13.04.2013 Views

Digipass Plug-In for SBR Administrator Reference - Vasco

Digipass Plug-In for SBR Administrator Reference - Vasco

Digipass Plug-In for SBR Administrator Reference - Vasco

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>Digipass</strong> <strong>Plug</strong>-<strong>In</strong> <strong>for</strong> <strong>SBR</strong> <strong>Administrator</strong> <strong>Reference</strong> Field Listings<br />

Field Name in<br />

Administration<br />

<strong>In</strong>terfaces<br />

Backup Virtual <strong>Digipass</strong><br />

– Time Limit<br />

Backup Virtual <strong>Digipass</strong><br />

– Max. Uses/User<br />

Backup Virtual <strong>Digipass</strong><br />

– Request Method<br />

Backup Virtual <strong>Digipass</strong><br />

– Request Keyword<br />

Identification Time<br />

Window<br />

Description<br />

Max. Uses/User limit is.<br />

When the Enable Backup VDP setting is Yes – Time Limited, the Time Limit setting<br />

indicates the number of days <strong>for</strong> which the Backup Virtual <strong>Digipass</strong> feature may be used by<br />

a User, once they start using it.<br />

The Backup Virtual <strong>Digipass</strong> Enabled Until setting on the <strong>Digipass</strong> record will be set<br />

automatically the first time that the User requests a Backup Virtual <strong>Digipass</strong> OTP, using the<br />

Time Limit defined in the Policy. Once this date has expired, it requires administrator<br />

intervention either to extend it or to reset it to blank <strong>for</strong> the next time that the User needs<br />

to use Backup Virtual <strong>Digipass</strong>.<br />

Note that if a User has more than one <strong>Digipass</strong> capable of Backup Virtual <strong>Digipass</strong>, they will<br />

have a separate limit <strong>for</strong> each one.<br />

The maximum number of uses of the Backup Virtual <strong>Digipass</strong> feature permitted <strong>for</strong> each<br />

User, if they do not have a specific limit set <strong>for</strong> them.<br />

If the Backup Virtual <strong>Digipass</strong> Uses Remaining on the <strong>Digipass</strong> record is blank and<br />

there is a Max. Uses/User limit defined in the Policy, the Uses Remaining will be set<br />

automatically the first time that the User requests a Backup Virtual <strong>Digipass</strong> OTP.<br />

Once the Uses Remaining has reached zero, Backup Virtual <strong>Digipass</strong> can no longer be used<br />

with this <strong>Digipass</strong>, unless the administrator increases it or resets it to blank.<br />

Note that if a User has more than one <strong>Digipass</strong> capable of Backup Virtual <strong>Digipass</strong>, they will<br />

have a separate limit <strong>for</strong> each one.<br />

The method by which a User has to request a Backup Virtual <strong>Digipass</strong> login.<br />

The 'request' is made in the password field during login. The request will be ignored if the<br />

User does not have a <strong>Digipass</strong> assigned that is activated <strong>for</strong> the Backup Virtual <strong>Digipass</strong><br />

feature, or if other Policy or <strong>Digipass</strong> settings do not permit Backup Virtual <strong>Digipass</strong> use.<br />

Options:<br />

Default Use the setting of the parent Policy.<br />

None Do not use Backup Virtual <strong>Digipass</strong>.<br />

Keyword Use the Request Keyword. For Backup Virtual <strong>Digipass</strong>, this is not<br />

permitted to be blank.<br />

Password Use the static password.<br />

KeywordPassword Use the Request Keyword followed by the static password. No<br />

separator characters or whitespace should be between them.<br />

PasswordKeyword Use the static password followed by the Request Keyword. No<br />

separator characters or whitespace should be between them.<br />

Defines the Keyword that a User must enter to request a Backup Virtual <strong>Digipass</strong> login, if a<br />

method using a Keyword is selected in the Request Method. For Backup Virtual <strong>Digipass</strong>,<br />

this is not permitted to be blank.<br />

Controls the maximum number of time steps' variation allowable between a <strong>Digipass</strong> and<br />

the authentication server during login. This only applies to time-based Response Only and<br />

Challenge/Response Applications.<br />

The Dynamic Time Window option may be used to allow more variation according to the<br />

length of time since the last successful login.<br />

If this setting is not specified at all, there is an inbuilt default value of 20.<br />

Signature Time Window Controls the maximum number of time steps' variation allowable between a <strong>Digipass</strong> and<br />

the authentication server during Digital Signature verification. This only applies to timebased<br />

Signature Applications.<br />

If this setting is not specified at all, there is an inbuilt default value of 24.<br />

Signature Applications are not currently used in RADIUS environments.<br />

<strong>In</strong>itial Time Window Controls the maximum allowed time variation allowable between a <strong>Digipass</strong> and the<br />

authentication server, the first time that the <strong>Digipass</strong> is used. The time is specified in hours.<br />

This <strong>In</strong>itial Time Window is also used directly after a Reset Application operation, which<br />

can be used if it appears that the internal clock in the <strong>Digipass</strong> has drifted too much since<br />

© 2006 VASCO Data Security <strong>In</strong>c. 92

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!