Keynote Peter Ganten
Zarafa SummerCamp 2012 - Keynote Peter Ganten
 
Zarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa SummerCamp 2012 - Exchange Web Services, technical informationZarafa SummerCamp 2012 - Exchange Web Services, technical information
Zarafa SummerCamp 2012 - Exchange Web Services, technical information
 
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
Zarafa SummerCamp 2012 - Tips & tricks for running Zarafa is larger scale env...
 
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdfZararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
Zararfa SummerCamp 2012 - HA, multi-tenancy and SSO in Zentyal 2 and 3.pdf
 
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-pushZararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
Zararfa SummerCamp 2012 - Debian packaging Giraffe and D-push
 
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
Zararfa SummerCamp 2012 - Fedora update & PAM-MAPI Zarafa Ready certified com...
 
Zararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zararfa SummerCamp 2012 - Community update and Zarafa Development ProcessZararfa SummerCamp 2012 - Community update and Zarafa Development Process
Zararfa SummerCamp 2012 - Community update and Zarafa Development Process
 
Zararfa summer camp 2012 interesting tips & tricks when migrating to zarafa
Zararfa summer camp 2012   interesting tips & tricks when migrating to zarafaZararfa summer camp 2012   interesting tips & tricks when migrating to zarafa
Zararfa summer camp 2012 interesting tips & tricks when migrating to zarafa
 
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovationsZarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
Zarafa SummerCamp 2012 - Keynote Steve Hardy - 3 Cool innovations
 
Zarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa SummerCamp 2012 - Deploying Zarafa ArchiverZarafa SummerCamp 2012 - Deploying Zarafa Archiver
Zarafa SummerCamp 2012 - Deploying Zarafa Archiver
 
Zarafa SummerCamp 2012 - Open Generation Gap
Zarafa SummerCamp 2012 - Open Generation GapZarafa SummerCamp 2012 - Open Generation Gap
Zarafa SummerCamp 2012 - Open Generation Gap
 
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxyZarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
Zarafa SummerCamp 2012 - Zarafa Cluster using a reverse proxy
 
Zarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa SummerCamp 2012 - Zarafa 7.1 featuresZarafa SummerCamp 2012 - Zarafa 7.1 features
Zarafa SummerCamp 2012 - Zarafa 7.1 features
 
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administratorsZarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
Zarafa SummerCamp 2012 - Z-push 2.0 changes for administrators
 
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
Zararfa SummerCamp 2012 - Performing fast backups in large scale environments...
 
Zarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa SummerCamp 2012 - Exchange Web Services on ZarafaZarafa SummerCamp 2012 - Exchange Web Services on Zarafa
Zarafa SummerCamp 2012 - Exchange Web Services on Zarafa
 

Recently uploaded

Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 3652toLead Limited
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountPuma Security, LLC
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Patryk Bandurski
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024BookNet Canada
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsMemoori
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure servicePooja Nehwal
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsMark Billinghurst
 
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsSnow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsHyundai Motor Group
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...HostedbyConfluent
 

Recently uploaded (20)

Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptxVulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path Mount
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial Buildings
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR Systems
 
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsSnow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
 

Zarafa SummerCamp 2012 - Yubikey integration

  • 1. t w o -f a c t o r a u t h e n t ic a t io n w it h y u b ik e y H elmuth N euberger , hn@zarafaserver.de 2 0 12 j u n e 2 1
  • 2. c o nte nt p r o b le m a n d s o lu t io n y u b ik e y c lo u d – la s t p a s s – z a ra fa …. . y u b ik e y in t e r n a l ( 4 z a ra fa ) y u b ik e y t e c h n o lo g y d o 's a n d d o n t's de mo c o s ts
  • 3. p r o b le m a n d s o lu t io n To many passwords → easy passwords used many times → hacks like Sony , Nortel, linkedin …. New ways of authentication Secure passwords ( thRpf-X%$§1o32 ) One time passwords Secure password managers / repositories → new keys → yubikey !
  • 4. y u b ik e y c lo u d small USB device emulate USB keyboard secure storage of 2 keys → one time passwords @ yubico cloud → one time passwords @ yourserver → up to 64 character static password Why two-factor-auth. ? → normal password + onetimepassword
  • 5. h o w -t o u s e t h e k e y ? validation service → yubikey cloud → lasstpass → Zarafa Symantec VIP, Google Apps, OneLogin …....
  • 6. la s t p a s s Secure cloud storage of ALL your passwords → only remember one “strong” password → make it more secure with yubikey
  • 7. z a r a fa YubiCloud with Zarafa WebAccess
  • 8. y u b ik e y t e c h n o lo g y
  • 9. y u b ik e y t e c h n o lo g y
  • 10. y u b ik e y t e c h n o lo g y NFR R F ID na n o
  • 11. y u b ik e y t e c h n o lo g y NFR R F ID na n o
  • 12. d o ´ s a nd d o n t's Allways use “backup” keys ! Make pictures of all keys ( serial ) ! Use the YubiRevoke service ! Never leave yubikey in device ! Never use yubikey as a one-factor-auth. Never store key info on filesystem ! → use YubikeyHSM
  • 13. Yu b i k e y H S M
  • 14. c o s ts 1 pcs → 25 $ YubiCloud → free 50 pcs → 15 $ each YubiRevoke → free
  • 15. de mo
  • 16. Th a n k yo u !