<<

Wave Virtual Smart Card 2.0 Multi-factor user authentication for the enterprise

Key Benefits: Standards-based:

33 Strong authentication: Unlike existing authentication products, Wave Virtual Smart Uses embedded hardware root-of- Card 2.0 uses a proven industry standard, the Trusted Platform Module (TPM). trust and PIN to provide two-factor authentication TPMs are hardware security modules embedded into a ’s motherboard or firmware. Developed by the Trusted Computing 33 Low risk: Group, an industry consortium constituting Wave, , , Leverages a standards-based security Cisco, Seagate and others, TPMs are built into most business-class PCs and tablets shipping today. The TPM is the hardware root- chip – the Trusted Platform Module, or of-trust that can be used to secure credentials and certificates, TPM – ensuring interoperability authenticating users with a high degree of assurance.

33 Low TCO: 50% or more reduction in total cost of Low Total Cost of Ownership ownership (TCO) by leveraging existing hardware and lowering ongoing costs With Wave Virtual Smart Card 2.0 there is no new device or token to purchase. IT leverages the TPM that is already built 3 3 Easy to manage: into the enterprise PC or tablet. As there is no new hardware Integrates with existing certificate-based to procure and ship, acquisition costs are significantly lower than USB tokens or physical smart cards. applications and infrastructure familiar to IT Wave Virtual Smart Card 2.0 seamlessly integrates with existing enterprise certificate-based applications and uses 33 Supports : familiar platforms like Microsoft Active Directory, making it Allows organizations to adopt strong an easy-to-use tool for IT. Support costs that are typical with traditional tokens and smart cards – such as replacement authentication for currently deployed in case of loss – are non-existent with Wave Virtual Smart Windows 7 PCs and laptops (as well as Card 2.0, as there is no additional hardware to lose. As and 8.1 tablets and laptops) Wave Virtual Smart Card 2.0 provides Helpdesk PIN reset capability, recovery costs are low.

Supports Windows 7, 8, and 8.1 Strong Authentication Wave Virtual Smart Card 2.0 is available on Windows 7, 8 and 8.1. Enterprises can support the they have Password authentication, although commonly used, is easy to deployed now, while ensuring smooth transition to the next break and does not offer the strong authentication required operating system. to protect enterprise resources. In response, security-minded enterprises have turned to multi-factor authentication: a By adopting Wave Virtual Smart Card 2.0, enterprises can leverage strong authentication at a lower TCO on the combination of something you have (a token or smart card) machines they have deployed today. and something you know (a PIN or password).

Wave Virtual Smart Card 2.0 adheres to this best practice by providing two-factor strong authentication.

With Wave Virtual Smart Card 2.0, the first factor (what you have) is the computer, equipped with an embedded hardware TPM; and the second factor (what you know) is the user PIN.

Wave Virtual Smart Card 2.0

Easy to Manage Wave Virtual Smart Card 2.0 Components

Wave Virtual Smart Card 2.0 leverages tools and systems that ●● Wave EMBASSY Remote Administration Server (ERAS) are friendly to enterprise IT. By using an intuitive, point-and- 2.11 or later click interface or command line, IT can manage virtual smart ●● Wave EMBASSY Security Center (ESC) 2.11 or later cards throughout their lifecycle.

With Wave’s Virtual Smart Card 2.0 solution, IT can adopt strong authentication while using existing enterprise ESC Client Specifications applications. IT can leverage existing Certificate Authorities to issue the appropriate application-specific user credentials. Hardware Compatibility

Enterprise Applications •• Windows 7, 8 or 8.1 PC or laptop containing a Trusted Platform Module (TPM) v1.2 •• Windows 8/8.1 Pro or Enterprise tablet, PC or laptop containing TPM v2.0 Known Devices Prerequisites Supports both 32 and 64-bit versions of the following operating systems:

Users with Virtual Smart Card 2.0 •• Microsoft® Windows 7 •• 8 (Pro, Enterprise) •• Microsoft Windows 8.1 (Pro, Enterprise) Enable a Wide Range of Use Cases ERAS Server Specifications Wave Virtual Smart Card 2.0 provides user authentication for a wide range of popular enterprise applications, such as: The Wave ERAS installation and administration manual ●● Virtual Private Network (VPN) ● Local logon contains detailed installation and technical specifications. ● The descriptions below give a general overview of the main ● Remote logon ● requirements. ●● Remote desktop access ●● 802.1X / wireless access Minimum Server Hardware Prerequisites ●● Intranet/Extranet • System Processor: 2 GHz; Recommended: 2.5 GHz or ●● Cloud applications • faster, 4-Core or better, L3 Cache: 8MB IT can adopt existing enterprise applications to use Wave •• System Memory: 4 GB RAM or more is recommended Virtual Smart Card 2.0 solution in minutes. •• Free Disk Space: Minimum: 10 GB / Recommended: 40 GB Compatible Server Components Product Features •• Domain functional level Windows 2003, 2008 and 2008 R2 and 2012 ●● Full lifecycle management of virtual smart cards •• Microsoft Management Console 3.0 (MMC) ●● Intuitive interface to create (or delete) virtual smart cards •• Group Policy Management Console ●● Command line option to create and delete virtual smart •• Microsoft SQL Server 2008 SP1 or 2008 R2 or 2012 cards •• Microsoft Internet Information Service 6.0 (IIS) or ●● Flexible PIN policies Microsoft IIS 7.0 ● Helpdesk-assisted PIN reset and recovery ● •• .NET Framework 4.0 ●● Generates authentication reports for compliance ●● Integrates with Active Directory

03-000389/version 1.00 Release Date: 07-22-2014

Copyright © 2014 Wave Systems Corp. All rights reserved. Wave logo is trademark of Wave Systems Corp. All other brands are the property of their respective owners. Distributed by Wave Systems Corp. Specifications are subject to change without notice. Wave Systems Corp. 480 Pleasant Street, Lee, MA 01238 (877) 228-WAVE • fax (413) 243-0045 www.wave.com