CORE OF TRUST

Contact For Free Demonstration

Smart Security Management Server

Identity
Management

Application
Management

Device
Management

Security
Management

The security server within your infrastructure
for reliable business processes in mobile
environments

CORE OF TRUST

Smart Security
Management Server

The security server within your infrastructure for reliable business processes in mobile environments

  • The Solution

    KOBIL technologies are linked to a designated server called Smart Security Management Server (SSMS), which safeguards and control the app’s entire communication environment.

    The server is operated at the online provider’s premises and integrated with online services (e.g. web servers of bank institutes or online applications).

    The SSMS deploys Trusted App to create a virtual authentication device on the user’s Smartphone or tablet. When it is activated for the first time, Trusted App is linked to this dedicated mobile device and registers itself with the SSMS server. Whenever the mobile app is being started, the SSMS server remotely verifies Trusted App several times.

    These control and safeguarding mechanisms serve to prevent attacks like app manipulation, Man-in-the-middle or Man-in-the-Browser attacks. Fake-apps access to online services or manipulated original apps that are capable of capturing transaction-related information or sign-in data is also prevented. Attacks would have to simultaneously address the user’s mobile platform and the SSMS to break the chain of trust. Both ends control each other and block any suspicious activity.  The secured SSMS environment prevents the user PIN from being stored on the local device since it is a server-approved PIN. Being entered incorrectly three times in a row, the PIN is disabled on the SSMS and needs to be released by the SSMS administrator. Scenarios supported by SSMS are: SecOVID, Trusted Login, Trusted Message Sign, and Trusted Web View.

  • Your Benefits

    Manage your apps developed with Trusted App and all other products of our mIDentity Protection line.

    Control registered and user-related virtual devices (Smartphone, tablets, desktops) to ensure third parties won’t try to run manipulated apps on non-registered terminal devices.

    Establish a proprietary security communication channel between the SSMS and your apps to facilitate end-to-end encrypted communication.

    Use digital signatures and the possibilities of a certification authority (CA) without having to operate your own autonomous PKI. We include it out-of-the-box with the SSMS.

    Verify the validity of generated signatures.

    Use SOAP interfaces to communicate with existing systems such as fraud-detection servers, web services, ERP/CRM or existing administration systems.

    Manage the data of terminal user devices and conduct detailed reports.

    Update applications remotely and ensure your users are always provided with latest app versions for their terminal devices.

    Manage user identities and optional hardware extensions like Air+ or mini.

    Manage your data via a web interface to the SSMS and create administrator groups for managing various apps.

Administration

  • Simplified installation routines
  • Configuration assistant
  • Module Management
  • Web-based administration
  • Device & app management
  • User management
  • Activation code management
  • PIN management
  • OTP token management (SecOVID)

Modules & interfaces

  • Signature Verification Module (SVM)
  • App Security Module (ASM)
  • SecOVID Module
  • SOAP
  • RADIUS
  • Finnova connector
  • High availability and load-balancing

Security

  • App integrity check
  • Verification if the app is still running on the activated hardware
  • Activation code for device connection
  • Protected app access via PIN
  • App version control
  • Jail-break monitoring
  • Independent security channel
  • Signature verification for transactions
  • Encoded communication between both terminals
  • OTP verification

Popular KOBIL Solutions you can Manage
appsecurity
Trusted App

Trusted Message Sign

Trusted Login

Trusted Web View

Air+
Contact Sales