Card and Credential Management
Organizations, more than ever, need to positively identify employees, contractors, and partners for both
physical and logical access. Storing "digital identities" on a secured device, such as a "smart card," is
emerging as a preferred method for positive employee identification. These devices can add security and
convenience to widely used enterprise applications, such as Windows logon, VPN access, network authentication,
digital signatures, file encryption/boot protection, password management, and biometric storage.
Smart cards/tokens are secure devices that enable positive user identification. Private information never leaves the
device and is protected by two-factor security-something that is owned (the smart card) and something that is known
(the smart card PIN). In addition, whenever an employee leaves their work area, the computer is effectively
locked-down by simply removing the smart card or USB token. Access to the user's computer or their applications is
impossible until the user reinserts their smart card or token and correctly enters the PIN.
There are many things that must be considered when deploying smart cards or USB tokens for enterprise-wide digital identity:
- What data or digital credentials will be put on the card/token?
- If a smart card is selected, will it be integrated with an ID badge?
- How will the card/token be issued to the end user?
- Is there a need to track both the card/token and credentials or to tie them together logically?
- What policies are needed for card/token replacement?
- What happens to the card/token and credentials when an employee leaves the company?
The SafeNet CMS Card and Identity Management System provides the answers to these questions. It is a
Web-based smart card and digital identity management solution for enterprises, used to issue, manage, and
support multiple credentials on a smart card or USB token throughout the organization. The SafeNet CMS offers
both physical and logical personalization of the smart card, which includes badging.
The SafeNet CMS supports multiple issuance methods based on the business requirements of an organization. It
also provides a link between the smart card or USB token, digital credentials, and users for multiple levels of
reporting, auditing, and management purposes. The CMS makes it easier to perform a wide range of critical identity
management activities - everything from requesting or renewing a user's digital credentials to revoking or reissuing
these credentials.