Logo

LinOTP 2.7 documentation
previous | next | index

8. Security ModulesΒΆ

Starting with version 2.5 LinOTP supports different security modules.

The security module specifies how the encryption of the HMAC keys and password is handled in LinOTP.

The default behaviour having 3 AES encryption keys in a file /etc/linotp2/encKey is also seen as a security module.

  • 8.1. Defining Security Modules
  • 8.2. Defining SafeNet LunaSA
    • 8.2.1. Partition Password
  • 8.3. Setting up SafeNet LunaSA
    • 8.3.1. Requirements
    • 8.3.2. Network settings
    • 8.3.3. LunaSA server certificate
    • 8.3.4. Initialization of HSM
    • 8.3.5. Setting up HSM clients and assigning clients to HSM partitions
    • 8.3.6. Troubleshooting
  • 8.4. Create AES Keys
  • 8.5. Backup and restore with LunaSA
    • 8.5.1. Backup
    • 8.5.2. Restore
  • 8.6. Setting up HA and Load balancing for LunaSA
    • 8.6.1. Register LinOTP
    • 8.6.2. Creating HA group
    • 8.6.3. Monitoring
  • 8.7. Managing Passwords with LunaSA
    • 8.7.1. Changing admin Password
    • 8.7.2. Changing HSM PED Password
    • 8.7.3. Changing Partition Passwords
    • 8.7.4. Resetting Partition Passwords

Table Of Contents

  • 1. LinOTP Management Guide
  • 2. LinOTP Installation Guide
    • 1. Supported Operating Systems
    • 2. Checklist
    • 3. Server installation
    • 4. Installing Management Clients
    • 5. Installing Authentication Modules
    • 6. Customization
    • 7. Database connection
    • 8. Security Modules
      • 8.1. Defining Security Modules
      • 8.2. Defining SafeNet LunaSA
      • 8.3. Setting up SafeNet LunaSA
      • 8.4. Create AES Keys
      • 8.5. Backup and restore with LunaSA
      • 8.6. Setting up HA and Load balancing for LunaSA
      • 8.7. Managing Passwords with LunaSA
    • 9. Integration examples
    • 10. Updates
    • 11. Migrating from LinOTP 1.3 or LinOTP 1.0
    • 12. Security advisories
    • 13. Troubleshooting
  • 3. LinOTP User Guide
  • 4. LinOTP Appliance Manual
  • 5. LinOTP Module Development Guide

Search

Enter search terms or a module, class or function name.

previous | next | index
Show Source
© Copyright 2014, LSE Leading Security Experts GmbH. Created using Sphinx 1.1.3.