Computer Associates ETRPPCE8005BPE Getting Started Guide - Page 16

Session Management Settings, Secure Network Traffic, One-Time Password Capability

Page 16 highlights

Advantages of Using eTrust SSO Session Management Settings Users can log on to multiple eTrust SSO sessions concurrently on different computers. This is important flexibility for many users, but also must be managed for security reasons. You can configure eTrust SSO to limit the number of sessions a user can have open at one time. Session management also helps to protect sensitive data left unattended on a workstation because it can be used with Windows screen lock. Session management can: „ Keep count of how many active logons a user currently has „ Reject a new logon by a user when they reach their set limit „ Log the user out at any moment, either manually, or when triggered by an event „ Be used with Windows screen lock „ Close old sessions when opening a new one These features are defined on the Policy Server using the Policy Manager. For information about how administrators can manually manage and terminate User Sessions, see the IA Manager Session Administration section in this chapter. Secure Network Traffic All information communicated between the eTrust SSO components is fully encrypted. One-Time Password Capability The One-Time Password (OTP) functionality increases eTrust SSO password security for UNIX applications that transmit passwords in clear text, such as Telnet. As soon as you log onto a remote server, eTrust SSO OTP agent connects to that server and changes your password so that anyone who intercepted the clear text password cannot use it to gain access to the server. 1-12 eTrust SSO Getting Started

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98

Advantages of Using eTrust SSO
1–12
eTrust SSO Getting Started
Session Management Settings
Users can log on to multiple eTrust SSO sessions concurrently on different
computers. This is important flexibility for many users, but also must be
managed for security reasons. You can configure eTrust SSO to limit the number
of sessions a user can have open at one time.
Session management also helps to protect sensitive data left unattended on a
workstation because it can be used with Windows screen lock.
Session management can:
Keep count of how many active logons a user currently has
Reject a new logon by a user when they reach their set limit
Log the user out at any moment, either manually, or when triggered by an
event
Be used with Windows screen lock
Close old sessions when opening a new one
These features are defined on the Policy Server using the Policy Manager.
For information about how administrators can manually manage and terminate
User Sessions, see the IA Manager Session Administration section in this chapter.
Secure Network Traffic
All information communicated between the eTrust SSO components is fully
encrypted.
One-Time Password Capability
The One-Time Password (OTP) functionality increases eTrust SSO password
security for UNIX applications that transmit passwords in clear text, such as
Telnet.
As soon as you log onto a remote server, eTrust SSO OTP agent connects to that
server and changes your password so that anyone who intercepted the clear text
password cannot use it to gain access to the server.