Feature

DigitalPersona Workstation Pro and Server for Biometric Authentication

Ezine

This article can also be found in the Premium Editorial Download "Information Security magazine: Compliance vs. security: Prevent an either-or mentality."

Download it now to read this article plus other related content.

BIOMETRIC AUTHENTICATION


DigitalPersona Workstation Pro and Server 4.0
REVIEWED BY BRENT HUSTON

DigitalPersona
Price: Server, $1,499, plus $50 authentication

    Requires Free Membership to View

license per user; Workstation without reader, $60, with DigitalPersona U.are.U 4000B reader, $149

@exb

@exe

Biometric authentication has met considerable market resistance, mostly because of integration issues, accuracy and cost. With improved tech- nology and the introduction of laptops equipped with fingerprint readers, biometrics may be starting to move into the mainstream. DigitalPersona Pro is a robust single sign-on (SSO) software suite that allows an enterprise to replace passwords with biometric fingerprint readers or provide dual-factor authentication.


Installation and SetupB+  
There are two pieces to the suite: DigitalPersona Pro Workstation software for individual systems and the server component, which integrates with Active Directory on your domain controller. While the workstation software can function by itself, the server provides domain-wide SSO.

Installation is straightforward. The server installation requires a few more steps to integrate with Active Directory, but it's all detailed in the manual. After installation, the workstation software starts a wizard, which records your fingerprint. After a few repetitions, we were able to register a fingerprint in less than 10 seconds. The workstation software automatically detects any Digital-Persona Pro servers on the local network.

Both the server and workstation software can be purchased with or without DigitalPersona's fingerprint reader. The latest version of DigitalPersona Pro offers wide support for third-party readers, such as those becoming popular in new business-class laptops. The DigitalPersona optical reader is quite good; we found it to be accurate, with few false negatives and no false positives.


Workstation (Single User)B-  
The workstation software, in standalone mode, is rather simple. It integrates with Windows logon and also provides an SSO function that seems to be geared toward home users. The SSO feature provides an automatic wizard that will detect the login fields in many applications. Unfortunately, we found there are some apps it does not support (such as terminals, like Putty). It also supports only Internet Explorer, a problem considering the growing popularity of Firefox. However, it is very easy to use, fast and accurate with applications it supports.


Server (Centralized Environment)B+  
The server software is much more robust. The SSO wizard allows manual creation of login templates to support applications that the automatic wizard can't detect; these templates are pushed out to desktops via GPOs.

Creating a template is fairly easy. You need to make sure the window title is accurately reflected within the SSO administration tool. You then enter the actions required for login--e.g., entering keystrokes into a field, time delays, or x-y coordinates of a window. Templates can also be created for password-change forms, which can be used to automatically generate passwords. The created templates can be either pushed out to workstations via GPO or copied manually.

The server centrally manages fingerprint data for all users, with tight Active Directory integration. It also provides event logs for fingerprint logins to help with regulatory compliance, but lacks strong reporting capabilities. It also provides a handy query tool to easily discover who has registered fingerprints.


Verdict
Enterprises looking for a biometric single sign-on solution won't be disappointed with what DigitalPersona Pro offers. The software is easy to use, and can function with single- and two-factor authentication.


Testing methodology: DigitalPersona Pro Workstation was tested as a standalone product on Windows XP desktops, and in an AD environment with the server component on Windows Server 2003.

This was first published in March 2007

There are Comments. Add yours.

 
TIP: Want to include a code block in your comment? Use <pre> or <code> tags around the desired text. Ex: <code>insert code</code>

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy
Sort by: OldestNewest

Forgot Password?

No problem! Submit your e-mail address below. We'll send you an email containing your password.

Your password has been sent to: