• DocumentCode
    2358704
  • Title

    Design, implementation and analysis of multi layer, Multi Factor Authentication (MFA) setup for webmail access in multi trust networks

  • Author

    Chaudhari, Swati ; Tomar, S.S. ; Rawat, Anil

  • Author_Institution
    Dept. of Atomic Energy, R.R. Centre for Adv. Technol. (Govt. of India), Indore, India
  • fYear
    2011
  • fDate
    22-24 April 2011
  • Firstpage
    27
  • Lastpage
    32
  • Abstract
    The obvious advantages of Multi Factor Authentication (MFA) - in terms of enhanced identity theft protection and account hijacking protection - have resulted in its large scale adoption in various security sensitive web applications. In large organizations with different authentication related security policies for Intranet, Extranet and Internet users, varying and multiple authentication implementations are required for achieving security compliance. Layered MFA setups have evolved to facilitate variable authentication implementations in secured web applications. Deploying and handling multi layered, multi factor authentication setups based on Open source freeware solutions is a challenging task for any administrator. This paper presents our work related to design, implementation and integration of a multi layered, multi factor authentication setup for securing the webmail application at our centre, using various freeware open source tools. The implementation ensures fulfillment of varying authentication requirements for Intranet, Internet and Extranet webmail users. Detailed analysis of the implemented setup in terms of compliance to authentication related security policies of our centre have also been presented.
  • Keywords
    Internet; computer crime; electronic mail; message authentication; Extranet Webmail users; Internet Webmail users; Intranet; Webmail access; account hijacking protection; identity theft protection; multifactor authentication setup; multitrust networks; open source freeware solution; security compliance; security policy; security sensitive Web application; Authentication; Electronic mail; Extranets; Internet; Organizations; Servers; Layered MFA; OTP; Open Source tools; OpenID; multi trust networks; varied authentication;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Emerging Trends in Networks and Computer Communications (ETNCC), 2011 International Conference on
  • Conference_Location
    Udaipur
  • Print_ISBN
    978-1-4577-0239-6
  • Type

    conf

  • DOI
    10.1109/ETNCC.2011.5958480
  • Filename
    5958480