, (login) (password) . , . login/password . Windows Microsoft LAN Manager (LM), NT LAN Manager (NTLM), NT LAN Manager 2 (NTLM v2) Kerberos. Kerberos, .
Kerberos
Kerberos' , . Single Sign-On ( ). Kerberos , , - . Ticket (, ). Ticket , , Kerberos -KDC (Key Distribution Center, ). , KDC - TGT (Ticket Granting Ticket). , TGT, KDC - Service Ticket.
Kerberos, , , , . . Kerberos Microsoft, Windows 2000.
( , , Internet). PAP, CHAP, EAP, RADIUS, TACACS . RADIUS.
|
|
RADIUS
Remote Authentication Dial-in User Service (RADIUS)2 , .
:
RADIUS. RADIUS . RADIUS . , RADIUS .
RADIUS. RADIUS , RADIUS. RADIUS. . RADIUS .
RADIUS. RADIUS . RADIUS (, , ). RADIUS , RADIUS.
RADIUS , .
RADIUS Windows Server 2003 (Internet Authentication Service, IAS). , . IAS Windows Server 2003, , Active Directory.
(OTP One Time Password). . . . :
;
;
;
() , -.
, 8. -. -:
|
|
;
;
-;
, USB-.
OTP RSA SecurID, ActivCard Token, USB- Aladdin eToken NG-OTP. , SecurID, RSA Security. , . , 3 5 , . SecurID , Microsoft Windows. , " " . , . Secure Computing Safeword. "-" CryptoCard. , . , , VASCO, . .
. , , , . :
( ),
.
SSL, Kerberos RADIUS.
- USB-
, .509 , . , , . . , - . , .
-
- - , . , , GSM.
- -. - ( ), - , (IFD), , , - . - , PCMCIA USB. - . , , -, , PIN-.
|
|
USB-
USB- , USB .
- USB- , , , . , . , . - USB- PKI: - , . , , .
. - : , . , . , . . . , , .
. , , , . , - , , .., . , .
, , . - . , : . , , . . , , , .