You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 104 Next »

With SURFconext Strong Authentication users have to do a second authentication, above their 'normal' login and password. The result is a higher security for the SP and the IdP. This wiki explains the principles behind SURFconext Strong Authentication and gives you all the information you need to install it.

  • The introduction explains the basics of SURFconext Strong Authentication. Mainly there are only three steps to be taken.
  • On the next page (Architecture) you will find a picture showing the relation between the different 'actors': the SURFconext Strong Authentication gateway, the SURFconext gateway, the SP's and the Second factors (SMS, Tiqr and YubiKey). Also the authentication flow, consisting of 6 steps, is explained.
    Important to know is that with SURFconext Strong Authentication for IdP's no technical changes are required.
  • On the page Levels of assurance you can read that in SURFconext Strong Authentication there are three different levels of assurance:
    -  LoA 1: only password authentication
    -  LoA 2: password + SMS of Tiqr
    -  LoA 3: password + Yubikey (hardware token)
    Explained is also why in SURFconext Strong Authentication the attributes do not have a level of assurance.
  • The road map shows you the plans SURFnet has to improve further the qualities of SURFconext Strong Authentication. You are encouraged to engage in our periodic SURFconext meetings or contact us at info@surfconext.nl to discuss your strong authentication needs.
  • In the FAQ you will find a list of the most commonly asked questions, together with our answers on them.
  • In the Documentation for Identity Providers (Dutch), you will find information on how institutions are able to use this service. This has above all an organizational impact, rather than a technical one.
  • The last part of this wiki, Documentation for Service Providers, gives a lot of detail (technical) information specific for Service Providers.

 

 

  • No labels