Download as pdf or txt
Download as pdf or txt
You are on page 1of 3

IBM Power Systems

Data Sheet

IBM® PowerSC™ MFA


Raising the assurance level of systems
with multi-factor authentication

Securing access to systems is no longer a nice-to-


Highlights have option to protect IT environments. With today's

Increases the security level of Power
IT security threats and the high stakes impact of a
Systems security breach, passwords are no longer adequate

Supports many authentication factors to protect against unwanted intruders. Furthermore,

Supports in-band and out-of-band industries and governments are now requiring
authentication increased IT security through standards including

Provides a centralized web UI PCI for the financial industry and GDPR for Europe.

Supports AIX, IBM i and Linux on Power IBM® PowerSC™ MFA provides a solution to meet
Systems
these challenges by raising the assurance level of
systems with multi-factor authentication.

IBM® PowerSC™ MFA leverages two or more things


that identify you. The first factor is something you
know, like a password or PIN. The second factor is
something you have, like an ID badge, an email, or a
phone. The third most advanced factor is something
you are—which is a fingerprint, a retinal scan, or
facial recognition.

The underlying principle of the IBM® PowerSC™ MFA


protocol is that it leverages these factors in a policy-
based solution. IBM® PowerSC™ MFA manages
policies and factors in an easy to use web-based UI.
IBM Power Systems
Data Sheet

Multi-Authentication Concept

IBM® PowerSC™ MFA relies on multiple authentication factors including something you know
(password), something you have (PIV/CAC card), and something you are (fingerprint).

Supported Factors

IBM® PowerSC™ MFA supports many types of factors:


- RSA SecurID Tokens (hard- & software-based)
- Personal Identity Verification (PIV) and Common Access Card (CAC),
- IBM TOTP (time based one-time password)
- RADIUS protocol support (Generic, Gemalto SafeNet, and RSA SecurID )
- Yubikey

In-Band Authentication

The in-band PIV/CAC authentication type is a special use case in which the AIX and Linux on
Power operating systems have a smart card directly attached to the USB port.

Out-of-Band Authentication

The IBM® PowerSC™ MFA out-of-band authentication type requires the user to authenticate to
the out-of-band web page with one or more factors to retrieve an authentication code called a
cache token credential (CTC).

Cache Token Credential (CTC)

IBM® PowerSC™ MFA utilizes cache token credentials that can be managed at the policy level. The
token supports a fast path for subsequent logins.

2
IBM Power Systems
Data Sheet

Why IBM?
IBM has over 105 years of aligning continuous
innovation with our customers' business
needs. With IBM's focus on delivering high
performance secure systems and software,
PowerSC MFA fits right in to raise the © Copyright IBM Corporation 2020
assurance level of systems by requiring extra
authentication factors. PowerSC MFA is a IBM Systems
policy-based solution that provides 11501 Burnet Road
Austin, TX 78758
administrators with the flexibility to create
their own multi-factor authentication Produced in the United States of America
combination. It leverages a centralized UI, September 2020
making PowerSC MFA easy to set up and easy IBM, the IBM logo, ibm.com, AIX, Power Systems, PowerVM, PowerSC,
to use. Power Systems Software, QRadar, and POWER8 are trademarks of
International Business Machines Corporation in the United States, other
countries or both. If these and other IBM trademarked terms are marked
on their first occurrence in this information with a trademark symbol
For More Information (® or ™), these symbols indicate U.S. registered or common law
trademarks owned by IBM at the time this information was published.
Tolearn more about IBM PowerSC MFA, please
Such trademarks may also be registered or common law trademarks in
contact your IBM marketing representative or IBM
Business Partner, or visit the following website: other countries. A current list of IBM trademarks is available on the web at
https://www.ibm.com/products/powersc “Copyright and trademark information” at ibm.com/legal/copytrade.shtml

Other company, product or service names may be trademarks or service


marks of others.

This document is current as of the initial date of publication and may be


changed by IBM at any time.

THE INFORMATION IN THIS DOCUMENT IS PROVIDED


“AS IS” WITHOUT ANY WARRANTY, EXPRESS OR
IMPLIED, INCLUDING WITHOUT ANY WARRANTIES
OF MERCHANTABILITY, FITNESS FOR A PARTICULAR
PURPOSE AND ANY WARRANTY OR CONDITION OF
NON-INFRINGEMENT. IBM products are warranted according to the
terms and conditions of the agreements under which they are provided.

Please Recycle

You might also like