• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
  • Kisco Solidifies Self-Service Password Reset Tool

    August 19, 2014 Alex Woodie

    Kisco Information Systems has significantly improved its self-service password reset tool for IBM i, iResetMe. With version 2, unveiled this month, Kisco has made the tool more automated and easier to use. And by adding support for stronger passwords and by encrypting challenge questions, it has made it much more secure as well.

    iResetMe is designed to allow users to reset their own passwords, thereby alleviating the IT help desk from the oft-requested task. The Kisco tool, which debuted in January of this year, lets a user establish a new password after verifying his identify by successfully answering up to five challenge questions set during the enrollment process. The product is completely Web-based and is served natively from the IBM i OS using the Apache HTTP server.

    iResetMe has always encrypted the HTTP session between the server and the client. And now with iResetMe version 2, iResetMe can also encrypt the challenge response questions stored on the IBM i server. This would seem to be a logical feature to add, especially considering the poor password hygiene affecting many IBM i shops. It’s never a good idea to store the keys to kingdom in a public area–especially if iResetMe is controlling powerful user profiles with *ALLOBJ authorities–so hiding the challenge questions will close the door on a possible ingress point for hackers and insider threats alike.

    Another major new feature in version 2 is the capability to automatically send email notifications –along with a link to begin the password reset process–when a user’s profile has been disabled and he has been locked out of the system. This will help streamline the password-reset process (and possibly cut down on calls to the help desk) when a user’s password expire. It will also encourage good password hygiene by allowing organizations to adopt more aggressive password-reset timetables while minimizing the impact on users.

    The third major new feature in iResetMe is support for IBM i password levels 2 and 3, which are significantly stronger than the previously supported password levels 0 and 1. Password levels 0 and 1 are limited to 10 characters, and limited to using the letters A through Z in addition to the dollar sign ($), ampersand (@), number sign (#), and underscore (_) characters. Password level 2 supports passphrases up to 128 characters long and allows users to use any keyboard characters. Password level 2 also can tell the difference between upper case and lower case characters, a differentiation that most people have become accustomed to in their password travels (travails?) across the World Wide Web.

    Kisco also added this minor new feature: During password resets, the software now presents the user with the current password rules in effect, such as the password length or the requirement to have special characters, numbers, or upper case letters. The password rules are configured in the normal way through IBM i, so iResetMe doesn’t have any control over these, but reminding users through the Web browser is a nice touch that will save users time.

    The only connection iResetMe has to the IBM i password utility is through an IBM i password check API that it calls. After each check, the password is deleted. “Even a memory dump would not reveal any password information,” Kisco says.

    Pricing for iResetMe has not changed, and starts at $495 for a single partition 25-user license and tops out at $1,295for a single-partition, unlimited-user license. The company also sells 50-user and 100-user licenses. The software supports i5/OS V5R4 through IBM i 7.1. For more information see www.kisco.com.

    RELATED STORIES

    State Of IBM i Security? Dismal As Usual, PowerTech Says

    Forgotten Password Problem Solved, Kisco Says



                         Post this story to del.icio.us
                   Post this story to Digg
        Post this story to Slashdot

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Tags:

    Sponsored by
    WorksRight Software

    Do you need area code information?
    Do you need ZIP Code information?
    Do you need ZIP+4 information?
    Do you need city name information?
    Do you need county information?
    Do you need a nearest dealer locator system?

    We can HELP! We have affordable AS/400 software and data to do all of the above. Whether you need a simple city name retrieval system or a sophisticated CASS postal coding system, we have it for you!

    The ZIP/CITY system is based on 5-digit ZIP Codes. You can retrieve city names, state names, county names, area codes, time zones, latitude, longitude, and more just by knowing the ZIP Code. We supply information on all the latest area code changes. A nearest dealer locator function is also included. ZIP/CITY includes software, data, monthly updates, and unlimited support. The cost is $495 per year.

    PER/ZIP4 is a sophisticated CASS certified postal coding system for assigning ZIP Codes, ZIP+4, carrier route, and delivery point codes. PER/ZIP4 also provides county names and FIPS codes. PER/ZIP4 can be used interactively, in batch, and with callable programs. PER/ZIP4 includes software, data, monthly updates, and unlimited support. The cost is $3,900 for the first year, and $1,950 for renewal.

    Just call us and we’ll arrange for 30 days FREE use of either ZIP/CITY or PER/ZIP4.

    WorksRight Software, Inc.
    Phone: 601-856-8337
    Fax: 601-856-9432
    Email: software@worksright.com
    Website: www.worksright.com

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Sponsored Links

    RJS Software Systems:  Webinar: Top 5 Problems Solved by Automated Report Delivery. August 26.
    System i Developer:  Upgrade your skills at the RPG & DB2 Summit in Minneapolis, Sept 30 - Oct 2.
    COMMON:  Join us at the COMMON 2014 Fall Conference & Expo in Indianapolis, Oct 27-29

    More IT Jungle Resources:

    System i PTF Guide: Weekly PTF Updates
    IBM i Events Calendar: National Conferences, Local Events, and Webinars
    Breaking News: News Hot Off The Press
    TPM @ EnterpriseTech: High Performance Computing Industry News From ITJ EIC Timothy Prickett Morgan

    Manta Continues To Take The IBM i To School Partners Need To Get Certified–For Power8 And IBM i

    Leave a Reply Cancel reply

Volume 14, Number 15 -- August 19, 2014
THIS ISSUE SPONSORED BY:

ProData Computer Services
Enforcive
Shield Advanced Solutions
Computer Keyes
RJS Software Systems

Table of Contents

  • VAI Gives Berk Enterprises a New Analytic View
  • Tango/04 Lunches Alignia to Simplify Corporate Monitoring
  • S4i Goes IASP with Document Management Tool for HA Protection
  • LaserVault DMS10 Unchains Your Documents
  • SoftLanding Repositions TurnOver for Database Conversions
  • Nice Form! Quadrant Boosts Automation and Control in Formtastic
  • DRV Unveils Fresh New Mobile Apps for Message Management
  • Zend Peers Deep into Your Code with Z-Ray
  • Kisco Solidifies Self-Service Password Reset Tool
  • Townsend Looks to Spread 2FA Far and Wide

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • Meet The Next Gen Of IBMers Helping To Build IBM i
  • Looks Like IBM Is Building A Linux-Like PASE For IBM i After All
  • Will Independent IBM i Clouds Survive PowerVS?
  • Now, IBM Is Jacking Up Hardware Maintenance Prices
  • IBM i PTF Guide, Volume 27, Number 24
  • Big Blue Raises IBM i License Transfer Fees, Other Prices
  • Keep The IBM i Youth Movement Going With More Training, Better Tools
  • Remain Begins Migrating DevOps Tools To VS Code
  • IBM Readies LTO-10 Tape Drives And Libraries
  • IBM i PTF Guide, Volume 27, Number 23

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle