The SafeNet eToken Fusion Series

  • Set of USB security keys combining FIDO2 with PKI use cases
  • Allow Workforce to easily and securely access various digital resources, sign or encrypt a document, from any device
  • Help organizations gradually adopt FIDO authentication while maintaining traditional PKI use cases

Extend modern FIDO authentication to PKI use cases

Many organizations have heavily invested in Public Key Infrastructure (PKI) to secure access to their internal sensitive resources. They want to move to a modern form of authentication such as FIDO to secure access to modern web apps, while maintaining the usage of PKI for Certificate-Based Authentication (CBA), digital signature & files encryption.

Enable phishing-resistant authentication from any device

With increased employee mobility, IT security leaders face the challenge of securing access to enterprise digital resources from a wide variety of devices and platforms. The same employee may use multiple devices to access company digital resources (e.g. a laptop and a mobile phone). To strike the right balance between user experience, cost, and security, IT security leaders need FIDO security keys compatible with multiple devices.

Enterprise FIDO Management

Thales eToken FIDO Enterprise Functionality (EF) gives agencies a way to centrally manage FIDO issuance and lifecycle.

  • PIN unblock without device reset
  • Token attestation enforcement
  • FIDO application whitelisting
  • Administrator controlled FIDO reset
  • Administrator enterprise management key
    • Retrieve Relying Party (RP) ID list
    • List all credentials for a specific RP
    • Delete and update FIDO credentials
    • Set minimum PIN length
    • Force change PIN
    • Set allowed RP ID list to get MinPin length information
    • Enforce user verification

Benefits

Prevent phishing attacks

  • Protect against phishing and Man-In-the-Middle attacks

Extend FIDO to PKI

  • Deploy FIDO for modern web apps or Windows desktops

  • Maintain PKI to access legacy resources, sign or encrypt documents

Deploy to any device

  • Authenticate from your laptop or mobile phone with the same key

Make life easier for your users and IT

  • No need to remember passwords

  • Streamlined login with NFC

  • Reduce Helpdesk costs

  • Plug and play with any FIDO compatible service

Comply with your market regulations

  • FIDO2

  • Common Criteria

  • FIPS 140-2

  • FIPS 140-3

  • FIPS 201

Enterprise FIDO Ready

  • Better securityNo need to remember passwords

  • Better convenience

  • Reduced IT costs

  • Appropriate use of assetsPlug and play with any FIDO compatible service

Top 6 Reasons for choosing SafeNet eToken Fusion Series

Phishing-Resistant FIDO2 & PKI Authentication from Any Device

SafeNet eToken Fusion Devices

  • Support FIDO and PKI use case
  • Available in USB – A and USB-C
  • Help organizations extend FIDO authentication to PKI use cases
  • Help in complying with U.S. regulation:
    • Trade Agreement Act (TAA) compliant
    • FIPS 140-2 certified

  • Support FIDO and PKI use cases
  • Available in USB-C
  • Streamlined login with NFC
  • Enterprise FIDO Ready:
    • FIDO2.1 certified
    • Thales FIDO enterprise features
  • Help in complying with U.S. regulation:
    • Trade Agreement Act (TAA) compliant
    • FIPS 140-3 certification in progress
    • Personal Identity Verification (PIV) compliant
  • Made in France, Europe

  • Support FIDO and PKI use cases
  • Available in USB-C
  • Streamlined login with NFC
  • Help in complying with US regulation:
    • FIPS 140-2 certified
    • Trade Agreement Act (TAA) compliant
  • Made in France, Europe

Resources

ImageTitleLink
CTO Sessions On Demand Webcast: Everything You Need to Know About Phishing-Resistant MFA
CTO Sessions: Best Practices for Phishing-Resistant MFA: FIDO & PKI
eBook: The Comprehensive Guide on Phishing-Resistant MFA, Passkeys and FIDO security keys.
Infographic: Top 6 Reasons for Choosing SafeNet eToken Fusion Series
Product Brief: Thales Fusion Authenticators
White Paper: Meeting U.S. Government requirements for phishing-resistant MFA