Bookmark this page

Summary

  • IdM supports smart card authentication through Public Key Cryptography for Initial Authentication in Kerberos (PKINIT).

  • Vault containers are created automatically and can contain one or more vaults.

  • There are three vault types with different levels of encryption; standard, symmetric, and asymmetric.

  • Many services can use Kerberos for authentication, allowing automatic authentication for user principals.

  • IdM enables two-factor authentication (2FA) through the support of smart cards and one-time passwords (OTP).

  • Tokens using either HMAC-based One-time Password (HOTP) or Time-based One-time Password (TOTP) algorithms are supported.

Revision: rh362-9.1-4c6fdb8