Guide to Using SafeHouse

Appendix C
ActivCard Authentication for SafeHouse

It’s commonly said that good security is based upon something you know, and something you have...

The full ActivCard User's Guide is also available online.

SafeHouse encrypted volumes may optionally be protected using an ActivCard hand-held personal security authenticator. ActivCards may be purchased either directly from PC Dynamics or from a variety of third-party sources. By keying your SafeHouse volumes to an ActivCard, you will need both your secret password and possession of the ActivCard to gain access to your files.

ActivCard security is based upon a technique known as challenge-response authentication. During each login or volume mapping, you will be presented with a numeric challenge. To be authenticated you must provide the corresponding single-use password response. The only way to arrive at the correct response is to use the ActivCard, which operates much like a small credit card size pocket calculator. Each ActivCard is delivered preprogrammed from the factory with a series of unique secret 56-bit service keys which guarantees that each card will generate a different set of responses to authentication challenges.

Responding to the ActivCard Authentication Dialog

To complete the login, you must turn on your ActivCard, key in the challenge to generate the appropriate response, and finally, type the response (dynamic password) back into the dialog. Please follow the steps below to complete this process.

STEP 1. Turn on your ActivCard using the ON/CE key.

STEP 2. Enter your private PIN code and press ENTER.

STEP 3. Select the ActivCard Service Name for this authentication. The first name displayed is typically "ActivSafe" (OEM version of SafeHouse). To select any of the others, press the Down Arrow key several times until the desired service name appears on the display. Press ENTER to select the displayed service.

STEP 4. After selecting a service, the display will look as shown above. The A S F stands for authentication, secret and function; corresponding to keys on the ActivCard keypad. The number below is sometimes used for your login account user ID when such use is desirable for some specific service provider. Unless instructed otherwise, you can disregard this number. It is provided only for convenience and serves no essential purpose.

STEP 5. Press the AUTH key for authentication.

.

STEP 6. Type the challenge presented in the dialog and press ENTER

Did you know that ActivCard can read the flashing optical patterns?

At this point you can have your ActivCard read the challenge right off the screen using its optical sensors. Hold the card up to the screen (touching) at a right angle, aligning the blue bumpers on the card with the blue dots on the screen. Hold for a single transmit cycle, then remove the card. This might take a little practice. The key is to hold the card up to the screen, or remove it, only during the still cycle when the blue dots are showing. Watch the timing. It's easy to get the hang of it. When the optical transmission is complete, the card will automatically display the response as shown below.

The dialog provides two sizes for the optical patterns. Choose the size that fits the best. It is not necessary to have an exact size match. What's important is that you center the ActivCard up against the pattern. The software will remember your current size preference.

Note: If you don't get a good transmission, press [ON/CE] to clear, then [AUTH], and try again.

STEP 7. The ActivCard then displays your one-time dynamic password as an eight-digit value. This is the number that must type into the dialog's Response field to complete your login. Enter the number exactly as shown. The letter 'd' under the password simply indicates that the password is comprised of decimal numbers 0 to 9.

STEP 8. Press the OK button on the SafeHouse dialog to finish.

That’s it. You’re done.

More Information on ActivCard

To find out more about using and purchasing ActivCards, please contact PC Dynamics or visit our web site located at http://www.pcdynamics.com. Our web site contains photos, pricing and a downloadable user’s guide.