- 08 Jan 2025
- 1 Minute à lire
- SombreLumière
- PDF
Security Considerations
- Mis à jour le 08 Jan 2025
- 1 Minute à lire
- SombreLumière
- PDF
If OneSpan Authentication Server is part of a RADIUS environment, you should take some security considerations into account to enhance protection of authentication processes between OneSpan Authentication Server and the RADIUS client and/or RADIUS server.
Strong shared secrets
Do select strong shared secrets between OneSpan Authentication Server and the RADIUS client and/or the RADIUS server to reduce the risk of a security breach. In addition, use different shared secrets where multiple RADIUS clients/RADIUS servers are in place.
Internet Protocol Security (IPsec)
To protect authentication data being sent over the network, we recommend to set up IPsec on each RADIUS client/RADIUS server. With this, network traffic between OneSpan Authentication Server and the RADIUS client and/or RADIUS server is authenticated and encrypted at the IP layer.