SlideShare a Scribd company logo
Understanding PortalGuard’s


Centralized Self-service Password Reset:
  From the Web and Windows Desktop




  Highlighting the Self-service Password Reset Layer of the
                    PortalGuard Platform
By the end of this tutorial you will be able to…

 • Define PortalGuard
 • Understand the challenges to finding the right self-service tool
 • Discover PortalGuard’s Centralized Self-service Password Reset
 • See the Step-by-step Authentication Process
 • Know the Technical Requirements
The PortalGuard software is a Contextual Authentication platform
   which is focused on enhancing usability, while maintaining a
 balance between security, auditing and compliance for your web,
                 desktop and mobile applications.

   Usability                       Security
   • Single Sign-on                • Knowledge-based
   • Password Management           • Two-factor Authentication
   • Password Synchronization      • Contextual Authentication
   • Self-service Password Reset   • Real-time Reports/Alerts
Before going into the details…

• Exact same user interface for both the Web and Windows Desktop
• Support roaming - challenge questions stored in central server location
• Password reset from an iPad or mobile phone
• Use two-factor authentication to further verify user’s identity
• Support disconnected/offline users - using password recovery
• PortalGuard supports any LDAP compliant directory
• Encrypted drives are supported
• Tiny footprint on the Windows desktop
• Side-car mode - add self-service functionality to existing login screens
• Verbal Authentication to prove caller’s identity
Supporting users can prove taxing…
Shopping for the right tool can be challenging…

What are your requirements?


                            What are your budget and Help Desk costs?


        Are the vendors I’m looking at offering up-to-date features?


      • Disconnected/Offline user support
      • Auditing
      • Mobile phone support
Self-service password reset is…

The process that a user initiates to prove their identity with
the end goal of resetting their password.

Self-service password recovery is…

The process that a user initiates to prove their identity with
the end goal of obtaining the current password value
without changing it.



                            + OTP
PortalGuard’s SSPR…
Is flexible and offers a complete solution which has evolved
with industry demands.
PortalGuard’s SSPR…
Is flexible and offers a complete solution which has evolved
with industry demands.


• Password Reset

• Password Recovery

• Account Unlock
PortalGuard’s SSPR…
Is flexible and offers a complete solution which has evolved
with industry demands.




Disconnected/Offline
 Password Recovery
PortalGuard’s SSPR…
Is flexible and offers a complete solution which has evolved
with industry demands.




                                              OTP
FEATURES
General Features:

•   Provides password reset, recovery and account unlock
•   Disconnected/Offline user support
•   Forced user enrollment (optional)
•   Integrates with AD, Novell eDirectory or any LDAP-compliant
    directories and custom SQL user repositories
•   Encrypted hard drive support
•   Supports multiple authentication methods
•   Email notifications of password resets to both admin and/or user
•   Lock-out thresholds
•   Mobile browser support
Challenge Questions & Answers Features:

•   Centralized – challenge information stored on server
•   Configurable number of mandatory/optional questions
•   Allows import/pre-population of challenge answers
•   Prevent repeat answers for multiple challenge questions
•   Prevent answers from containing words from the question text
•   Answers can be case sensitive
•   Configurable minimum length for challenge answers
Administrative Features:

• Help Desk Console – provide interface for HD staff
• Verbal Authentication – allows HD staff to authenticate a caller
• Administrator Dashboard
Windows Desktop Support:

  • Supports Windows versions XP, Vista and Windows 7
  • Self-service directly from Ctrl+Alt+Del Windows logon screen
• Increased Usability - users are now empowered to self-service
  their own needs and maintain productivity
• Increased Security - provides two-factor authentication
• Centralized Solution - same user interface for both the web and
  Windows desktop
• No Kiosks - perform all self-service actions directly from the
  user’s machine
• No Guest Accounts - all actions are performed from the user’s
  primary account
• Reduced Costs – alleviate password-related Help Desk calls and
  demands on IT staff
• Flexibility - configurable to the user, group or application levels
• Seamless Integration - use “sidecar” mode to retrofit existing
  application login screens
HOW IT WORKS
PortalGuard provides flexibility…
Allows you to configure whether the enrollment will be forced or able to
be postponed “x” number of times by the user.
The Enrollment Process
Step 1: The user attempts to login to a company’s portal as usual.
The Enrollment Process
Step 2: In this case, the user has not yet enrolled their challenge
information so PortalGuard automatically displays the enrollment screen
in “sidecar” mode.
The Enrollment Process
Step 3: The user is prompted to provide answers to the challenge
questions.
The Enrollment Process

Step 4: The process is complete and the user is now enrolled.
Step 1:
The user attempts to login to a company’s existing portal but has
forgotten their password. The user then clicks the “Forgot your
password?” link.
Step 2:

The user selects from the “Recovery Actions Available” which self-
service action they would like to perform. The user selects the “Reset
Forgotten Password” radio button and clicks “Continue”.
Step 3:

The user is then prompted to provide their enrolled answers to the
enrolled challenge questions. Once the user has supplied the answers
they click “Continue”.
Step 4:
The user’s identity has been verified and they are able to set a new
password.
Configurable through the PortalGuard Configuration Utility:




• Self-service options
  available to users

• Authentication types
  available for each self-
  service action
Configurable through the PortalGuard Configuration Utility:

• Enrollment - optional,
  required or disabled

• Recovery lockout limit

• Answer complexity

• Number of optional
  questions

• Number of mandatory
  questions
Configurable through the PortalGuard Configuration Utility:

Mobile Phone:

• Enrollment - optional,
  required or disabled

• Phone number format

• Delivery format
Configurable through the PortalGuard Configuration Utility:
Email:

• Enrollment - optional,
  required or disabled

• Domain blacklist

• Email display

• Email format including
  From, Subject and
  Body fields
Configurable through the PortalGuard Configuration Utility:
Notifications:

• Type of self-service
  including account
  unlock, password
  reset and recovery
TECHNICAL REQUIREMENTS
A MSI is used to install PortalGuard on IIS 6 or 7.x.
This version of PortalGuard supports direct access and authentication
to cloud/browser-based applications, only.

•   IBM WebSphere/WebSphere Portal v5.1 or higher
•   Microsoft IIS 6.0 or higher
•   Microsoft Windows SharePoint Services 3.0 or higher
•   Microsoft Office SharePoint Server 2007 or later

• .NET 2.0 framework or later must be installed
• (64-bit OS only) Microsoft Visual C++ 2005 SP1 Redistributable Package (x64)

•   Microsoft Windows Server 2000
•   Microsoft Windows Server 2003 (32 or 64-bit)
•   Microsoft Windows Server 2008 (32 or 64-bit)
•   Microsoft Windows Server 2008 R2
THANK YOU
For more information visit PortalGuard.com or Contact Us

More Related Content

PPT
Palo alto networks next generation firewalls
PDF
Office vs Office 365 : quelles différences? [Webinaire]
PPTX
Microsoft Azure ad in 10 slides
PDF
3 palo alto ngfw architecture overview
PPTX
Network Management Fundamentals - Back to the Basics
PPTX
Managing iOS with Microsoft Intune
PPTX
Word Lesson 1a powerpoint
PPT
Introduction to Microsoft PowerPoint 2010 for Microsoft Windows Slides
Palo alto networks next generation firewalls
Office vs Office 365 : quelles différences? [Webinaire]
Microsoft Azure ad in 10 slides
3 palo alto ngfw architecture overview
Network Management Fundamentals - Back to the Basics
Managing iOS with Microsoft Intune
Word Lesson 1a powerpoint
Introduction to Microsoft PowerPoint 2010 for Microsoft Windows Slides

What's hot (20)

PPTX
PPT Lesson 1
PPTX
Microsoft Office 365 Presentation
PPTX
Top 10 cloud service providers
PDF
Microsoft OneDrive For Business
PDF
Distinguishing, Evaluating, and Selecting Cloud Service Providers
PPT
Cloud computing by Bharat Bodage
PPTX
End to End Guide Windows AutoPilot Process via Intune
PDF
309675745
PPTX
PACE-IT, Security+3.4: Summary of Wireless Attacks
PDF
Application Centric Infrastructure (ACI), the policy driven data centre
PDF
Productivity and Security with Microsoft 365 and the Modern Desktop
PPTX
Microsoft Azure Overview Class 1
PPTX
Introduction to Cloud Computing
PDF
Automating for Monitoring and Troubleshooting your Cisco IOS Network
PDF
Sample User Manual
PDF
17 palo alto threat prevention concept
PPTX
PPT Lesson 2
PPTX
OneDrive Presentation
PPT Lesson 1
Microsoft Office 365 Presentation
Top 10 cloud service providers
Microsoft OneDrive For Business
Distinguishing, Evaluating, and Selecting Cloud Service Providers
Cloud computing by Bharat Bodage
End to End Guide Windows AutoPilot Process via Intune
309675745
PACE-IT, Security+3.4: Summary of Wireless Attacks
Application Centric Infrastructure (ACI), the policy driven data centre
Productivity and Security with Microsoft 365 and the Modern Desktop
Microsoft Azure Overview Class 1
Introduction to Cloud Computing
Automating for Monitoring and Troubleshooting your Cisco IOS Network
Sample User Manual
17 palo alto threat prevention concept
PPT Lesson 2
OneDrive Presentation
Ad

Similar to Self-service Password Reset (20)

PDF
Two-factor Authentication
PDF
Password Synchronization
PDF
Twofactorauthentication 120625115723-phpapp01
PDF
Centralized Self-service Password Reset: From the Web and Windows Desktop
PDF
Context Based Authentication
PPTX
PortalGuard Product Tour
PPTX
Introduction to Azure AD and Azure AD B2C
PPTX
Code your Own: Authentication Provider for Blackboard Learn
DOC
Satheesh.G_IDM
PDF
PPTX
Student Debt Solutions
PDF
Maximizing Value
PDF
#MFSummit2016 Secure: Is your mainframe less secure than your fileserver
PDF
Envision it Webinar - Extranet Identity Management and Authentication for Sha...
PDF
Envision it SharePoint Extranet Webinar Series - Federation and SharePoint On...
PDF
Deep Dive into the PeopleSoft Alert Framework
PPTX
Self-service password management and single sign-on for on-premises AD and cl...
PDF
LifeOffice.net - Insurance Systems Built for Cloud
PDF
Identity as a Managed Cloud Service
PDF
Managing Passwords for Mobile Users
Two-factor Authentication
Password Synchronization
Twofactorauthentication 120625115723-phpapp01
Centralized Self-service Password Reset: From the Web and Windows Desktop
Context Based Authentication
PortalGuard Product Tour
Introduction to Azure AD and Azure AD B2C
Code your Own: Authentication Provider for Blackboard Learn
Satheesh.G_IDM
Student Debt Solutions
Maximizing Value
#MFSummit2016 Secure: Is your mainframe less secure than your fileserver
Envision it Webinar - Extranet Identity Management and Authentication for Sha...
Envision it SharePoint Extranet Webinar Series - Federation and SharePoint On...
Deep Dive into the PeopleSoft Alert Framework
Self-service password management and single sign-on for on-premises AD and cl...
LifeOffice.net - Insurance Systems Built for Cloud
Identity as a Managed Cloud Service
Managing Passwords for Mobile Users
Ad

More from PortalGuard dba PistolStar, Inc. (7)

PPTX
The Cost and Loss of Not using Single Sign-On with Two-Factor Authentication
PDF
PDF
Password Synchronization
PDF
Self-service Password Reset
PDF
Two-factor Authentication
PDF
Contextual Authentication
PPTX
Make Your Employees More Security Aware
The Cost and Loss of Not using Single Sign-On with Two-Factor Authentication
Password Synchronization
Self-service Password Reset
Two-factor Authentication
Contextual Authentication
Make Your Employees More Security Aware

Recently uploaded (20)

PDF
Hybrid model detection and classification of lung cancer
PDF
Assigned Numbers - 2025 - Bluetooth® Document
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
project resource management chapter-09.pdf
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
Web App vs Mobile App What Should You Build First.pdf
PDF
From MVP to Full-Scale Product A Startup’s Software Journey.pdf
PPTX
Tartificialntelligence_presentation.pptx
PPTX
Group 1 Presentation -Planning and Decision Making .pptx
PDF
1 - Historical Antecedents, Social Consideration.pdf
PDF
Mushroom cultivation and it's methods.pdf
PDF
Heart disease approach using modified random forest and particle swarm optimi...
PDF
A novel scalable deep ensemble learning framework for big data classification...
PPTX
SOPHOS-XG Firewall Administrator PPT.pptx
PDF
Encapsulation theory and applications.pdf
PDF
Encapsulation_ Review paper, used for researhc scholars
PDF
A comparative study of natural language inference in Swahili using monolingua...
PDF
Microsoft Solutions Partner Drive Digital Transformation with D365.pdf
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PPTX
OMC Textile Division Presentation 2021.pptx
Hybrid model detection and classification of lung cancer
Assigned Numbers - 2025 - Bluetooth® Document
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
project resource management chapter-09.pdf
Unlocking AI with Model Context Protocol (MCP)
Web App vs Mobile App What Should You Build First.pdf
From MVP to Full-Scale Product A Startup’s Software Journey.pdf
Tartificialntelligence_presentation.pptx
Group 1 Presentation -Planning and Decision Making .pptx
1 - Historical Antecedents, Social Consideration.pdf
Mushroom cultivation and it's methods.pdf
Heart disease approach using modified random forest and particle swarm optimi...
A novel scalable deep ensemble learning framework for big data classification...
SOPHOS-XG Firewall Administrator PPT.pptx
Encapsulation theory and applications.pdf
Encapsulation_ Review paper, used for researhc scholars
A comparative study of natural language inference in Swahili using monolingua...
Microsoft Solutions Partner Drive Digital Transformation with D365.pdf
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
OMC Textile Division Presentation 2021.pptx

Self-service Password Reset

  • 1. Understanding PortalGuard’s Centralized Self-service Password Reset: From the Web and Windows Desktop Highlighting the Self-service Password Reset Layer of the PortalGuard Platform
  • 2. By the end of this tutorial you will be able to… • Define PortalGuard • Understand the challenges to finding the right self-service tool • Discover PortalGuard’s Centralized Self-service Password Reset • See the Step-by-step Authentication Process • Know the Technical Requirements
  • 3. The PortalGuard software is a Contextual Authentication platform which is focused on enhancing usability, while maintaining a balance between security, auditing and compliance for your web, desktop and mobile applications. Usability Security • Single Sign-on • Knowledge-based • Password Management • Two-factor Authentication • Password Synchronization • Contextual Authentication • Self-service Password Reset • Real-time Reports/Alerts
  • 4. Before going into the details… • Exact same user interface for both the Web and Windows Desktop • Support roaming - challenge questions stored in central server location • Password reset from an iPad or mobile phone • Use two-factor authentication to further verify user’s identity • Support disconnected/offline users - using password recovery • PortalGuard supports any LDAP compliant directory • Encrypted drives are supported • Tiny footprint on the Windows desktop • Side-car mode - add self-service functionality to existing login screens • Verbal Authentication to prove caller’s identity
  • 5. Supporting users can prove taxing…
  • 6. Shopping for the right tool can be challenging… What are your requirements? What are your budget and Help Desk costs? Are the vendors I’m looking at offering up-to-date features? • Disconnected/Offline user support • Auditing • Mobile phone support
  • 7. Self-service password reset is… The process that a user initiates to prove their identity with the end goal of resetting their password. Self-service password recovery is… The process that a user initiates to prove their identity with the end goal of obtaining the current password value without changing it. + OTP
  • 8. PortalGuard’s SSPR… Is flexible and offers a complete solution which has evolved with industry demands.
  • 9. PortalGuard’s SSPR… Is flexible and offers a complete solution which has evolved with industry demands. • Password Reset • Password Recovery • Account Unlock
  • 10. PortalGuard’s SSPR… Is flexible and offers a complete solution which has evolved with industry demands. Disconnected/Offline Password Recovery
  • 11. PortalGuard’s SSPR… Is flexible and offers a complete solution which has evolved with industry demands. OTP
  • 13. General Features: • Provides password reset, recovery and account unlock • Disconnected/Offline user support • Forced user enrollment (optional) • Integrates with AD, Novell eDirectory or any LDAP-compliant directories and custom SQL user repositories • Encrypted hard drive support • Supports multiple authentication methods • Email notifications of password resets to both admin and/or user • Lock-out thresholds • Mobile browser support
  • 14. Challenge Questions & Answers Features: • Centralized – challenge information stored on server • Configurable number of mandatory/optional questions • Allows import/pre-population of challenge answers • Prevent repeat answers for multiple challenge questions • Prevent answers from containing words from the question text • Answers can be case sensitive • Configurable minimum length for challenge answers
  • 15. Administrative Features: • Help Desk Console – provide interface for HD staff • Verbal Authentication – allows HD staff to authenticate a caller • Administrator Dashboard
  • 16. Windows Desktop Support: • Supports Windows versions XP, Vista and Windows 7 • Self-service directly from Ctrl+Alt+Del Windows logon screen
  • 17. • Increased Usability - users are now empowered to self-service their own needs and maintain productivity • Increased Security - provides two-factor authentication • Centralized Solution - same user interface for both the web and Windows desktop • No Kiosks - perform all self-service actions directly from the user’s machine • No Guest Accounts - all actions are performed from the user’s primary account • Reduced Costs – alleviate password-related Help Desk calls and demands on IT staff • Flexibility - configurable to the user, group or application levels • Seamless Integration - use “sidecar” mode to retrofit existing application login screens
  • 19. PortalGuard provides flexibility… Allows you to configure whether the enrollment will be forced or able to be postponed “x” number of times by the user.
  • 20. The Enrollment Process Step 1: The user attempts to login to a company’s portal as usual.
  • 21. The Enrollment Process Step 2: In this case, the user has not yet enrolled their challenge information so PortalGuard automatically displays the enrollment screen in “sidecar” mode.
  • 22. The Enrollment Process Step 3: The user is prompted to provide answers to the challenge questions.
  • 23. The Enrollment Process Step 4: The process is complete and the user is now enrolled.
  • 24. Step 1: The user attempts to login to a company’s existing portal but has forgotten their password. The user then clicks the “Forgot your password?” link.
  • 25. Step 2: The user selects from the “Recovery Actions Available” which self- service action they would like to perform. The user selects the “Reset Forgotten Password” radio button and clicks “Continue”.
  • 26. Step 3: The user is then prompted to provide their enrolled answers to the enrolled challenge questions. Once the user has supplied the answers they click “Continue”.
  • 27. Step 4: The user’s identity has been verified and they are able to set a new password.
  • 28. Configurable through the PortalGuard Configuration Utility: • Self-service options available to users • Authentication types available for each self- service action
  • 29. Configurable through the PortalGuard Configuration Utility: • Enrollment - optional, required or disabled • Recovery lockout limit • Answer complexity • Number of optional questions • Number of mandatory questions
  • 30. Configurable through the PortalGuard Configuration Utility: Mobile Phone: • Enrollment - optional, required or disabled • Phone number format • Delivery format
  • 31. Configurable through the PortalGuard Configuration Utility: Email: • Enrollment - optional, required or disabled • Domain blacklist • Email display • Email format including From, Subject and Body fields
  • 32. Configurable through the PortalGuard Configuration Utility: Notifications: • Type of self-service including account unlock, password reset and recovery
  • 34. A MSI is used to install PortalGuard on IIS 6 or 7.x. This version of PortalGuard supports direct access and authentication to cloud/browser-based applications, only. • IBM WebSphere/WebSphere Portal v5.1 or higher • Microsoft IIS 6.0 or higher • Microsoft Windows SharePoint Services 3.0 or higher • Microsoft Office SharePoint Server 2007 or later • .NET 2.0 framework or later must be installed • (64-bit OS only) Microsoft Visual C++ 2005 SP1 Redistributable Package (x64) • Microsoft Windows Server 2000 • Microsoft Windows Server 2003 (32 or 64-bit) • Microsoft Windows Server 2008 (32 or 64-bit) • Microsoft Windows Server 2008 R2
  • 35. THANK YOU For more information visit PortalGuard.com or Contact Us