www.VASCO.com
www.vasco.com
Accessing a Domino server over HTTP is a very good option in terms of deployment ease and costs. However, such
a solution does not use the standard Notes security model. Instead of using a Notes user-id a simple username and
password model is used. Of course this limits the security of the system and security focused companies are not willing
to expose the employee’s mail files to the web when simply protected with a static password.
With the Vasco Plug-In for Lotus Domino, roaming users can access protected resources using their Web Access UserID
and rely on the genuine Lotus Notes Access Control List, the Vasco solution proposes to use a dynamically generated
One-Time Password instead of any static password.
You can still enforce the security model with server-based certificates.
FEATURES
•EasyaccesstothefullmaillefromanyInternetconnectedPC:publicPC,PCfromacustomerorsupplier,hotel
room television. No need to install any file on the client. Cookies are not required
•Lowcommunicationcharges
•Noneedtoreplicate:justopenthemailmessagesyouneedtoread
•Easytouse:mostpeopleknowhowtouseabrowser
•Secureaccess:dataowisencrypted,server’sidentityguaranteedbySSL,randompasswords
•NoagentsormailrulesrequiredontheDominoserver
•Noriskofinnitemailloops.AllmailiskeptontheDominoserverlocatedintheDMZ
•Completemailhistory:theend-userisalwaysusingthesamemaille.Allreceivedandsentmessagesarekeptina
single file
•Compatiblewithstandardandsessionbasedauthentication
•Selectivedeploymentispossible:notallusersusingHTTPaccessmusthaveaVascotoken
•BasedonprovenVascotechnology
•Scalablesolution–payasyougrow
•Compatiblewith5.X,6.X,7.Xand8.Xservers
•Nousertrainingrequired
•MaybeusedwithanyDominodirectoryconguration:singledirectory,multipledirectories,directoryassistance
•ThePlug-InforLotusDominoisactiveduringtheauthenticationphase.OnceauthenticatedtheDominosecurity
model protects all resources: ACL, realm settings, file access parameters, …
•MaybeusedtoprotecttheaccesstoanyNotesdatabase–notjustthemaille
•Noneedtomodifytherewall.Onlyhttporhttpstrafcowsbetweentheuserandtheserver
Hence, the Plug-In for Lotus Domino will secure HTTP(S) based authentications so that remote users can access their
Domino applications, databases or mailbox safely.
ByusingDIGIPASSpatentedtechnology,youeliminatetheweakestlinkinanysecurityinfrastructure;theuseofstatic
passwords that are easily stolen, guessed, reused, or shared.
It can be deployed as a small hand-held device, as a smart card reader, as software for computers, laptops, PDA’s or
cell phones.
3.2 Lotus Domino Web Access
© 2007 - 2008 VASCO Data Security. All rights reserved. Page 4 of 18