Martes, Mayo 14, 2013

How to Prevent DoS ADFS Attacks in Real-time

Many companies and organizations have made the right decision in using the Virtual Identity Server because it can provide additional security and prevention against certain attacks to their databases and Active Directories such as DoS ADFS. The Virtual Identity Server has a line of great features that your organization can benefit from and one of them is providing powerful prevention capabilities for ADFS against denial of service. It has been known the federation implementation can put your AD at risk against this kind of attack and so you need protection that is as good as what the VIS can provide.

The VIS federation services works by protecting the user accounts existing in your AD by acting as cloud firewall, preventing the accounts in it from being inaccessible or suspended. During the implementation of federation, the VIS can also provide organizations with multiple authentication methods for Active Directory Federation Services or ADFS. In fact, it is capable of authenticating users regardless of where they are residing, whether in LDAP directories and SQL databases. A single Security Token Service can authenticate users across AD forests without the need to have or set up multiple servers for ADFS or any AD forest trusts.

This feature of the VIS can be trusted by and extended as well in an existing deployment of Active Directory Federation Service but it can also be used as an independent program. It can provide OOB methods of authentication for your ADFS and can also support 2-factor ADFS authentication. This extensibility of the VIS enables you to incorporate with any 2-factor solution. Another excellent feature of the VIS is it can provide you with detailed and complete auditing ADFS. This works by providing you with complete audit logs detailing the user who performed the authentication and when it is done as well as identifying the claims. 

Walang komento:

Mag-post ng isang Komento