Environment
Novell SecureLogin 6.0
Novell SecureLogin 6.1Novell SecureLogin 3.51
Situation
What strong 2 factor authentication methods does SecureLogin support in an Active Directory environment?
Resolution
SecureLogin supports any authentication supported by Active Directory. As long as the user can authenticate to Active Directory via the strong authentication based on: PKCS#11 compliant Smart Card (for PKI logon to the network), Biometric (e.g. fingerprint scan), and OTP/Token (e.g. ActivIdenitty, Vasco, RSA).
Since SecureLogin data is associated with the user object, SSO data loads after a successful AD authentication.
Additional Information
If smart cards with PKI credentials are used for authentication to
Active Directory, the PKI credentials can not only be used to encrypt
SecureLogin data, but also store the SSO credentials (username and passwords to configured applications) on the card.