{"id":7824,"date":"2024-04-30T21:30:05","date_gmt":"2024-04-30T18:30:05","guid":{"rendered":"https:\/\/www.protectimus.com\/blog\/?p=7824"},"modified":"2024-09-11T13:32:54","modified_gmt":"2024-09-11T10:32:54","slug":"volet-2fa","status":"publish","type":"post","link":"https:\/\/www.protectimus.com\/blog\/volet-2fa\/","title":{"rendered":"Protectimus Customer Stories: 2FA for Volet"},"content":{"rendered":"\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<figure class=\"wp-block-image size-full\"><a href=\"https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog.png\"><img loading=\"lazy\" decoding=\"async\" width=\"800\" height=\"800\" src=\"https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog.png\" alt=\"Volet logo\" class=\"wp-image-8809\" srcset=\"https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog.png 800w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog-300x300.png 300w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog-150x150.png 150w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog-768x768.png 768w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog-610x610.png 610w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog-160x160.png 160w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog-240x240.png 240w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog-60x60.png 60w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/volet-logo-blog-184x184.png 184w\" sizes=\"auto, (max-width: 800px) 100vw, 800px\" \/><\/a><\/figure>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-vertically-aligned-null is-vertically-aligned-center is-layout-flow wp-block-column-is-layout-flow\">\n<p class=\"has-text-align-left\">Volet is a popular payment system for convenient international payments and transactions with cryptocurrencies. Millions of people around the world use the Volet payment system services daily<\/p>\n<\/div>\n<\/div>\n\n\n\n<blockquote class=\"wp-block-quote has-text-align-left is-style-default\">\n<p><em>Volet has been cooperating with Protectimus since 2015, and we are extremely pleased with the results of this cooperation. Over the past years, we&#8217;ve had only positive cases of working together. Protectimus helped us at every stage, from integration to adding additional features that solved our specific tasks. For example, when we decided to abandon SMS as the two-factor authentication method, Protectimus suggested using chatbots in instant messengers to deliver one-time passwords, which is much easier, cheaper, and safer than SMS. For the entire period of using Protectimus 2FA, we receive service in the 24\/7 format without any breakdowns or other issues, and the Protectimus support services are beyond praise. Using Protectimus, we are confident that Volet infrastructure and users are well protected. Protectimus gives us what money can&#8217;t buy &#8211; not a sense of security, but REAL security. I highly recommend it for implementation.<\/em><\/p>\n<br><cite>Artem Sh., Information Security Director at Volet<\/cite><\/blockquote>\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading has-text-align-center\"><strong>Key tasks for implementing 2FA for Volet<\/strong><\/h2>\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:100%\">\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p class=\"has-text-align-left has-background has-normal-font-size\" style=\"background-color:#f4f4f4\">The administrators of the Volet payment system set the following tasks for the two-factor authentication (2FA) provider<\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<ol class=\"wp-block-list\">\n<li>To protect the accounts of Volet employees with 2FA.<\/li>\n\n\n\n<li>To protect the accounts of end users of the Volet payment system with 2FA.<\/li>\n\n\n\n<li>To add an additional layer of protection against phishing and data spoofing.<\/li>\n\n\n\n<li>To provide a choice of different types of 2FA tokens for Volet payment system end users.<\/li>\n\n\n\n<li>To organize targeted delivery of hardware 2FA tokens to the end users of the payment system.<\/li>\n\n\n\n<li>To find a way to deliver one-time passwords to the Volet end users that will be as convenient as SMS, but at the same time more secure and less expensive.<\/li>\n<\/ol>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p class=\"has-background has-normal-font-size\" style=\"background-color:#f4f4f4\">The following Protectimus 2FA products were chosen to solve the above mentioned tasks<\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<ul class=\"wp-block-list\">\n<li>Protectimus Cloud Two-Factor Authentication (2FA) Service;<\/li>\n\n\n\n<li>Users groups functionality is realized using the Resources;<\/li>\n\n\n\n<li>Geographic filters;<\/li>\n\n\n\n<li>IP filtering function;<\/li>\n\n\n\n<li>CWYS (Confirm What You See) data signing function;<\/li>\n\n\n\n<li>Classic hardware 2FA tokens Protectimus Two;<\/li>\n\n\n\n<li>Application for generating one-time passwords Protectimus Smart OTP (iOS and Android);<\/li>\n\n\n\n<li>Delivery of one-time passwords via Protectimus Bot chatbots in Telegram, Facebook Messenger, and Viber.<\/li>\n<\/ul>\n<\/div>\n<\/div>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading has-text-align-center\"><strong>Challenges and Solutions<\/strong><\/h2>\n\n\n\n<p><\/p>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p class=\"has-background\" style=\"background-color:#f4f4f4\">To perform the integration using API<\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<p>The functionality of integration with Protectimus two-factor authentication (2FA) service via API is available even for the free service plan. API integration documentation is publicly available on the Protectimus website. The Protectimus team is also ready to connect with the customer to help with the integration remotely, if necessary.<\/p>\n<\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p class=\"has-background\" style=\"background-color:#f4f4f4\">To set different two-factor authentication (2FA) rules for the Volet employees\u2019 accounts and payment system end users\u2019 accounts<\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<p>The Protectimus two-factor authentication (2FA) service allows dividing users into groups using Resources. Volet administrators have created two 2FA Resources \u2013 one for the end users and another for company employees. These Resources have different security rules.<\/p>\n\n\n\n<p>For example, geographic filters and IP filtering are activated for the Volet employees. Besides, they can use only hardware 2FA tokens.<\/p>\n\n\n\n<p>At the same time, filters are not activated for the Volet end users, but the data signing function CWYS (Comfirm What You See) is. Also, the Volet end users have the opportunity to choose one of three types of 2FA tokens: hardware OTP tokens, 2FA apps, or 2FA chatbots Protectimus Bot in Telegram, Viber, Facebook Messenger.<\/p>\n<\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p class=\"has-background\" style=\"background-color:#f4f4f4\">To provide an extra layer of protection against phishing and data spoofing<\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<p>The Protectimus CWYS (Confirm What You See) function is a powerful protection tool against phishing, data spoofing, man-in-the-middle attacks, and similar hacking techniques. When the Protectimus CWYS function is activated, the unique data of the user transactions (the amount, currency, recipient data, etc.) are used as variables for the one-time password generation. Such one-time passwords are valid only for the transactions that the users make. Even if the OTP password is intercepted, it will not work to sign any other transaction.<\/p>\n<\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p class=\"has-background\" style=\"background-color:#f4f4f4\">To provide a choice of different types of 2FA tokens for Volet end users<\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<p>The Protectimus two-factor authentication (2FA) system works with different types of OTP tokens: SMS, email, the free 2FA authenticator Protectimus Smart OTP, other 2FA apps, programmable and classic hardware 2FA tokens, and chatbots in instant messengers. The Volet payment system allows the end users to choose one of three types of OTP tokens: a 2FA application Protectimus Smart OTP, a hardware OTP token Protectimus Two, or the delivery of one-time passwords via chatbots in Telegram, Viber, or Facebook Messenger.<\/p>\n\n\n\n<p>To add the Protectimus Two hardware token, the Volet user must order it from their account in the payment system and pay it additionally.<\/p>\n<\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p class=\"has-background\" style=\"background-color:#f4f4f4\">To organize targeted delivery of hardware 2FA tokens to end users of the payment system<\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<p>Protectimus tries to take into account all the requirements of our customers and implement them into life, if possible. One of the unique services that we provide specifically for the Volet payment system is the targeted delivery of hardware tokens to the Volet end users directly from the Protectimus logistics warehouses.<\/p>\n<\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:33.33%\">\n<p class=\"has-background\" style=\"background-color:#f4f4f4\">To find a way to deliver one-time passwords that will be as convenient for the end user as SMS, but at the same time more secure and less expensive<\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:66.66%\">\n<p>Many payment systems, crypto exchanges, and banks use SMS authentication. But this method of two-factor authentication (2FA) is not the best in terms of security because of the risks of message interception and SIM-swapping attacks. In addition, you need to pay extra to the mobile operator for each SMS message.<\/p>\n\n\n\n<p>The Volet payment system spent a lot of money on SMS messages monthly, delivering notifications and OTP password. Our task was to find a more cost effective and secure way to send one-time passwords to the end users.<\/p>\n\n\n\n<p>The solution was found \u2013 we implemented 2FA chatbots Protectimus Bot in Viber, Telegram, and Facebook Messenger messengers. Now Volet is using them to send one-time passwords and other important notifications to their end users. Over time, the list of messengers will expand.<\/p>\n<\/div>\n<\/div>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading has-text-align-center\"><strong>2FA products used by Volet<\/strong><\/h2>\n\n\n\n<div class=\"wp-block-group\"><div class=\"wp-block-group__inner-container is-layout-flow wp-block-group-is-layout-flow\">\n<p><\/p>\n<\/div><\/div>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:20%\">\n<h4 class=\"wp-block-heading\">Protectimus Service<\/h4>\n\n\n\n<p><a rel=\"noreferrer noopener\" href=\"https:\/\/www.protectimus.com\/ru\/guides\/saas-service\/\" target=\"_blank\">The MFA server is already installed and configured in the Protectimus cloud. The customer does not need to spend time and money to create their own infrastructure.<\/a><\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:20%\">\n<h4 class=\"wp-block-heading\">Protectimus CWYS<\/h4>\n\n\n\n<p><a href=\"https:\/\/www.protectimus.com\/blog\/detailed-information-on-data-signing\/\" target=\"_blank\" rel=\"noreferrer noopener\">One-time passwords are created using the user\u2019s unique transaction data as variables, which enhances protection against phishing and data spoofing.<\/a> <\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:20%\">\n<h4 class=\"wp-block-heading\">Protectimus<br>Bot<\/h4>\n\n\n\n<p><a href=\"https:\/\/www.protectimus.com\/protectimus-bot\/\" target=\"_blank\" rel=\"noreferrer noopener\">Free delivery of one-time passwords and any other notifications via chatbots in instant messengers Telegram, Viber, or Facebook Messenger.<\/a><\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:20%\">\n<h4 class=\"wp-block-heading\">Protectimus Smart OTP<\/h4>\n\n\n\n<p><a rel=\"noreferrer noopener\" href=\"https:\/\/www.protectimus.com\/protectimus-smart\/\" target=\"_blank\">Free two-factor authentication application (2FA authenticator) for generating HOTP, TOTP, and OCRA OTP passwords. Available for Android and iOS smartphones.<\/a><\/p>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\" style=\"flex-basis:20%\">\n<h4 class=\"wp-block-heading\">Protectimus<br>Two<\/h4>\n\n\n\n<p><a href=\"https:\/\/www.protectimus.com\/protectimus-two\/\" target=\"_blank\" rel=\"noreferrer noopener\">Hardware 2FA tokens with pre-inatalled secret keys. The secret key cannot be reprogrammed in this OTP token. Waterproof, shockproof, and dust protected.<\/a><\/p>\n<\/div>\n<\/div>\n\n\n\n<p><\/p>\n\n\n\n<h2 class=\"wp-block-heading has-text-align-center\"><strong>Read more Protectimus customer stories<\/strong><\/h2>\n\n\n\n<div class=\"wp-block-columns is-layout-flex wp-container-core-columns-is-layout-9d6595d7 wp-block-columns-is-layout-flex\">\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<p>&nbsp;<\/p>\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><a href=\"https:\/\/www.protectimus.com\/blog\/customer-stories-sicim-2fa\/\" target=\"_blank\" rel=\"noreferrer noopener\">\n<img loading=\"lazy\" decoding=\"async\" width=\"1000\" height=\"1000\" src=\"https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim.png\" alt=\"Sicim 2FA customer story\" class=\"wp-image-7886\" style=\"border: 3px solid #f4f4f4\" srcset=\"https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim.png 1000w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim-300x300.png 300w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim-150x150.png 150w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim-768x768.png 768w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim-610x610.png 610w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim-160x160.png 160w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim-240x240.png 240w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim-60x60.png 60w, https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/sicim-184x184.png 184w\" sizes=\"auto, (max-width: 1000px) 100vw, 1000px\" \/><\/a><\/figure><\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<p>&nbsp;<\/p>\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><a href=\"https:\/\/www.protectimus.com\/blog\/customer-stories-dxc-technology-2fa\/\" target=\"_blank\" rel=\"noreferrer noopener\">\n<img decoding=\"async\" src=\"https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2022\/08\/dxc-technology-logo.jpg\" alt=\"DXC Technology 2FA customer story\" class=\"wp-image-7886\" style=\"border: 3px solid #f4f4f4\"><\/a><\/figure><\/div>\n<\/div>\n\n\n\n<div class=\"wp-block-column is-layout-flow wp-block-column-is-layout-flow\">\n<p>&nbsp;<\/p>\n<div class=\"wp-block-image is-style-default\"><figure class=\"aligncenter size-large\"><a href=\"https:\/\/www.protectimus.com\/blog\/protectimus-customer-stories-2fa-for-ipak-yoli-bank\/\" target=\"_blank\" rel=\"noreferrer noopener\">\n<img decoding=\"async\" src=\"https:\/\/www.protectimus.com\/blog\/wp-content\/uploads\/2024\/09\/Ipak-yoli-bank-logo.png\" alt=\"Ipak Yuli Bank 2FA customer story\" class=\"wp-image-7886\" style=\"border: 3px solid #f4f4f4\"><\/a><\/figure><\/div>\n<\/div>\n<\/div>\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n<span class=\"et_bloom_bottom_trigger\"><\/span>","protected":false},"excerpt":{"rendered":"<p>Volet is a popular payment system for convenient international payments and transactions with cryptocurrencies. Millions of people around the world use the Volet payment system services daily Volet has been cooperating with Protectimus since 2015, and we are extremely pleased with the results of this cooperation. Over the past years, we&#8217;ve had only positive cases [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":8814,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[9],"tags":[1278,142,194,1280,1282,1240,1284,1286],"class_list":["post-7824","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-protectimus-products","tag-customer-stories-en","tag-cwys","tag-protectimus-en","tag-protectimus-bot-en","tag-protectimus-features-en","tag-protectimus-products","tag-protectimus-smart-en","tag-protectimus-two-en"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/posts\/7824","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/comments?post=7824"}],"version-history":[{"count":69,"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/posts\/7824\/revisions"}],"predecessor-version":[{"id":8839,"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/posts\/7824\/revisions\/8839"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/media\/8814"}],"wp:attachment":[{"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/media?parent=7824"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/categories?post=7824"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.protectimus.com\/blog\/wp-json\/wp\/v2\/tags?post=7824"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}