Advertisement
Promo

Security threats Toolkit

RSA pushes usability in security

Peter Judge ZDNet.co.uk

Published: 09 Oct 2002 09:31 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

RSA Security is putting usability at the head of its product goals, as it hopes that future authentication products will be used more widely -- by administrators, not security specialists. The latest version of its Web authentication product, ClearTrust 5.0, is intended to be more usable, and more interoperable with other products than previous versions.

"There are 13 million security tokens out there, but there are tens of millions of passwords," said Art Coviello, chief executive of RSA Security, introducing the new version. "It's our job to eliminate them." Two-factor security based on tokens will have to replace the current single-factor method based on passwords, he said.

Single-factor security, most often exemplified by user IDs and passwords, is based on a very simple premise: what you know. In contrast, two-factor security isn't limited to what you know. It's also "what you have."

Introducing two-factor security into the workplace means making it easier to use than it has been previously, added Coviello.

John Worrall, marketing vice president of RSA, said usability had been high on the list of priorities during development of ClearTrust 5.0. With this version, said Worrall, "ClearTrust has gone through our usability lab for the first time."

There is an imperative to make such security products easy to use, he said. "In future the security market is not a niche. If the user interface is not good enough, it will slow down user acceptance." Previous RSA products have been aimed at expert security administrators.

RSA Security now has the same user interface on its ClearTrust and RSA mobile products (RSA mobile sends a one-time authentication code to the user's mobile phone) so administrators will find it easier to handle both. "There is a consistent methodology for the solution in both spaces," said Worrall, promising that future RSA products will have the same user interface.

ClearTrust 5.0 is the second version of the product to come from RSA, since the company bought ClearTrust's developer Securant in September 2001. Other new features include compliance with the Oasis group's markup language for security assertions, SAML, and better integration with RSA's other products, Keon digital certificate management and BSAFE encryption

RSA employs one usability specialist, but it has a usability lab where potential partners and users can try out pages built with different principles. "We want to map the user interface to the way things work," said Worrall.

Peter Judge reported from the RSA Conference in Paris.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Have your say instantly, and see what others have said. Go to the Security forum.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
69 out of 96 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:











Video icon

Video

Sentry Posts Blog

McKinnon lawyers seek judicial review

Lawyers seeking a judicial review for Nasa hacker Gary McKinnon lodged fresh evidence of his psychiatric state at the High Court on Thursday. Karen Todner, McKinnon's solicitor,... More

1 comment

Beware of keeping your head in the clo...

Information security professionals can look forward to a deepening appreciation for their skills as security continues to be recognised as an essential element for doing business in... More

1 comment

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters