*** blablo (559e0128@gateway/web/freenode/ip.85.158.1.40) has joined #wikid | 10:39 | |
*** l0calh0rst (~ganixan@fw01.ber.internet4you.de) has joined #wikid | 10:40 | |
*** blablo has quit (Client Quit) | 10:40 | |
*** nowen (~nowen@adsl-66-184-38.asm.bellsouth.net) has joined #wikid | 12:39 | |
*** aixadmin (6358fda6@gateway/web/freenode/ip.99.88.253.166) has joined #wikid | 16:07 | |
aixadmin | Any thought on support for AIX servers? | 16:07 |
---|---|---|
nowen | aixadmin: our next version will be more OS independent | 16:08 |
aixadmin | Java? | 16:08 |
nowen | we're working now on ubuntu support | 16:08 |
nowen | yes | 16:08 |
nowen | java | 16:08 |
aixadmin | Can I throw out a scenario? | 16:09 |
nowen | sure | 16:09 |
aixadmin | We're a large company and currently use key fobs. we don't allow access to any resource on the company network until you have authenticated with a PIN & Fob technique. | 16:09 |
nowen | ok | 16:10 |
aixadmin | How would WikID be able to service me in this scenario? We don't want any new work requirements (i.e. employees are required to have a smartphone for key generation). | 16:10 |
nowen | so, no smart phone tokens, only PC tokens? | 16:11 |
aixadmin | We use Windows terminal servers, so there's no work requirement for any device other than a terminal. | 16:12 |
aixadmin | (and no access to a browser without logging in) | 16:12 |
nowen | oh, you mean that the only service you are securing is terminal services. | 16:13 |
nowen | WIKID Enterprise supports Radius, which is the best way to integration any 2FA system into your network | 16:14 |
nowen | users can have a token on a smartphone or on a PC, or both | 16:14 |
aixadmin | let me ask it a different way: Do I need to have either a PC or a smartphone to generate a token? | 16:14 |
nowen | yes. though the token can be put on a USB drive. and the token talks to the WiKID server. We do not have any hardware tokens at this time (though it is a possibility) | 16:15 |
aixadmin | Are you considering providing or working with any third party's hardware tokens? | 16:16 |
nowen | we've been asked about it by some prospects, so yes, we are. probably some OATH hw tokens | 16:16 |
aixadmin | What sort of time frame are you guys considering for the HW tokens? 6mos, 12mos, longer? | 16:18 |
nowen | hmm, I would say 4-8 mos | 16:18 |
aixadmin | ok. | 16:18 |
nowen | when are your tokens up? | 16:19 |
aixadmin | All the time. we make bulk buys in increments. We may have a large number go in June. | 16:20 |
nowen | ok | 16:20 |
aixadmin | Is there anywhere that I can follow to get news/updates on the HW token topic? | 16:20 |
nowen | we're working on that too ;). not very good at the outbound marketing, mostly because, you know, it's EVIL | 16:21 |
nowen | if you pop me an email, I will note your interest | 16:21 |
aixadmin | Haha!! LOL! All security is EVIL! | 16:21 |
nowen | ;-) | 16:21 |
aixadmin | sure, but I'll probably have our SME contact you instead of me. | 16:22 |
aixadmin | what's your email? | 16:22 |
nowen | nowen @ wikidsystems.com | 16:24 |
aixadmin | thanks! | 16:25 |
nowen | np, thanks for your interest | 16:25 |
aixadmin | I appreciate your time. | 16:25 |
nowen | my pleasure | 16:25 |
*** aixadmin has quit (Ping timeout: 252 seconds) | 16:29 | |
*** Delaney_ (4013e006@gateway/web/freenode/ip.64.19.224.6) has joined #wikid | 17:33 | |
*** l0calh0rst has quit (Quit: leaving) | 17:40 | |
*** Delaney_ has quit (Quit: Page closed) | 17:40 | |
*** Delaney_ (4013e006@gateway/web/freenode/ip.64.19.224.6) has joined #wikid | 21:57 | |
Delaney_ | Hi | 21:57 |
nowen | hi | 21:57 |
nowen | how goes it? | 21:57 |
Delaney_ | I have a question on using radius as protocol on wikid | 21:57 |
nowen | ok | 21:57 |
nowen | why is it so slow to start? | 21:57 |
nowen | I'd like to know that too | 21:57 |
Delaney_ | haha, i can't even get that started | 21:58 |
Delaney_ | after i config it on as network client | 21:58 |
nowen | hmm | 21:58 |
Delaney_ | should i be able to telnet to port 1812 to the wikid server? | 21:58 |
nowen | no | 21:58 |
nowen | but you can run 'netstat -anp | grep 1812 | 21:58 |
nowen | ' on the server | 21:58 |
Delaney_ | ah ok.... just want to see it this is the local firewall blocking or if it's the domain cisco firewall blocking | 21:59 |
nowen | you can see the WiKID firewall rules by running 'iptables -L -n' | 22:00 |
Delaney_ | do you have documents on how to setup cisco vpn using Windows AD/Wikid integration? | 22:00 |
Delaney_ | i think you've send me for ssh setup on the integration last time | 22:00 |
nowen | well, we have WiKID AD via IAS | 22:00 |
nowen | well, we don't have documentation cisco <> IAS | 22:00 |
nowen | but the IAS doc is still a good guide. Do MS or Cisco have one? | 22:01 |
Delaney_ | ah ok, i'll look up if cisco or MS has radius with vpn setup | 22:02 |
Delaney_ | thanks for your help Nick | 22:02 |
nowen | then, the IAS > WiKID docs would apply | 22:03 |
nowen | np | 22:03 |
*** Delaney_ has quit (Quit: Page closed) | 22:03 | |
*** nowen has parted #wikid (None) | 22:06 |
Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!