Skip to main content

The WiKID Blog

The WiKID Blog, musings on two-factor authentication, information security and some other stuff.

Marcus Ranum on Gartner on Two-factor Authentication

Here's a great post by Marcus Ranum on Gartner's recent pronouncements about two-factor authentication:

Agency problems in the PCI world?

If you are a PCI QSA or a PCI merchant or processor, you might enjoy this article about the relationship between the QSA and the client.  The entire PCI eco-system is quite fascinating.  There's definitely potential for an agency issue in that QSAs are paid by their clients to enforce the PCI Counsel's regulations. 

Avivah Litan on Two-factor authentication

Gartner analyst Avivah Litan has released a new report on how attackers are circumventing the protections provided by two-factor authentication systems for online banking. I have not purchased nor read the document, just the summaries that have been released.

The importance of using standard authentication protocols

A theme in my recent talks at various information security conferences has been that you should choose a good authentication protocol and then choose products that support that protocol.  I recommend Radius because it is quite simple and a very standard standard, which is not always the case with IT standards.

Website/Test site issues

As you may have noticed, we have had some problems with some of our servers and services.  We apologize for the inconvenience.  We have most things back up now, but not all. 

Recent Posts

Archive

2024
2022
2021
2019
2018
2017
2016
2015
2014
2013
2012
2011
2010
2009
2008

Categories

Tags

Authors

Feeds

RSS / Atom