¥Ø«eÅã¥Ü: ­º­¶ // ²£«~¸ê°T / Authenex¨t¦C / ¥OµPÃþ«¬²£«~
Authenex¨t¦C--¥OµPÃþ«¬²£«~
²£«~¤¶²Ð>
> «¬¿ý¤U¸ü
   AKey-V3
   AKey-V4
   ACert
> §Þ³N¤å¥ó
> ¬ÛÃö·s»D³ø¾É
> ±`¨£°ÝÃD»P¦^µª
Authenex Token ²£«~ (A-Key)
Authenex A-Key¬°²Å¦XOATH¼Ð·Ç¡A²Ä¤@­Ó°Ý¥«ªºÂù¦]¯À»{ÃÒ¥OµP¡A¨ä¦h¿ï¾Ü©Êªº¨Ï¥Î¤è¦¡¡A¿W¯Sªº²£«~¯S©Ê¡A§¹µ½ªº«OÅ@±¹¬I©M¦X²zªº»ù®æµ¦²¤¡A¤w¨ü¨ì«È¤áªº«C·ý¡A¤Þ°_¼s¤jªº°jÅT¡C¦bºô»Úºô¸ô¦êÁp¥þ²yªº®É¥N¡AAuthenex A-Key¬O±z±j¤Æºô¸ô¦w¥þ©óÂù¦]¯À±j¤O¨­¥÷»{ÃÒ¤è®×ªº³Ì¨Î¿ï¾Ü¡C

«D±µÄ²¦¡OTP

A-Key OTP (One Time Password)

A-Key OTP¹B§@¤è¦¡¬O±N²Å¦X¬ü°ê°ê®a¼Ð·Ç(FIPS)©Ò­q©w¤§¶Ã¼Æºtºâªk´ú¡]FIPS compliance Seed¡A¥i¥Ñ«È¤á¦Û¤v´Ó¤J­ì¼t¤]¤£ª¾¹Dªº¶Ã¼Æ¦]¤l¡A§Y­ì¼t¤]µLªkª¾¹DOTP¤§µ²ªG¡^¡A´Ó¤J¨C¤@­Ó°ß¤@ªº¥OµP¡A¹B¥Î(AES, SHA-1, HMAC-1)µ¥¥[±K©MÂø´ê¨ç¼Æ²£¥Í»P«ö¤@¦¸´NÅã¥Ü¦bLCD¿Ã¹õ¤W¤§6¦ì¼Æ¦r°ÊºA±K½X¡Cªì¦¸¨Ï¥Î®ÉÃþ¦üATM´£´Ú¥d¨Ï¥Î¤è¦¡¡A¨Ï¥ÎªÌ»Ý«Ø¥ßPIN number(¥i¬°¤å¼Æ¦r°ÑÂø) ¡F¶}¥d¦¨¥\«á¡A¤é«á¨Ï¥Î®É¡A§Y§ï¥Ñ°ÊºA±K½X¤è¦¡¡A¿é¤JDynamic Password( = One Time Password + PIN) ¡A¨ú¥N­ì¦³ÀRºA±K½X¡CDynamic Password»P«áºÝ¤§»{ÃÒ¦øªA¾¹(Authenex ASAS or AOne)³s½u»{ÃÒ¦¨¥\«á¡A§Y¥i¤¹³\¨Ï¥ÎªÌ¶i¤J¨t²Î¤¤¡C


A-Key OTP²£¥Í¤è¦¡¡G

OTP Generate (random 1280-bit) - Customer can generate by themself
- ºØ¤l­È - ¤@­Ó¶Ã¼Æ­È (FIPS compliant)
FIPS compliant random generator and passed into token through a public key from token or certificate generated by the token.
- OTP ºtºâªk«h - AES, SHA-1 and HMAC-1



A-Key OTP ¨Ï¥Î¤è¦¡¡G

¨BÆJ¤@¡G
«ö¤UA-Key¤W¤§OTP«ö¶s¡ALCD¿Ã¹õ¤W¡A§YÅã¥Ü°ß¤@¤§OTP±K½X¡C


¨BÆJ¤G¡G
©óµn¤Jµe­±¤W¡AÁä¤J¨Ï¥ÎªÌ¦WºÙ(UID)¤Î°ÊºA±K½X¡C

¨BÆJ¤T¡G
«áºÝ»{µý¦øªA¾¹(ASAS or AOne)§PÂ_°ÊºA±K½X(Dynamic Password)¥¿½T»P§_¡C¬J¨ÏA-Key¿ò¥¢¡A¤£ª¾¹DPIN¡A¤´µMµLªk³q¹L°ÊºA±K½X»{µý¡A¦¹¬°Âù¦]¯À»{µý¤§¯SÂI¡C


A- Key OTP »PÀô¹Òµ²¦X
Authenex»{µý¦øªA¾¹ASAS or AOne³z¹LRadius³q°T¨ó©w¡A¥i»´©ö»P¦UºØ²{¦³Àô¹Òµ²¦X¡CAuthenex¥ç´£¨ÑAPI¡A¨Ñ¦UÃþÀ³¥Îµ{¦¡¥HA-Key OTP¬°±j¤O»{µý¤è¦¡¡A¸Ñ¨M¶Ç²ÎÀRºA±K½X©ö¾D¯}¸Ñ¤Îµs¥Î¤§°ÝÃD¡C(¥H¤U»¡©ú¹Ï¥iÂI¿ï©ñ¤j)

±µÄ²¦¡Challenge/Reponse

A-Key Challenge/Response
A-Key¥ç¥i³z¹LUSB¤¶­±³sµ²¤è¦¡¡A¥HChallenge/Response§Þ³N§@¬°Âù¦]¯À»{ÃÒ¤§¨Ï¥Î¡C¨Ï¥Î®É¡A¥u»Ý±N¥OµP´¡¤JUSB´¡¼Ñ¤¤¡A¿é¤J¨Ï¥ÎªÌ¦Û¤vÁä¤Jªº¶}¥d±K½X¡A«áºÝ»{ÃÒ¦øªA¾¹(Authenex ASAS or AOne)½T»{¥OµP§Ç¸¹»P¶}¥d±K½X¥¿½T«á¡A§Y¥i¤¹³\¨Ï¥ÎªÌ¶i¤J¡C¨Ï¥Î¤¤¡A¥OµP¤@¦ý©Þ°£¡Aºô¸ô³s½u§Y¨è¤¤Â_¡F¸û¶Ç²Î¤§ÀRºA±K½X(UIDF password)¦w¥þ«Ü¦h¡C

A-Key USB¥OµP¤¤¥]§t¤U¦C¤º®e¡G
AES¥[±K³B²z¾¹¡G

¬°A-Key¤§¤j¸£¡A­t³d³B²z128bit AES¤§¥[±K³B²z¡A¤]­t³d»PUSB¤¶­±ªº³q°T³s½u¡A³B²z¾¹¥HAuthenex¿W¯SªºFunction calls¹B§@¡A¨S¦³¥ô¦óªº¥~ÅSµwÅé±µ¸}¥i¨ë±´¸Ì­±ªº¤º®e¡A¤]¨S¦³¥ô¦óŪ¨ú(Read)¥\¯à¥i¯}¸Ñ¨ä¤¤ªº¸ê®Æ¡C

AES°Ï°ì¡G
A-Key¤¤¦s¦³16­ÓAES¥[±K±K½X¡A¨C­ÓAES±K½X¬O128bits¡A¥X¼t®É§Y¤w´Ó¤J§@¬°Challenge/Response¹B§@®ÉÀH¾÷¨Ï¥Î¡A¨C­ÓA-Key¤¤ªº16­ÓAES±K½X³£¤£¤@¼Ë¡Aµ´¤£­«½Æ¡C

A-Key Shared Secret¡G
A-Key¤¤ªºShared Secret°Ï°ì¥]§t¤G­Ó¦¨¥÷¡GIDPAD©MPSS¡C
¡@IDPAD: ¬O¤@²ÕÀRºA±K½X¡Aªø«×¬°2048bits¤Á¦¨256²Õ¡A¨C²Õ
¡@86bits¥X¼t®É¡A¤w¦s¦bA-Key°O¾ÐÅ餤¡C
¡@PSS: Private Shared Secret¡F¬O¤@«D©T©wªº128bits±K½X¡A¬O¦b
¡@ASAS¦øªA¾¹¦w¸Ë®É¥ÑºÞ²z­û²£¥Í«á´Ó¤JA-Key¤¤¡A³o¼Ë¥i
¡@¥H²£¥Í¡A¥u¦³«È¤áª¾¹D¡A­ì¼t¤]¤£ª¾¹Dªº±K½X¡C

°O¾ÐÅé°Ï¡G

A-Key¤¤§t¦³32K Flash memory¡AA-Key¶}¥d±K½X¡]PIN:¥i¬°6~63­Ó¤å¡B¼Æ¦r¡^§Y¬O¥[±K«á¦s¦b¦¹³B¡C¥ç¥i¹B¥Î¦b¦s©ñPKI¾ÌÃҩΨä¥L¸ê°T¡]¦p¡GWindows¾ÌÃÒ¡BÂåÀø¬ö¿ý¡K¡^µ¥¡C


A-Key Challenge/Response¹B§@¤è¦¡¡G¥HFirewall/VPN¬°¨Ò
(¥H¤U»¡©ú¹Ï¥iÂI¿ï©ñ¤j)

PKI¸ü¨ã

A-Key PKI Container
Authenex A-Key is Full PKI Ready¡A´£¨Ñ¾É¤JPKIÀ³¥Î¨t²Î®É¾ÌÃÒ¤§¦w¥þ¦s¨ú¡AA-Key§Y¬O§¹¾ãªºPKI¾ÌÃÒCarrier¡CA-Key ¾ã¦XSmart Card¥[¤WCard Readerªº¥\¯à¡A¤ä´©CCID Compliant¡A¬°¥þ²y­º®a±À¥X¯u¥¿DriverlessªºUSB Token¡C (i.e. ¤@¯ë USB Key ¬°PC/SC¬[ºc¡A¥²¶·¦w¸ËDriver)


*** CCID - Chip Card Interface Devices
PC/SC - PC Smart Card

A-Key¤ä´©¤§³nÅé



A-Key¤ä´©¤§PKI¼Ð·Ç


A-keyµwÅé³W®æ



A-Key¦X§@¹Ù¦ñ¡GVerisign
¥þ²yª¾¦W¾Ìµýµo©ñ±M·~¼t°ÓVerisign»PAuthenex¦@¦P¦X§@¡A±À¼s¾Ìµý¥~±¾¦¡³B²zÆ[©À¡A±N¹q¤l°Ó°È¥æ©ö¡BInternet ¤¬Ápºô¸ô»{µý¡A³Ì­«­nªº¾Ìµý¸ê®ÆÀx¦s©óAuthenex A-Key USB¥OµP¤¤¡A¥HÂù¦]¯À»{µý¤§±j¤O»{µý¤è¦¡¡A±j¤Æºô¸ô¥æ©ö¤§¦w¥þ©Ê¡CVerisignªº±j¤O±ÀÂË¡A¨¬¥HÃÒ©úAuthenex²£«~ªºÀu²§¡A¬OÂù¦]¯À±j¤O»{µýªº³Ì¨Î¿ï¾Ü¡C



¦h¦X¤@»{ÃÒ¥[±K¥d(Total Mobil Device)

¦h¥\¯à¦X¤@±j¤O»{ÃҸѨM¤è®×¬OOATH±À¼sªº·s·§©À¡A¥ç¬O¥¼¨Ó¨­¤À»{ÃÒªº¥D¬y¡AAuthenex A-Key¬O²Ä¤@­Ó²Å¦X¦¹·§©Àªº²£«~¡A¤@­Ó¥OµP¥i²[»\¦hºØ¥\¯à¡A°£¸`¬Ù«Ø¸m¦¨¥»¥~¡A¥ç¬O³Ì«K§Qªº±j¤O»{ÃҸѨM¤è®×¡C


A-key²£«~¯S¦â
Äâ±a«K§Q

ÂêÁ妡³]­p¡A¯à»P®a¥ÎÆ_°Í¤@°_¸m©óÆ_°Í°é¤º¡AÅé¿n¤pÄâ±a¤è«K¡C

¦w¥þ©Ê°ª
¨Ï¥ÎAES¥[±K§Þ³N¨Æ¥ý±N»{ÃÒ¿ìÃѤΦ^À³¾÷¨î´Ó¤J¦Ü¨C¤@§â¿W¤@µL¤GªºÆ_°ÍùØ¡AµLªk¥ô·N§R°£Åܧó¤Î¯}Ãa¨ä¤º®e¡A¼W¥[¨Ï¥Î¦w¥þ©Ê¡C

¨Ï¥Î®e©ö
¤@¦p¨Ï¥Î´£´Ú¥d»â¿ú¤@¼Ë¡A¥u­n»P®a¤¤Æ_°Í¤@°_¦s©ñ¡A«K¤£®e©ö¿ò¥¢¡A¥u­n¦³USB¤¶­±¡AÀH´¡¬J¥Î¡A¦b¨Ï¥Î®ÉÁä¤J6~23½Xªø«×¤§Pin½X«á§Y¥i¹F¨ì»{ÃҤΥ[¸Ñ±Kµ¥¥\¯à¡F§Y¨Ï¿ò¥¢¡A¨ÌµM«O¦³¦w¥þ©Ê¡C

µLªkÀH·N½Æ»s
¨C¤@§âA-Key¬Ò¤º«Ø¿W¤@µL¤G±MÄݧǸ¹¡A¨Ã¥B¯à¥ô·N²£¥Í4096-bit ªø«×ªºshared secret¡A¥H½T«O¨C¤@¤äkey¥»¨­©Î¬O¶i¦æ»{ÃÒ¦^À³®É¡A¬°°ß¤@¥i«H¿àªº¡C

¦h¥\¯à©Ê
¥i¬°°ÊºA±K½X(Two factor Authentication)¡A¥ç¥i§@¬°¹q¤l¾Ìµý SMART CARD¡A·íµM¥i²V¦X¨Ï¥Î¡A¦P®É¥i§¹¦¨ÀÉ®×¶Ç¿é³B²z¡C

PKI-Ready
A-KEY¤º§t16~32KB password-action°O¾ÐÅé¡A¥i¦s¨ú¦h­Ó¹q¤l¾Ìµý¡C

¥Î³~¼sªx
¯à¾A¥Î©ó¦UºØAuthenex¼Æ¦ì¦w¥þ¨t²Î¤¤¡A´£¤É¥i¥Î©Ê¡C

A-Key «OÅ@±¹¬I
(¥H¤U»¡©ú¹Ï¥iÂI¿ï©ñ¤j)




All-Round Strong Authentication
¨­¤À»{ÃÒ¨t²Îªº§¹¬ü¾ã¦X(¥H¤U¹Ï¥iÂI¿ï©ñ¤j)



¥OµPÃþ«¬²£«~
> «D±µÄ²¦¡OTP
> ±µÄ²¦¡Challenge/Response

> PKI¸ü¨ã
> ¦h¦X¤@»{ÃÒ¥[±K¥d
»{ÃÒ¦øªA¾¹²£«~
> ASAS
¨ä¥L¼Ò²Õ
> HD Lock

¨È¤Ó«H®§ªÑ¥÷¦³­­¤½¥q   INFOSOURCE CO., LTD.
»O¥_¥«11070°ò¶©¸ô¤@¬q163¸¹10¼Ó¤§2   Tel:+886-2-3765 2726   Fax:+886-2-3765 2730
ÂsÄý«ØÄ³   ¦Ü¤Ö800*600Åã¥Ü¸ÑªR«×¡A¨Ã¨Ï¥ÎIE6.0¥H¤W¤§ÂsÄý¾¹