Single sign-on Questions


Using client certificates with Cisco VPN 3xxx concentrator
I am specifically looking for a way to match Windows loging credentials with a user certificate and then transparently submit to Active Directory for authentication. It seems that the Cisco VPN client first checks the validity of the certificate (without matching the Windows credentials) then prompts the user for Active Directory login information. (Even if [...]

Answer Question   |  September 2, 2005  4:34 PM
Biometrics, Cisco, Digital certificates, Identity & Access Management, provisioning, Security tokens, Single sign-on
asked by:
0 pts.

IT Security
Hi all, Thanks to all those who answered to my question”FTP sites” Can anyone of you let me know about the available products that we can use for our organisations IT security..Also let me know what products are available to find out vulnerabilities in a network. Appreciate your response. Thanks Tarang

Answer Question   |  August 27, 2005  6:03 AM
Access, Access control, Application security, backdoors, Biometrics, Browsers, Certifications, Compliance, configuration, CRM, Current threats, Database, Desktops, Digital certificates, Disaster Recovery, E-business, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Management, Microsoft Office, Microsoft Windows, Network security, Networking, OS, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SQL Server, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

How to determine password expiration
Recently this iSeries user wrote in with a question about password expiration. He writes, “How can I tell if a user’s password does not expire? I’ve used the user profile report, but all it gives me for expiration values are 0′s or -1′s for all of the users.” Can you help? Michelle Davidson Editor Search400.com

Answer Question   |  October 31, 2010  11:36 AM
AS/400, Biometrics, Digital certificates, Identity & Access Management, provisioning, Security tokens, Single sign-on
asked by:
110 pts.

Local Admin & passwords
We have recently switched to allowing only Power User rights on notebook computers. We have a set of notebooks we loan out to employees with desktops when they need to travel. Currently those users will login with an account named loaner and use scripts and webmail to access the network. Discussion has come up recently [...]

Answer Question   |  August 19, 2005  3:52 PM
Application security, Biometrics, Compliance, configuration, CRM, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, Firewalls, Forensics, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Single sign-on, VPN, vulnerability management, Wireless
asked by:
0 pts.

asked by:
0 pts.

aaa authorization ?
Which of the following authorization commands are valid? (we have to choose 2 correct) A. aaa authentication exec home radius B. aaa accounting exec home radius C. aaa authorization default none D. aaa authorization exec home radius E. aaa authorization network default enable F. aaa authorization network default local

Answer Question   |  July 26, 2005  9:45 AM
Administration, Application security, Architecture/Design, Biometrics, Cabling, Cisco, Data analysis, Database, DataCenter, Desktop vs network-based firewalls, Digital certificates, Documentation, Encryption, Exchange, Features/Functionality, Firewalls, Forensics, Hardware, Hubs, Identity & Access Management, Incident response, Installation, Instant Messaging, Intrusion management, Network security, Networking, Product/Service evaluation, provisioning, Routers, Secure Coding, Security, Security tokens, Service and support, Single sign-on, Switches, VPN, Vulnerability Assessment & Audit, Wireless
asked by:
0 pts.

asked by:
0 pts.

LDAP in DMZ
We are using LDAP for Internal environment as an Enterprise directory having lot of application and user specific data. There is requirement to access LDAP from external network also. Bearing that in mind we shall have LDAP Server in DMZ to service external applications. Here we are using Sun Directory Server 5.2. What are the [...]

Answer Question   |  June 29, 2005  6:44 PM
Application security, Biometrics, Database, DataCenter, Digital certificates, Encryption, Exchange, IBM/Tivoli, Identity & Access Management, Instant Messaging, provisioning, Secure Coding, Security, Security tokens, Single sign-on, Waveset/Sun Micro
asked by:
0 pts.

Sendig Mail to user@IP
We have two Mx Record (same ISP) pointing to the same mail server. The Mail Server is REDHAT Linux. I want to send a mail to user@ip address (first or second Mx Record). This is basically to test if first Mx record fails, will the second record be used. I would be sending this mail [...]

Answer Question   |  June 13, 2005  11:29 PM
Biometrics, DHCP, Digital certificates, DNS, E-mail applications, Exchange, Firewalls, Forensics, Identity & Access Management, Implementation/Management, Incident response, Intrusion management, Linux, Linux Distributions, Network security, Network testing, Networking, Networking services, Performance management, Protocol analysis, provisioning, Red Hat Enterprise Server, Red Hat Fedora, Security, Security tokens, Sendmail, Servers, Single sign-on, Tech support, VPN, Wireless
asked by:
60 pts.

Stop Error (C000021a)
I am receiving this stop error(C000021a) “windows logon process system process terminated unexpectedly” with win 2000 server. Safe mode and Last Known Good Conf. works fine. Is there any solution without reformating the HDD? I have ERD with me. Will that help me? Any advise on this would be highly appreciated. Thanks

Answer Question   |  June 23, 2008  3:29 AM
Biometrics, Call Centers, CIO, Compliance, CRM, Customer relationship management applications, Data analysis, Data center operations, Data mining/analysis, Data warehousing applications, DataCenter, Desktop management applications, Desktop security, Desktops, DHCP, Digital certificates, Disaster Recovery, DNS, E-mail applications, ERP, Exchange, Graphical User Interfaces, Hardware, Help Desk, IBM, Identity & Access Management, Implementation, Information risk management, Installation, Intel, Intel PC hardware, IT architecture, LANDesk, Microsoft Systems Management Server, Microsoft Windows, Networking, Networking Products, Networking services, Operating system platforms, PeopleSoft, Performance/Tuning, Physical security, Policies, Power management, provisioning, Registry, Risk management, Security, Security management, Security products, Security Program Management, Security tokens, Servers, Single sign-on, System utilities, Systems management software, Tech support, Third-party services, Vendor support, Vendors, Windows, Windows 2000 desktop, Windows 2000 Server, Windows client administration and maintenance
asked by:
10 pts.

asked by:
5 pts.

expired credentials in Windows XP
We have one particular XP-Pro system that repeatedly throughout the day (5-6 times) will ank the user for their credentials again. After entering them will continue just fine. This is the only system doing this and is pretty annoying. Why is this happening?

Answer Question   |  May 26, 2005  7:33 PM
Biometrics, Digital certificates, Identity & Access Management, Microsoft Windows, Networking, provisioning, Security, Security tokens, Single sign-on
asked by:
0 pts.

asked by:
0 pts.

Resticting Members of BuiltinAdministrator to just be able to create Domain Trust
In windows 2000/2003, Can we restrict a BuiltinAdministrators member to have just enough rights so that he/she can only create/delete domain Trust. The requirement that we have is to be programmatically create trust with all the domains in a given forest. The other part of the requirement is to maintain the created trusts (i.e. recreate [...]

Answer Question   |  May 11, 2005  7:09 PM
Administration, Biometrics, Compliance, CRM, Development, Digital certificates, Disaster Recovery, Identity & Access Management, Installation, Management, Policies, provisioning, Risk management, Security, Security management, Security Program Management, Security tokens, Single sign-on
asked by:
0 pts.

Data vs. perimeter vs. network security
A short time ago, author Wes Noonan wrote some tips for SearchWindowsSecurity.com about <a href=http://searchwindowssecurity.techtarget.com/originalContent/0,289142,sid45_gci1007026,00.html>deperimeterization</a>. He explained how security is always pitted against business needs, and perimeters have become porous because businesses require traffic from SMTP, HTTP or VPNs to pass through the firewall. He then offered techniques for keeping data safe in spite of [...]

Answer Question   |  May 4, 2005  4:36 PM
Administration, Application security, Architecture/Design, backdoors, Biometrics, Compliance, configuration, CRM, Current threats, Database, Desktop vs network-based firewalls, Digital certificates, Disaster Recovery, Documentation, Encryption, Exchange, Features/Functionality, Firewalls, Forensics, Hacking, Host-based IDS/IPS, human factors, Identity & Access Management, IDS vs IPS, IDS/IPS management, Incident response, Installation, Instant Messaging, Intrusion management, Managed security services, Management, Network security, Network-based IDS/IPS, Networking, Outsourcing/Managed services, patching, PEN testing, Platform Security, Policies, Product evaluation, provisioning, Risk management, Secure Coding, Security, Security management, Security products, Security Program Management, Security tokens, Service and support, Signature updating/Management, Single sign-on, Software vs appliance, Spyware, Trojans, Viruses, VPN, Vulnerability Assessment & Audit, vulnerability management, Wireless, worms
asked by:
0 pts.

Stuck with WEP – will increasing key lengths help harden WLAN?
I have potential security issues on my wireless LAN because my equipment is older and I can?t use WPA. I’m worried that my data is vulnerable. If I increase my WEP key length from 40 to 128 or greater, will this help?

Answer Question   |  May 4, 2005  7:15 AM
Biometrics, Compliance, CRM, Digital certificates, Disaster Recovery, Identity & Access Management, Intrusion management, Policies, provisioning, Risk management, Security Program Management, Security tokens, Single sign-on
asked by:
225 pts.

asked by:
0 pts.

Internet Explorer vs. Firefox
Hello, I’m the Assistant Editor on SearchWindowsSecurity.com. I’m looking to start a discussion about what browser people are using and why. Also, is anyone considering switching from IE to Firefox, or are your plans to stay with IE? Here’s some food for thought… As of Feb. 2005, an estimated 35 million users had switched from [...]

Answer Question   |  June 29, 2012  2:14 PM
Addamark, Administration, Aladdin Knowledge Systems, Application security, AppSec, Architecture/Design, ArcSight, Bindview, Biometrics, Caymas, CipherTrust, Compliance, Computer Associates, configuration, Courion, CRM, Cylant, Database, DataCenter, Desktop management applications, Desktops, Digital certificates, Disaster Recovery, Documentation, e-Security, Emerging technologies, Encryption, Enterasys Networks, Entrust, Exchange, Features/Functionality, GuardedNet, Hardware, Host-based IDS/IPS, IBM/Tivoli, Identity & Access Management, IDS vs IPS, IDS/IPS management, Imprivata, Installation, Instant Messaging, Intellitactics, Internet Security Systems, Intrusion management, Juniper Networks, KavaDo, M-Tech, Magnifire, Managed security services, Management, Maxware, Microsoft Windows, Netegrity, NetForensics, NetIQ, Network Associates, Network-based IDS/IPS, NFR Security, NGS Software, Novell, Ounce Labs, Outsourcing, Outsourcing/Managed services, Passlogix, patching, PEN testing, Platform Security, Policies, Product evaluation, Product/Service evaluation, provisioning, Risk management, RSA Security, Sana Security, Secure Coding, Security, Security management, Security Program Management, Security tokens, Servers, Service and support, Service contracts, Service evaluation, Single sign-on, Snort/Sourcefire, SPI Dynamics, StillSecure, Tech support, Teros, Thor, Tripwire, TruSecure, Vendors, VeriSign, VPN, VSecure, Vulnerability Assessment & Audit, vulnerability management, Watchfire, Waveset/Sun Micro, Windows, Windows XP
asked by:
0 pts.

Safe user sandbox?
*This question is from a SearchWindowsSecurity.com reader: I’m in a position to redesign our IT systems (network, servers, PCs, software, etc.) this summer, and I am undecided on which path to take. I’d like to disconnect our systems from the Internet so that we don’t have to deal with all of the garbage that comes [...]

Answer Question   |  April 13, 2005  2:15 PM
Application security, backdoors, Biometrics, Compliance, configuration, CRM, Current threats, Database, Development, Digital certificates, Disaster Recovery, Encryption, Exchange, Hacking, human factors, Identity & Access Management, Instant Messaging, Intrusion management, Management, patching, PEN testing, Platform Security, Policies, Product evaluation, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Single sign-on, Spyware, Trojans, Vendors, Viruses, vulnerability management, worms
asked by:
0 pts.

I’ve been hacked — I think….
I’m an IT administrator with a little over 500 end users, running Windows 2000 and XP. One of our users is experiencing a problem with her Internet connection suddenly dropping for no apparent reason. When she restarts her computer, everything works fine for awhile, but then the connection drops again. The funny thing is, she’s [...]

Answer Question   |  August 2, 2009  9:52 AM
Administration, Application security, Architecture/Design, Bigfix, Biometrics, Cisco, Citadel, Compliance, Computer Associates, configuration, Configuresoft, CRM, Cylant, Database, DataCenter, Desktop antivirus, Desktop management applications, Digital certificates, Disaster Recovery, Documentation, Ecora, Encryption, Enterasys Networks, Exchange, Features/Functionality, Firewalls, Forensics, GFI, Hewlett-Packard, Host-based IDS/IPS, Identity & Access Management, IDS vs IPS, IDS/IPS management, Incident response, Installation, Instant Messaging, Internet Security Systems, Intrusion management, Juniper Networks, Managed security services, Management, Microsoft Windows, Network Associates, Network Elements, Network security, Network-based IDS/IPS, NFR Security, Outsourcing, Outsourcing/Managed services, patching, Patchlink, PEN testing, Platform Security, Policies, Product evaluation, Product/Service evaluation, provisioning, Redundancy, Risk management, Sana Security, Secure Coding, Security, Security Program Management, Security tokens, Service and support, Service contracts, Service evaluation, Shavlink Technologies, Single sign-on, Snort/Sourcefire, St. Bernard Software, StillSecure, Symantec, Tripwire, Vendors, VPN, VSecure, Vulnerability Assessment & Audit, vulnerability management, Wireless
asked by:
0 pts.