Educause Security Discussion mailing list archives
REN-ISAC TechBurst - January 19, 2021 - The Future is Now - How Authentication Standards are Changing
From: "Starzynski Coddens, Amy Catherine" <astarzyn () REN-ISAC NET>
Date: Tue, 19 Jan 2021 10:43:58 -0500
Good Morning! There is a REN-ISAC TechBurst today over the noon hour featuring Johannes Ullrich of the SANS Technology Institute. This TechBurst is free and open to the public. Information is below. v/r, Amy Starzynski Coddens Date: Tuesday, January 19, 2021 Time: Noon (12:00) ET Audience [1]: [Pb] **Open to the public** Speaker: Johannes Ullrich, Dean of Research for SANS Technology Institute DESCRIPTION =========== We all know that passwords don’t work, and two-factor authentication is inconvenient for users. So how do we authenticate users securely, with low friction across various platforms. Luckily, emerging standards are attempting to solve this problem. One of the prominent solutions currently being implemented, FIDO2, tries to take advantage of ubiquitous biometric sensors and leveraging them to authenticate users to standards-based web applications. The standard provides APIs to leverage existing biometric sensors or cryptographic keys to authenticate users while at the same time taking increasing privacy concerns into account. In this presentation, you will learn the basic protocols used in these authentication schemes, how to implement this type of authentication, and what options you have to make the experience enjoyable and straightforward for your users. In particular, this will take into account mobile web applications that have been difficult to secure with strong passwords and legacy two-factor authentication systems. SPEAKER BIO: ============== Johannes Ullrich, Dean of Research, SANS Technology Institute Johannes is currently responsible for the SANS Internet Storm Center (ISC) and the GIAC Gold program. In 2000, he founded DShield.org, which is now the data collection engine behind the ISC. His work with the ISC has been widely recognized, and in 2004, Network World named him one of the 50 most powerful people in the networking industry. Prior to working for SANS, Johannes worked as a lead support engineer for a web development company and as a research physicist. Johannes holds a PhD in physics from SUNY Albany and is based in Jacksonville, Florida. His daily podcast summarizes current security news in a concise format. ------------------------------- [1] INFORMATION SHARING GUIDANCE: TechBursts are limited to REN-ISAC members unless marked with one of the following exception tags: - "MG" (Members and Guests) sessions are open to members and hosted, trusted guests of members. Access to MG TechBursts require authentication with a REN-ISAC userid and password. So, guests must view the webcast with the member present. - "Pb" (Public) indicates a session is open to the public. How to join the live session: Sign in via the Events page in our public web site: https://www.ren-isac.net/calendar/index.html (The link will be active shortly before the TechBurst begins.) **If you plan to attend and will need a password reset, you should do that as early as possible. There is a 5 minute delay for password synchronization across systems.** **This TechBurst will be archived.** During the session you can ask questions via the Q&A tool included in the Zoom Webinar tool. Please note that only you, the Host(s), and the Presenter(s) will see your question. You may also send questions to techburst () ren-isac net ********** Replies to EDUCAUSE Community Group emails are sent to the entire community list. If you want to reply only to the person who sent the message, copy and paste their email address and forward the email reply. Additional participation and subscription information can be found at https://www.educause.edu/community
Current thread:
- REN-ISAC TechBurst - January 19, 2021 - The Future is Now - How Authentication Standards are Changing Starzynski Coddens, Amy Catherine (Jan 19)
