Educause Security Discussion mailing list archives

REN-ISAC TechBurst - January 19, 2021 - The Future is Now - How Authentication Standards are Changing


From: "Starzynski Coddens, Amy Catherine" <astarzyn () REN-ISAC NET>
Date: Tue, 19 Jan 2021 10:43:58 -0500

 Good Morning!

There is a REN-ISAC TechBurst today over the noon hour featuring Johannes Ullrich of the SANS Technology Institute. 
This TechBurst is free and open to the public. Information is below.

 

v/r,

Amy Starzynski Coddens

 

 

Date: Tuesday, January 19, 2021

Time: Noon (12:00) ET

 

Audience [1]: [Pb] **Open to the public**

 

Speaker:

Johannes Ullrich, Dean of Research for SANS Technology Institute

 

DESCRIPTION

===========

 

We all know that passwords don’t work, and two-factor authentication is inconvenient for users. So how do we 
authenticate users securely, with low friction across various platforms.

 

Luckily, emerging standards are attempting to solve this problem. One of the prominent solutions currently being 
implemented, FIDO2, tries to take advantage of ubiquitous biometric sensors and leveraging them to authenticate users 
to standards-based web applications. The standard provides APIs to leverage existing biometric sensors or cryptographic 
keys to authenticate users while at the same time taking increasing privacy concerns into account.

 

In this presentation, you will learn the basic protocols used in these authentication schemes, how to implement this 
type of authentication, and what options you have to make the experience enjoyable and straightforward for your users. 
In particular, this will take into account mobile web applications that have been difficult to secure with strong 
passwords and legacy two-factor authentication systems.

 

 

SPEAKER BIO:

==============

 

Johannes Ullrich, Dean of Research, SANS Technology Institute

Johannes is currently responsible for the SANS Internet Storm Center (ISC) and the GIAC Gold program. In 2000, he 
founded DShield.org, which is now the data collection engine behind the ISC. His work with the ISC has been widely 
recognized, and in 2004, Network World named him one of the 50 most powerful people in the networking industry. Prior 
to working for SANS, Johannes worked as a lead support engineer for a web development company and as a research 
physicist. Johannes holds a PhD in physics from SUNY Albany and is based in Jacksonville, Florida. His daily podcast 
summarizes current security news in a concise format.

 

-------------------------------

 

[1] INFORMATION SHARING GUIDANCE:

TechBursts are limited to REN-ISAC members unless marked with one of the

following exception tags:

 

- "MG" (Members and Guests)  sessions are open to members and hosted,

trusted guests of members. Access to MG TechBursts require

authentication with a REN-ISAC userid and password. So, guests must view

the webcast with the member present.

 

- "Pb" (Public) indicates a session is open to the public.

 

How to join the live session:

 

Sign in via the Events page in our public web site: https://www.ren-isac.net/calendar/index.html

(The link will be active shortly before the TechBurst begins.)

 

**If you plan to attend and will need a password reset, you should do

that as early as possible. There is a 5 minute delay for password

synchronization across systems.**

 

**This TechBurst will be archived.**

 

During the session you can ask questions via the Q&A tool included in the Zoom Webinar tool. Please note that only you, 
the Host(s), and the Presenter(s) will see your question.

You may also send questions to techburst () ren-isac net


**********
Replies to EDUCAUSE Community Group emails are sent to the entire community list. If you want to reply only to the 
person who sent the message, copy and paste their email address and forward the email reply. Additional participation 
and subscription information can be found at https://www.educause.edu/community

Current thread: