Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Pen-Test
[Top] [All Lists]

Re: Hardware/software secureIDs - pros and cons.

Subject: Re: Hardware/software secureIDs - pros and cons.
Date: Fri, 29 Jun 2007 21:52:38 +0530
Hi
Pros of Using a Hardware Token:
-Extracting shared key through reverse engg is not as  easy and
involves higher cost compared to soft tokens.
-Works  on different OS,Environments and no headache of downlaoding
,reinstalling.
-Operating life is higher for hardware token
-If tied well with CAP/DAP can be used for different services

Regards
Aditya.K
Researcher


On 28 Jun 2007 13:26:40 -0000, eladexposed@gmail.com <eladexposed@gmail.com> wrote:
Hello,

What are the pros and cons for using hardware RSA SecureID/Other and software 
with the same characteristics?


For example:

http://www.rsa.com/node.aspx?id=1313


Let's say there's a company that allow only customers using the hardware SecureID to connect its resources -

What might be the main arguments the company has to prefer the hardware and not 
the software?

From the customer's point of view it's better to have software installed 
(management, holding of multiple tokens, user usage etc)



Kind Regards,

Elad Shapira ("Zest")


"Security, however, is an art, not a science." - RFC 3631


------------------------------------------------------------------------ This List Sponsored by: Cenzic

Swap Out your SPI or Watchfire app sec solution for
Cenzic's robust, accurate risk assessment and management
solution FREE - limited Time Offer

http://www.cenzic.com/wf-spi
------------------------------------------------------------------------



------------------------------------------------------------------------ This List Sponsored by: Cenzic

Swap Out your SPI or Watchfire app sec solution for
Cenzic's robust, accurate risk assessment and management
solution FREE - limited Time Offer

http://www.cenzic.com/wf-spi
------------------------------------------------------------------------

<Prev in Thread] Current Thread [Next in Thread>