Logo

LinOTP 2.9.1.3 documentation
previous | next | index

7. Security ModulesΒΆ

Starting with version 2.5 LinOTP supports different security modules.

The security module specifies how the encryption of the HMAC keys and password is handled in LinOTP.

The default behaviour having 3 AES encryption keys in a file /etc/linotp2/encKey is also seen as a security module.

  • 7.1. Defining Security Modules
  • 7.2. Defining SafeNet LunaSA
    • 7.2.1. Partition Password
  • 7.3. Setting up SafeNet LunaSA
    • 7.3.1. Requirements
    • 7.3.2. Network settings
    • 7.3.3. LunaSA server certificate
    • 7.3.4. Initialization of HSM
    • 7.3.5. Setting up HSM clients and assigning clients to HSM partitions
    • 7.3.6. Troubleshooting
  • 7.4. Create AES Keys
  • 7.5. Backup and restore with LunaSA
    • 7.5.1. Backup
    • 7.5.2. Restore
  • 7.6. Setting up HA and Load balancing for LunaSA
    • 7.6.1. Register LinOTP
    • 7.6.2. Creating HA group
    • 7.6.3. Monitoring
  • 7.7. Managing Passwords with LunaSA
    • 7.7.1. Changing admin Password
    • 7.7.2. Changing HSM PED Password
    • 7.7.3. Changing Partition Passwords
    • 7.7.4. Resetting Partition Passwords

Table Of Contents

  • LinOTP Management Guide
  • LinOTP Installation Guide
    • 1. Supported Operating Systems
    • 2. Checklist
    • 3. Server installation
    • 4. Installing Authentication Modules
    • 5. Customization
    • 6. Database connection
    • 7. Security Modules
      • 7.1. Defining Security Modules
      • 7.2. Defining SafeNet LunaSA
      • 7.3. Setting up SafeNet LunaSA
      • 7.4. Create AES Keys
      • 7.5. Backup and restore with LunaSA
      • 7.6. Setting up HA and Load balancing for LunaSA
      • 7.7. Managing Passwords with LunaSA
    • 8. Integration examples
    • 9. Updates
    • 10. Migrating from LinOTP 1.3 or LinOTP 1.0
    • 11. Security advisories
    • 12. Troubleshooting
  • LinOTP Appliance Manual
  • LinOTP Development Guide

Search

previous | next | index

Show Source
© Copyright 2017, KeyIdentity GmbH. Created using Sphinx 1.4.9.
This page uses Google Analytics to collect statistics. You can disable it by blocking the JavaScript coming from www.google-analytics.com.