Previous Topic: Strong Authentication MechanismsNext Topic: ArcotID PKI Features


ArcotID PKI

ArcotID PKI is a CA-proprietary secure software credential that provides strong authentication. This credential is used for primary authentication. It protects a user’s credentials by using the patented Cryptographic Camouflage key concealment technology. ArcotID PKI can be used to authenticate to a website or other online resource, through a Web browser.

ArcotID PKI is a small data file that resides on the end user’s desktop or mobile device. The credential is pushed to the user’s device when an end user tries to access a protected resource the first time. During subsequent logins, the user authenticates by providing the user name and LDAP password. Behind the scenes, the Advanced Authentication service verifies the user’s identity by accessing the ArcotID PKI credential and then provides access to the resource.

In addition to authenticating the end user, this solution also verifies the authenticity of the site that is requesting for the end user’s credentials, ensuring that the user is not providing credentials to a spurious site. Each ArcotID PKI credential contains information about the web domain that issued the credential. This information is used to check whether the site requesting the credential is in fact the same site that issued it. If the site requesting the credential did not issue it, the transaction fails, preventing identity theft and fraud.