RSA Debuts New Keon Certificate Server, Starts Beta Testing

Greater Automation Boosts Ease of Integration, Setup and Management

RSA CONFERENCE, San Jose, Calif., January XX, 2000 -- RSA Security, Inc. (NASDAQ: RSAS), the most trusted name in e-security, today revealed details on the RSA Keon Certificate Server 5.1 digital certificate management system, a primary component for building public-key infrastructures (PKI) to ensure trust in e-business applications. About to enter beta testing, the new RSA Keon Certificate Server 5.1 software's greater automation makes it easier for administrators to automatically register and maintain users and integrate the server into existing IT infrastructures.

With the debut of this latest version of the RSA Keon Certificate Server 5.1, RSA introduces Keon OneStep™, an automated "bootstrap" process that expedites issuing new digital certificates during installation by allowing administrators to take advantage of existing authentication systems. Instead of the time-consuming, three-step request, verification and approval process, Keon OneStep automatically issues certificates to any user that can be authenticated – all in one step without administrator intervention. Keon OneStep works out of the box with the RSA SecurID™ two-factor authentication system, and can be customized to support most other authentication techniques.

"Today's announcement sets the tone for the direction RSA is taking with all its Keon products, placing greater emphasis on automation and ease of use, both for administrators and users, as well as a commitment to interoperability, especially through our work with the PKI Forum," said Scott Schnell, senior vice president of marketing for RSA Security. "Keon OneStep takes advantage of the security that is already in place to enable authenticated users to quickly and easily migrate to digital certificates with no additional burden on administrators."

Organizations can quickly install the RSA Keon Certificate Server right out of the box into their existing networks, and use it across the complete range of their PKI-enabled applications, including Web access using SSL, Virtual Private Networks using IPSec and secure email using S/MIME, as well as custom enterprise applications, third-party directory services, routers, firewalls and many other network, application and system products.

The RSA Keon Certificate Server is part of RSA's open, vendor-independent approach to building and deploying secure e-commerce applications across the enterprise and Internet. It combines critical certificate authority, LDAP certificate repository and registration authority functions in a single system to automate and centralize the management of cryptographic keys and digital certificates, enabling enterprises to establish and administer the trust relationships vital to e-commerce and e-business.

Administrators can approve large numbers of user certificate requests more easily with a couple of mouse clicks using the RSA Keon Certificate Server's batch request feature. A single browser page shows all user requests, and administrators can simply Select All or tick off individual requests for approval, and then have the server process them all at once.

Large organizations can distribute certificate administration through the RSA Keon Certificate Server's support for hierarchical certificate authorities. Registration and approval can be handled on a local basis, by geography or corporate structure, for example, improving scalability while boosting security through local certificate management.

Software developers, Internet-based e-business service providers and OEMs who need embedded security services for their own applications can tightly integrate the RSA Keon Certificate Server through clearly documented application programming interfaces for direct access to all server functions. When used in conjunction with RSA's suite of BSAFE® development components, the RSA Keon Certificate Server is designed to provide enterprise developers and OEMs with an integrated security system to create PKI-independent e-commerce applications that incorporate public key security and certificate management features.

The RSA Keon Certificate Server 5.1 is also first to achieve tight integration with a broad range of Cisco routers, firewalls and other networking products using Cisco's new Simple Certificate Enrollment Protocol (SCEP), an efficient way for these Cisco products to quickly obtain digital certificates from the server.

About RSA Keon

RSA Keon is a family of interoperable, standards-based PKI products designed to manage digital certificates and provide an environment for authenticated, private and legally binding electronic communications and transactions. Whether deployed as a robust, standalone certificate authority or a comprehensive PKI solution, RSA Keon is designed to provide a common foundation for securing Internet and e-business applications.

RSA Security Inc.

RSA Security Inc., The Most Trusted Name in e-Security™, helps organizations build secure, trusted foundations for e-businesses through its RSA SecurID® two-factor authentication, RSA BSAFE® encryption and RSA Keon™ public key management systems. As the global integration of Security Dynamics and RSA Data Security, RSA Security has the proven leadership, innovative technology and systems experience to address the changing security needs of e-business and bring trust to the new, online economy. RSA Security can be reached at www.rsasecurity.com.

# # #

BSAFE and SecurID are registered trademarks, and Keon, RSA and The Most Trusted Name in e-Security are trademarks of RSA Security Inc. All other products and services mentioned are trademarks of their respective companies.