Sway3-1 NabiTel Component : Global Sign-On  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리  Policy.

Slides:



Advertisements
Similar presentations
© 2006 IBM Corporation Tivoli Identity Manager Express Tivoli Access Manager for Enterprise Single Sign-On (Product Demonstrations) Tivoli Live! – 15 June.
Advertisements

Web-Based NT Administration Via Perl George Kuetemeyer Thomas Jefferson University Hospital.
POC Security System High security system combining PIN-on-Card, information security, physical access, control and alarm – all in one system.
Remote Desktop Services
Notes: Update as of 1/13/2010. Vulnerabilities are included for SQL Server 2000, SQL Server 2005, SQL Server Oracle (8i, 9i, 9iR2, 10g, 10gR2,11g),
Chapter 7 LAN Operating Systems LAN Software Software Compatibility Network Operating System (NOP) Architecture NOP Functions NOP Trends.
Enhancing Productivity & Lowering Costs with CA Management Software Case study Zürcher Kantonalbank (ZKB)
Active Directory: Final Solution to Enterprise System Integration
Notes to the presenter. I would like to thank Jim Waldo, Jon Bostrom, and Dennis Govoni. They helped me put this presentation together for the field.
1 ECM System Monitor in the CMOD Environment. © 2013 IBM Corporation Enterprise Content Management IBM ECM System Monitor Improve Availability / Lower.
Network+ Guide to Networks, Fourth Edition Chapter 10 Netware-Based Networking.
Understanding Networks I. Objectives Compare client and network operating systems Learn about local area network technologies, including Ethernet, Token.
IBM Software Group Disaster Recovery Planning: Protecting Your Data from the Unexpected.
1 Integrating Windows NT Server 4.0 with NetWare, UNIX, IBM, and Macintosh Operating Systems COSC 513 Project Name: Weili Dai Student ID: Instructor:
S6C12 - AAA AAA Facts. AAA Defined Authentication, Authorization, and Accounting Central Management of AAA –Information in a single, centralized, secure.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Windows 2000 Security Architecture Peter Brundrett Program Manager Windows 2000 Security Microsoft Corporation.
Public Key Infrastructure from the Most Trusted Name in e-Security.
Windows ® Powered NAS. Agenda Windows Powered NAS Windows Powered NAS Key Technologies in Windows Powered NAS Key Technologies in Windows Powered NAS.
Slide Master Layout Useful for revisions and projector test  First-level bullet  Second levels  Third level  Fourth level  Fifth level  Drop body.
Security features of Windows What is computer security ? Computer security refers to the protection of all components—hardware, software, and stored.
BASIC NETWORK CONCEPTS (PART 6). Network Operating Systems NNow that you have a general idea of the network topologies, cable types, and network architectures,
Developing for Novell ® Nsure ™ SecureLogin Gordon Mathis Senior Software Engineer, Novell Inc.
1 FirePass 6.0 Sales Training. 2 Agenda FirePass 6.0 Release Highlights Packaging & Pricing Product Availability Q&A.
Novera Software, Inc The Leader in Java Application Servers.
Technology Overview. Agenda What’s New and Better in Windows Server 2003? Why Upgrade to Windows Server 2003 ?  From Windows NT 4.0  From Windows 2000.
File Recovery and Forensics
Microsoft Active Directory(AD) A presentation by Robert, Jasmine, Val and Scott IMT546 December 11, 2004.
The Windows NT ® 5.0 Public Key Infrastructure Charlie Chase Program Manager Windows NT Security Microsoft Corporation.
Choosing NOS can be a complex and a difficult decision. Every popular NOS has its strengths and weaknesses. NOS may cost thousands of dollars depending.
CorporateInformationSecurity Corporate Information Security User Identification & Logical Access Control.
© Copyright 2009 Sysgem AG, 8002 Zurich, Switzerland Sysgem Products Sysgem Enterprise Manager (SEM)  Identity & Access Management  System Management.
Designing Authentication for a Microsoft Windows 2000 Network Designing Authentication in a Microsoft Windows 2000 Network Designing Kerberos Authentication.
TWSd - Security Workshop Part I of III T302 Tuesday, 4/20/2010 TWS Distributed & Mainframe User Education April 18-21, 2010  Carefree Resort  Carefree,
Windows NT ® Single Sign On Cross Platform Applications (Part II) John Brezak Program Manager Windows NT Security Microsoft Corporation.
©2002 Allen Systems Group, Inc. All Rights Reserved. by Scott Webb, ASG Senior Sales Engineer by Scott Webb, ASG Senior Sales Engineer ASG-sys*ADMIRAL.
1 Introduction to Microsoft Windows 2000 Windows 2000 Overview Windows 2000 Architecture Overview Windows 2000 Directory Services Overview Logging On to.
Web Design and Development for E-Business By Jensen J. Zhao Copyright 2003 Prentice Hall, Inc. Web Design and Development for E-Business Jensen J. Zhao.
® Gradient Technologies, Inc. Inter-Cell Interworking Access Control Across the Boundary Open Group Members Meeting Sand Diego, CA USA April 1998 Brian.
Single Sign-On
Lieberman Software Random Password Manager & Two-Factor Authentication.
Operating System Security Fundamentals Dr. Gabriel.
Sway7-1 NabiTel  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리  Policy Director : 웹 서버 접근 관리.
NT SECURITY Introduction Security features of an operating system revolve around the principles of “Availability,” “Integrity,” and Confidentiality. For.
Single Sign-On across Web Services Ernest Artiaga CERN - OpenLab Security Workshop – April 2004.
Sway4-1 NabiTel Component : Security Manager  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리 
Strong Authentication to any Application Using SecureLogin and NMAS TM Scott Kiester and John Jolly Software Engineer Novell, Inc.
Sway5-1 NabiTel Component : Policy Director  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리 
A. Frank - P. Weisberg Operating Systems Structure of Operating Systems.
® IBM Software Group ©IBM Corporation IBM Information Server Architecture Overview.
1 Active Directory Service in Windows 2000 Li Yang SID: November 2000.
TXSeries for Multiplatforms, Version 6.2 Effective multiplatform transaction processing Version 6 delivery.
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
Module 14: Advanced Topics and Troubleshooting. Microsoft ® Windows ® Small Business Server (SBS) 2008 Management Console (Advanced Mode) Managing Windows.
Glink for Java: applet, application and an API for integrating access to Bull, IBM, UNIX and Minitel systems with your Java based e-business applications.
LINUX Presented By Parvathy Subramanian. April 23, 2008LINUX, By Parvathy Subramanian2 Agenda ► Introduction ► Standard design for security systems ►
Unit 1: IBM Tivoli Storage Manager 5.1 Overview. 2 Objectives Upon the completion of this unit, you will be able to: Identify the purpose of IBM Tivoli.
Business Objects XIr2 Windows NT Authentication Single Sign-on 18 August 2006.
Tivoli Workload Scheduler for Applications PeopleSoft Integration
IBM Software Group © 2008 IBM Corporation IBM Tivoli Provisioning Manager 7.1 OS Management with TPM for OS Deployment.
Operating Systems Fundamentals Nanda Ganesan, Ph.D.
Secure Connected Infrastructure
System Center 2012 Configuration Manager
Novell Account Management Introduction and Overview
Public Key Infrastructure from the Most Trusted Name in e-Security
PLANNING A SECURE BASELINE INSTALLATION
Introduction to Operating Systems
STATEL an easy way to transfer data
Presentation transcript:

Sway3-1 NabiTel Component : Global Sign-On  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리  Policy Director : 웹 서버 접근 관리  Privacy Manager : 개인 정보 접근 관리  Risk Manager : 침입 위험 관리  PKI : 공개 키를 이용한 인증 관리  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리  Policy Director : 웹 서버 접근 관리  Privacy Manager : 개인 정보 접근 관리  Risk Manager : 침입 위험 관리  PKI : 공개 키를 이용한 인증 관리

Sway3-2 NabiTel Component : Global Sign-On - 특징  One time Log on but can access all permitted resources  Built on a robust, secure, and centralized authentication  Interoperable with existing security environments  Uses Kerberos secret key authentication for the initial logon  Uses 56-bit DES: authentication server -> user's workstation  Logon information  ID, password, host name, and so on  Never cached or stored on the user's workstation  One time Log on but can access all permitted resources  Built on a robust, secure, and centralized authentication  Interoperable with existing security environments  Uses Kerberos secret key authentication for the initial logon  Uses 56-bit DES: authentication server -> user's workstation  Logon information  ID, password, host name, and so on  Never cached or stored on the user's workstation

Sway3-3 NabiTel Component : Global Sign-On - 특징 ( 계속 )  Two methods of strong authentication  Smart cards  PKCS#11 smart-card interface standard  Tested  Schlumberger Cryptoflex SmartCard from Litronic Inc.  IBM SmartCard  Biometrics  SecureTouch fingerprint reader from Biometric Access Corporation  Two methods of strong authentication  Smart cards  PKCS#11 smart-card interface standard  Tested  Schlumberger Cryptoflex SmartCard from Litronic Inc.  IBM SmartCard  Biometrics  SecureTouch fingerprint reader from Biometric Access Corporation

Sway3-4 NabiTel Component : Global Sign-On - 특징 ( 계속 )  Tivoli Management  Integrates with Tivoli SecureWay User Administration  Integration supports role-based administration  Tivoli Plus module : automated installation and configuration  The included distributed monitoring support  Monitor allowed from Tivoli Enterprise Console  Monitor allowed from Tivoli Distributed Monitoring.  Tivoli Management  Integrates with Tivoli SecureWay User Administration  Integration supports role-based administration  Tivoli Plus module : automated installation and configuration  The included distributed monitoring support  Monitor allowed from Tivoli Enterprise Console  Monitor allowed from Tivoli Distributed Monitoring.

Sway3-5 NabiTel Component : Global Sign-On - 특징 ( 계속 )  Extensible and Flexible  Extensible to any application that requires logon  Using program-template files and scripting  Allows logon to applications or systems that provide  Command line interface (CLI)  Application programming interface (API)  Supports 3270 emulation, 5250 emulation, and many others  Supports a standard Windows dialog box for logon/password  Uses window-watching adapter code  Example : Lotus cc:Mail, many Internet-based applications  Extensible and Flexible  Extensible to any application that requires logon  Using program-template files and scripting  Allows logon to applications or systems that provide  Command line interface (CLI)  Application programming interface (API)  Supports 3270 emulation, 5250 emulation, and many others  Supports a standard Windows dialog box for logon/password  Uses window-watching adapter code  Example : Lotus cc:Mail, many Internet-based applications

Sway3-6 NabiTel TSO NT Apps LAN Server Netware Server Notes Server Targets Databases VM GSO Client Programs: - PCOM (3270 emul) - NT client - Netware client -Notes client GSO Server - VM - TSO - NT Apps - Netware Server - LAN Server - Notes Server User's Target info Request authentication from server SMART CARD U/P Single Logon Securely retrieve target info Get local logon mechanisms Logon to targets User Admin Software Distribution Event Console Distributed Monitor Component : Global Sign-On - Architecture

Sway3-7 NabiTel  Target application 이 GSO 의 “out of the box” 로 구현될 수 없을 경우  Target 을 지원하도록 GSO 를 확장  GSO 는 다음을 경유한 logon 을 사용하는 Application 에 대해 확장될 수 있음  Application Programming Interface (API)  Command Line Interface (CLI)  Windows dialog box  Terminal Emulation (via EHLLAPI)  Software Development Guide (SDG) 사용  확장 예 :  Peoplesoft, SAP, cc:Mail, Web Server GUI, Tivoli Desktop, etc. Component : Global Sign-On - Target 확장성

Sway3-8 NabiTel Component : Global Sign-On - 효과  Userid, Password 단일화  관리 단순  분실 / 노출 위험 감소  접근 통제의 집중화  효과적 통제  일관성 유지  Virtual Single System Image  생산성 증대  관리 효율성 향상  Userid, Password 단일화  관리 단순  분실 / 노출 위험 감소  접근 통제의 집중화  효과적 통제  일관성 유지  Virtual Single System Image  생산성 증대  관리 효율성 향상 Sun HP AIX NetWare NT End User Notes/Domino OS/390 AS/400 Unix OS/2 GSO 1 id, 1 pwd

Sway3-9 NabiTel Component : Global Sign-On - Platform  Client  Windows 95  Windows 98  Windows NT 4.0  Client  Windows 95  Windows 98  Windows NT 4.0  Target  3270 mainframe applications  5250 applications (OS/400R)  Novell NetWare  Windows NT Server  LAN Server/Warp Server  Lotus Notes  UNIX systems  Other systems and applications  Using CLI  Using API  Using window-watching  Target  3270 mainframe applications  5250 applications (OS/400R)  Novell NetWare  Windows NT Server  LAN Server/Warp Server  Lotus Notes  UNIX systems  Other systems and applications  Using CLI  Using API  Using window-watching  Server  Windows NT 4.0  AIX  Sun Solaris  Server  Windows NT 4.0  AIX  Sun Solaris