vSEC:CMS for Feitian

vSEC:CMS is fully functional with Feitian Credentials and streamlines all aspects of securely managing these credentials by connecting to enterprise directories, certificate authorities, physical access control systems, email servers, log servers, PIN mailers… full list in bottom of this page.

Vendor Independent

vSEC:CMS is fully functional with minidriver enabled credentials such as smart cards, USB tokens and virtual smart cards including Windows Hello for Business (WHfB) and it streamlines all aspects of managing credentials by connecting to enterprise directories, certificate authorities, physical access control systems, email servers, log servers, biometric fingerprint readers, PIN mailers… the list goes on. With vSEC:CMS organizations can issue credentials to employees, personalize the credentials with authentication credentials and manage the lifecycle of the credentials – directly from the cloud.

vSEC:CMS Connectors

vSEC:CMS Connectors

vSEC:CMS Connectors

1. Badge Printers for Batch Operations
2. User Directory for User Look Up
3. File & Database Servers
4. Secure Transport of PIN Codes
5. Event & Log Management
6. User Photo Capture
7. Certificate/PKI Services
8. Physical Access Control Systems
9. Hardware Security Module
10. Identity Provider (Secondary Authentication and FIDO2)
11. Key Archival & Key Recovery
12. vSEC:CMS Admin – System Administration
13. Remote Security Device Management
14. Credentials: Physical & Virtual Smart Cards/Tokens
15. vSEC:CMS User – End-user Self-service applications
16. vSEC:CMS Agent – Operational Management Interface

Secure

A cornerstone of vSEC:CMS is security, all sensitive data and keys are secured using hardware. Operators of the system are authenticated using two-factor authentication and all usage is securely audited for full traceability.
The main task of a CMS is to securely connect user identities (credentials) into an enterprise systems and maintain this connection throughout the lifecycle of the credential. That implies the need of secure communication with several external systems.

Demonstration and Free Consultation

You can schedule a demo or contact our Versasec team for a free consultation.
To find a local partner, please check our Versasec Partner Network page.

Instant Access

vSEC:CMS is available on the Azure Marketplace. Once the Azure VM has been launched, vSEC:CMS is ready to use in Evaluation Mode. During the evaluation, you can configure your environment with up to 5 licenses and your own use cases. Each license manages one credential. Additional licenses can be acquired as a subscription or as a perpetual license. Please contact a Versasec reseller or Versasec directly to proceed.

Instant Setup!

It’s easy to get started and you can have the most common configuration (Windows Credential Logon) set up in minutes instead of days following our step-by-step tutorials. Once you have the initial use case configured you can build from there adding: User Self Service, Remote Operators and support for other secure devices including Virtual Smart Cards and Windows Hello for Business (WHfB). We support many different use cases; configuration options and our feature set are vast.

Use Case Guide: Windows Credential Logon

We will guide you through the initial setup all the way to you issuing and managing the lifecycle of your secure devices. Follow this guide on our Support Portal: Windows Credential Logon
Note: The PKI used in this example use case will be an MS CA. Other PKIs are also supported.

Documentation

Complete Documentation is found on our Support Portal

Product News

vSEC:CMS Version 6.8 is now available. The new version incorporates a variety of enhancements, updates and automated tasks, including the following:

  • Adding Thales SafeNet Trusted Access (STA) as a supported identity provider. Enabling customers to efficiently manage their users’ FIDO credentials in STA identity platform as an integrated part of their credential orchestration. 
  • Looking to deploy FIDO with no need for certificates? Now you can get full enterprise management of lower cost with our added support for management of FIDO only credentials.
  • Introducing our first supported FIDO-only (no PKI) credential: Thales SafeNet eToken FIDO.
  • Manage phishing-resistant FIDO2 & PKI Thales SafeNet eToken Fusion CC authenticators.
  • Introducing credentials supported by Giesecke+Devrient, StarSign series. 
  • Say hello to our REST API – Adding to our existing line of APIs to bring more options for integrating and automating your credentials lifecycle.
  • Simplifying identity enterprise management for our customers in Europe and the Middle East, adding certificate authority integration: EverTrust Horizon.
  • Added tools to ease the task of getting prepared for the full enforcement of Microsoft KB5014754. We offer both a method for user self-service certificate renewal and an export for strong certificate mapping.
  • Thales and Versasec collaborated on bringing IDPV virtual smart card orchestration. We introduced RFID user identification for loading each users IDPV virtual smart card. Workplaces with shared workstations will greatly benefit from “Tap, PIN, Go” user experience and increased security through PKI authentication!

vSEC:CMS Suite

More information about the complete vSEC:CMS product suite can be found here. vSEC:CMS Suite

Migrate to vSEC:CMS

vSEC:CMS S-Series includes upgrade wizards that enables quick and simple upgrade paths from third party credential management systems.

Check out the details on how to upgrade from:

Resellers

The product can be purchased from authorized vSEC:CMS integrators and resellers, via our partners reseller network or contact Versasec directly to let us help you find the best way forward.

Videos

The vSEC:CMS video content can be found here.

Supported Credentials

vSEC:TOOL

vSEC:CMS

Supported* Credentials

ACS ACOS5-64

Aventra MyEID 4.5

Avtor CryptoCard 337

Atos CardOS v4.4

Atos CardOS v5.3

Cryptovision SCinterface

Feitian ePass FIDO-NFC K9Plus/K40Plus

Feitian eJava Token

Feitian SmartCard

Feitian ePass2003

Feitian ePass2003 PKI eJava Token

Feitian ePass2003 PKI SmartCard

Feitian Fingerprint_Smart_Card_F2000

Feitian iePass_FIDO_PIV_K44

Giesecke+Devrient StarSign® Crypto USB Token M

Giesecke+Devrient StarSign® Key Fob

Giesecke+Devrient StarSign® PKI Card

Giesecke+Devrient StarSign® wristband

HID Global Crescendo 144K

HID Global Crescendo C200

HID Global Crescendo C2300

HID Global Crescendo C1150

Identiv uTrust MD

Idemia ypsID S2

Idemia ypsID S3

Idemia ID-One Cosmo 8.1 IAS ECC

Idemia ID-One PIV 8.1

Key-ID PKI

Longmai mToken CryptoID

Microsoft minidriver enabled devices

Microsoft Windows Hello for Business

Open FIPS 201 Applet

SafeTrust-PIV on Placard

Swissbit iShield Key

Taglio C2

Taglio PIVKey

TCOS TeleSec IDKey

Thales IDPrime .NET 510

Thales IDPrime .NET 5500

Thales IDPrime MD 830

Thales IDPrime MD 840

Thales IDPrime MD 930

Thales IDPrime MD 940

Thales IDPrime MD 3810

Thales IDPrime MD 3840

Thales IDPrime MD 3930

Thales IDPrime MD 3940

Thales IDPrime MD 3940 FIDO

Thales IDPrime PIV 2.1

Thales IDPrime PIV 3.0

Thales IDPrime Virtual

Thales MultiApp ID

Thales Safenet eToken 5100/5110 FIPS/5110+FIPS

Thales Safenet eToken 5300

Thales SafeNet eToken FIDO

Thales SafeNet eToken Fusion CC

Virtual Smart Cards

Yubico YubiKey 5 NFC/5C/5 Nano/5C Nano

Yubico YubiKey 4/4 Nano/4C/4C Nano

Yubico YubiKey NEO/NEO-n

* The supported credential table does not validate support of all possible credential features and integrations made within Versasec applications. Please contact Versasc or our partners for validation of your specific needs.

Product Features

The table below highlights the key features in the Versasec credential management product suites.

 

vSEC:CLOUD

vSEC:CMS

User-Side Credential Operations

Agent-Side Credential Operations

  • Admin Key Change
  • Online Unblock User PIN
  • Offline Unblock User PIN (Operator Side)
  • User PIN Policy Update
  • Certificate Management (pfx or p12 Import, Delete)

Advanced Credential Operations

  • Admin Key Diversification
    from Hardware Protected Masterkey
  • User Fingerprint Policy Update
  • Batch Mode Support

Database

  • Credential Repository
  • SQL-based Databases
  • Backup / Restore
  • Multi-forest & Multi-domain

Credential Management System Features

 

vSEC:CLOUD

vSEC:CMS

Product Features

Advanced Management Features

  • User Self-service and MS Credential Provider
  • Key Archive and Key Restore
  • Smart Card Stock Management
  • Granular Operator Permissions and Access Control
  • Card Printing and Batch Processing
  • Photo Capturing
  • Remote Security Device Management (RSDM)
  • Certificate Management using ACME
  • FIDO2 Management

Systems Integrations

  • Certification Authorities (MS CA, Entrust, DigiCert, EJBCA, GlobalSign...)
  • User Directories (LDAP, MS AD, Azure AD)
  • Physical Access System (RFID)
  • Identity Providers (IdP) using OIDC and LDAP
  • Windows Event Log
  • Mail Server (for PIN mailing)
  • Hardware Security Module (HSM)

Integrations/APIs

Server-Side
  • SQL Database Interface
  • SOAP Helpdesk API
  • SOAP Lifecycle API
  • REST Lifecycle API
Client-Side
  • COM API
  • Web Start API
  • Plugin API
  • Physical Access System (PACS) API
 

vSEC:CLOUD

vSEC:CMS

Licensing/Packaging

Managed by Versasec

 

Subscription

Perpetual Licenses

 

Installation Package

 

NOTE
✔ – The credential is supported by the product.
L – Known limitations – check release notes.
For details about validated middleware/minidrivers check the Versasec support portal or contact us.

vSEC:CMS

Our product suite provides all the software tools to administrate and manage credentials in a secure and convenient way.

Start here

Free Product Trial

Versasec provides enabling IT security products centered on the usage of security devices such as smart cards. Our solutions enable customers to securely authenticate, issue and manage user credentials more cost effectively. Get a free product trial.

Job Openings

We are always looking for new exceptional persons to join our team! Find out more about our job openings.

New to credential management?

SCMS = Smart Card Management Systems
CMS = Credential Management System
Have a look at the Wikipedia definition of a ‘Smart Card Management System’.

Versasec Support

Versasec customers with an existing support and maintenance contract can access the Versasec Support Portal, offering extensive professional support and maintenance services. The Versasec Support Portal offers a variety of services, allowing for customers and any site visitor to communicate directly with support engineers.

Contact Support

Company Blog

Our blog addresses the latest security trends and stories. The posts discuss how identity and access management are playing a larger role in keeping corporate data safe as well as brand reputations intact.

Visit our Blog