RSA Adaptive Authentication System v6.0.2.1 with Service Pack 1

RSA, The Security Division of EMC
174 Middlesex Turnpike
Bedford, Massachusetts
01730

RSA Adaptive Authentication System v6.0.2.1 with Service Pack 1, hereafter referred to as RSA Adaptive Authentication System, was the subject of a Common Criteria evaluation performed by the Common Criteria Evaluation Facility at EWA-Canada located in Ottawa, Ontario. The evaluation was completed in January 2009.

The evaluation of RSA Adaptive Authentication System determined that this Information Technology (IT) product can be trusted, at an assurance level of EAL 2 augmented with ALC_FLR.1 (Basic flaw remediation) to conform to the requirements of the associated security target.

RSA Adaptive Authentication System is a risk-based authentication platform that provides additional layers of security to companies with an online presence. RSA Adaptive Authentication System uses invisible user authentication including positive device identification, device fingerprinting, behavioral profiling and risk analysis techniques to ensure that only genuine online users can access their accounts. RSA Adaptive Authentication System provides additional authentication measures during login and continuous monitoring of each transaction. If a single transaction (or series of transactions) increases the perceived risk level, the online user may be challenged to provide additional authentication, step up authentication, or the transaction can be flagged for later review.

The scope of this evaluation is defined by the security target, which identifies assumptions made during the evaluation, the intended environment for RSA Adaptive Authentication System, the IT security requirements to be met, and the level of confidence (evaluation assurance level) to which it is asserted that RSA Adaptive Authentication System satisfies its IT Security Requirements.

Consumers are advised to carefully review the certification report to gain an understanding of the security functionality, the evaluated configuration and the intended operating environment for RSA Adaptive Authentication System.

Product Type: Access Control Devices and Systems

Security Target: PDF * Accessibility Notice * Official Languages Notice

Certification Report: HTML | PDF

Certificate of Evaluation: HTML | PDF