DualShield

DualShield is an award-winning, versatile, unified authentication platform that delivers multi-factor authentication across diverse channels, applications, users and security tokens.


"This is a great offering...This is our Recommended Product" - SC Magazine, 2012.

Introduction

You have been googling the web for a multi-factor authentication product for the protection of your business resources and data. Yet, you are still searching, because none of the products that you have seen or tried meet all of your requirements. Your organisation has employees and business partners remote accessing your resources and data in your corporate network via VPN or RDP, in the web or cloud with Google Apps, Citrix XenApp, WMware View or 2X. You need to secure a variety of remote access channels with multi-factor authentication. Furthermore, your employees and business partners demand different types of authentication methods. Some of them need hardware OTP tokens, some of them want on-demand password via SMS text, email messages or phone calls, some of them prefer biometrics and some of them are required to logon with PKI certificates. You need to offer a variety of multi-factor authentication methods. Congratulations! You can now sit back and search no further, as you have finally found the right product that will meet all of your requirements!

Deepnet DualShield is an award-winning, versatile, unified authentication platform that delivers multi-factor authentication across diverse channels, applications, users and security tokens. DualShield enables organizations to deploy a wide variety of authentication methods and to protect a wide range of remote access channels and applications with strong, multi-factor authentication in a single, unified platform.

Supported Solutions:

  • VPN
    • IPSEC VPN (Cisco, Checkpoint...)
    • SSL VPN (Juniper, F5...)
    • Microsoft UAG & TMG
  • WEB
    • Microsoft IIS (OWA, Sharepoint..)
    • Apache
  • Cloud
    • Microsoft Office 365
    • Google Apps
    • Citrix XenApp
    • 2X Application Server
    • SAML enabled applications
  • Virtual Desktop
    • VMWare View
    • Citrix XenDesktop
    • 2X Virtual Desktop
    • Microsoft Remote Desktop
  • Windows
    • Windows Desktop Logon
    • Windows Terminal Service
  • Outlook
    • Outlook Web Access
    • Outlook Anywhere
    • Outlook ActiveSync
  • Linux
    • Pluggable Authentication Module (PAM)
    • VMWare ESX server
  • Mac OS

Supported Authenticator:

  • One-Time Password
    • Hardware OTP Tokens
    • Software OTP Tokens
    • Mobile OTP Tokens
    • Physical Grid Cards
    • Virtual Grid Cards
  • On-Demand Password
    • Text (SMS)
    • Telephone (Voice)
    • Twitter
    • Email
  • Biometrics
    • Keystroke Recognition
    • Voiceprint Recognition
    • Face Recognition
  • Device DNA
    • Computer device fingerprint
    • USB flash drive fingerprint
  • Certificates

DualShield is easily integrated with your existing environment with minimum impact to your business operation. In the core of the DualShield unified authentication platform is the Deepnet Authentication Server that can be installed on any Windows or Linux server, or provided as a virtual appliance running in a virtual server such as VMWare or Sun Virtual Box.

Key Features:

[-]Web based management console

The DualShield Management Console is accessed through any standard Web browser. With its rich web GUI, system administrators can easily manage groups, units and users, tokens, policies and configurations anywhere at any time.

[+]Native LDAP/AD integration

DualShield delivers true native LDAP support for direct integration with LDAP directory servers such as Active Directory and Open LDAP. Native LDAP support does not require change to the database schema, does not require import from the database and does not require synchronization. Any changes made to the external user directory are immediately effective in DualShield in real time.

[+]Multi-level user management

DualShield enables system administrators to organize user units and groups and assign them with administrative roles and access control policies. The Multi-level user management increases the efficiency and flexibility of managing users’credentials and access control. DualShield further streamlines user management by integrating with existing user directory, such as LDAP or Microsoft Adctive Directory.

[+]Full life cycle token management

DualShield provides facilities that enable system administrators to easily manage the entire life cycle of tokens:
  • Provisioning
  • Deployment
  • Enablement
  • Replacement
  • Synchronisation

[+]Policy based configuration

Policies control various aspects of your system and your users. DualShield provide a comprehensive set of policies such as Password Complexity, Session Lockout, Token Provisioning and Authentication Policies, that provides the flexibility for the system administrator to configure two-factor authentication on the level of solution and user account.

[+]Web based management console

DualShield logs all transactions and user activities. Administrators can utilize it as an auditing, accounting and compliance tool. It includes report templates that can be easily tailored to administration needs, including activity, exception, incident and usage summaries.

[+]Extended RADIUS support

DualShield has a built-in RADIUS server that is fully compliant to RFC 2865. It supports an extended set of features such as attribute mappings between RADIUS and LDAP attributes and configurable RADIUS profiles. These features enable granular access control via RADIUS down to users according to their account profiles, attributes and settings.

[+]Single Sign-On

DualShield provides a fully compliant SAML 2.0 single sign-on server for every web and cloud applications, such as Google Apps, Salesforce and any SAML enabled application. DualShidl SSO enables users to sign on once then access multiple applications without additional logins.

[+]Self-service web portal

A self-service console is available for end users to request a variety of services, including requesting for replacement of lost or damaged tokens and issuing on-demand tokens for emergency access. The self-service console can dramatically reduce the call volume into the IT help desk because users are empowered to manage all aspects of their token lifecycles.

[+]Managed Service

DualShield is increasingly being used by Managed Service Providers to provide “Authentication as a Service”. On one single platform, Managed Service Providers can host authentication services for multiple organisations and each organisation has it own private realm for managing their own domains, users, tokens etc.

With the broadest range of user authentication methods, flexible role and policy based access control, single sign-on features, self-service portal, and proven performance to millions of users, DualShield enables organizations to reduce administration costs while providing secure access to their web applications and content.