SecurID® for for MVS,® OS/390 ®

Mainframe Security Solution for use with Authentication Manager® and SecurID® Authentication Tokens

The Authentication Agent for MVS protects vital mainframe-based information resources from unauthorized access. Used in conjunction with the Authentication Manager and SecurID authentication tokens, it assures security administrators that mainframe users are strongly authenticated before accessing system resources. SecurID technology offers crack-proof security for a wide range of platforms, including MVS and OS/390, in one, easy-to-use package.

Download this document in Adobe Acrobat format for archiving and printing.

Protect critical resources and applications on your mainframe
Authentication Agent for MVS guards valuable mainframe-based resources with strong authentication. Together with Authentication Manager and a SecurID token, this solution creates a virtually impenetrable barrier against unauthorized access, protecting mainframe, network and data resources from potentially devastating accidental or malicious intrusion. When a logon is attempted, the Authentication Agent for MVS first challenges the user to provide a valid user ID, Personal Identification Number (PIN) and a unique, randomly generate a tokencode from his or her SecurID token. These credentials are passed from the Authentication Agent to the Authentication Manager for authentication. The logon process is fast and easy.

Support for all IBM network environments
No matter what device or network protocol is used in your environment, the Authentication Agent for MVS protects access to your system. Whether users are connecting from an emulator or an actual terminal using SNA, TCP/IP, Token Ring, Ethernet, etc., the Agent will interrupt the connection and challenge users for their SecurID tokencode.

Highlights
  • Provides strong, two-factor authentication for MVS and OS/390 systems
  • Configurable to require SecurID authentication for all devices or only those you select
  • Adds security in addition to RACF, ACF2 or TopSecret
  • Allows you to require SecurID auth-entication to any system connected via VTAM
  • Provides an audit trail with the online event log; integrates with SMF batch logging
  • Prompts users with your own warning message before they connect

Auditing and Reporting
In addition to the auditing capabilities supported by the Authentication Manager, the administrative tools included with the Authentication Agent for MVS allow you to record who authenticates to the system and when. This auditing capability can be easily integrated into your normal batch SMF logs.

Set warning and informational messages
Authentication Agent for MVS enables you to display screen messages before and after authentication is verified. For example, many states require that the initial screen message displayed upon connection explicitly state that the system is private in order to prosecute unwanted network intruders later. The administration tools included with the Authentication Agent for MVS make setting this message simple. Your warning message will be displayed on the same screen that prompts users for their username, PIN and SecurID tokencode. In addition, the agent provides the ability to broadcast informational messages to users after they have authenticated themselves to the system.

Integrates easily into your MVS environment
The Authentication Agent for MVS runs as a VTAM application. Installation and configuration of the agent is straightforward and involves only a few steps: unload the data sets, define the VTAM application name, set any messages for the users to see before and/or after authentication, and define the agent to the Authentication Manager.

System Requirements

  • Platform: IBM MVS 5.0 or higher (Includes all OS/390 versions)
  • Operating system: VTAM for MVS or OS/390
  • Network protocol: TCP/IP v3.1 or higher
  • MVS management inteface: TSO/ISPF
  • Authentication: Supported Authentication Manager and SecurID authentication tokens.
SecurID, Authentication Manager, and Security Dynamics are registered trademarks of RSA Security, Inc. All other trademarks mentioned herein are the property of their respective owners.
©2003 RSA Security, Inc. All rights reserved.


| ESC Home Page |

© 2006 Enterprise Systems Consulting, Inc. all rights reserved.

Copyright & Legal Disclaimer

The Authentication Agent for MVS challenges system users for a SecurID passcode tm, whether they're accessing from within the network or through a dial-up connection.