Identity and Access Management: Strategy and Solution Sandeep Sinha Lead Product Manager Windows Server Product Management Redmond,

Slides:



Advertisements
Similar presentations
Bruce Cowper IT Pro Advisor Microsoft Canada. Agenda Windows Server™ 2003 R2 –Principal Scenarios Identity and Access Management Efficient Storage Management.
Advertisements

Microsoft Forefront Identity Manager 2010
Identity and Access Management Strategy and Solution.
Prepared by Dept. of Information Technology & Telecommunication, October 24, 2005 Enterprise Directory Services and Identity Management.
Virtual techdays INDIA │ august 2010 Managing Active Directory Using Microsoft Forefront Identity Manager: Amol R Bhandarkar │ Tech Specialist –
Understanding Active Directory
Identity Management with Microsoft Identity Integration Server.
Identity and Access Management
Access and Identity Management for Enterprise Portals Rohit Gupta Director, Identity Management Product Management Oracle Corporation.
Microsoft Office Sharepoint Server 2007 (MOSS) Overview Momentum Microsoft November 15, 2007.
SIM205. (On-Premises) Storage Servers Networking O/S Middleware Virtualization Data Applications Runtime You manage Infrastructure (as a Service)
Guidance 15-Day (Proof-of-Concept) 10-Day (Proof-of-Concept) 5-Day (Deployment Documents) 3-Day (Architectural Design Session) 1-Day (Strategic.
Ing. Ondřej Ševeček | GOPAS a.s. | MCM: Directory Services | MVP: Enterprise Security | | |
Identity Management David Hoyle Consultant
© 2008 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. HP Automates Infrastructure Outsourcing.
Microsoft Identity and Access Solutions Market Trends and Futures
Identity Lifecycle Management Jonny Chambers Senior Technical Specialist Microsoft Ireland
Windows Azure Networking & Active Directory Nasir (Muhammad Nasiruddin) Developer Evangelist - Azure Microsoft Corporation
Matt Steele Senior Program Manager Microsoft Corporation SESSION CODE: SIA326.
Identity and Access Management Business Ready Security Solutions.
May 30 th – 31 st, 2006 Sheraton Ottawa. Microsoft Certificate Lifecycle Manager Saleem Kanji Technology Solutions Professional - Windows Server Microsoft.
Energy Ecosystem Overview David Miller Chief Security Officer.
Christopher Chapman | MCT Content PM, Microsoft Learning, PDG Planning, Microsoft.
Case Study: DirXML Implementation at Waste Management Rick Wagner Systems Engineer Novell, Inc.
ArcGIS Server and Portal for ArcGIS An Introduction to Security
Using AS 10g with EBS What are the Benefits of Integrating AS 10g with Oracle Applications?
…. PrePlanPrepareMigratePost Pre- Deployment PlanPrepareMigrate Post- Deployment First Mailbox.
Module 5 Configuring Authentication. Module Overview Lesson 1: Understanding Classic SharePoint Authentication Providers Lesson 2: Understanding Federated.
Windows NT ® Single Sign On Cross Platform Applications (Part II) John Brezak Program Manager Windows NT Security Microsoft Corporation.
Sudha Iyer Principal Product Manager Oracle Corporation.
Tech Ed North America /24/2017 1:59 AM SESSION CODE: SIA327
Identity Solution in Baltic Theory and Practice Viktors Kozlovs Infrastructure Consultant Microsoft Latvia.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
One Platform, One Solution: eToken TMS 5.1 Customer Presentation November 2009.
Windows Role-Based Access Control Longhorn Update
AUTOMATING DAAS DESKTOPS WITH CITRIX CORTEX Tony Sanchez WW Alliances Solutions Architecture Citrix Systems Inc SESSION CODE: CLI415 (c) 2011 Microsoft.
- NCSU project goals and requirements - Adoption Drivers - Current challenges and pain points - Identacor at NCSU - Identacor Features - NCSU Key Benefits.
Federico Guerrini IDA TSP, EMEA Incubation Team From Identity Synchronization to Identity Management.
Web Services Security Patterns Alex Mackman CM Group Ltd
University of Washington Collaboration: Identity and Access Management Lori Stevens University of Washington October 2007.
February 24 th, 9am-11am Part 1: Preventing the “Big Lebowski” Justin Stanton, Stuart Ami from Interlink Group, LLC Part 2: Windows Focused Identity Administration.
Linus Joyeux Valerie Alonso Managing consultantLead consultant blue-infinity (Switzerland) Active Directory Federation Services v2.
Microsoft Identity Integration Server & Role Base Access Theo Kostelijk Consultant Microsoft BV
Active Directory Domain Services (AD DS). Identity and Access (IDA) – An IDA infrastructure should: Store information about users, groups, computers and.
The Four Pillars of Identity: A Solution for Online Success Tom Shinder Principle Writer and Knowledge Engineer, SCD iX Solutions Group Microsoft Corporation.
ADFS - Does it Still have a Place? Fitting into the EMS puzzle Frank C. Drewes III 2016 Redmond Summit | Identity.
Azure Active Directory Uday Hegde 2016 Redmond Summit | Identity Without Boundaries May 26, 2016 Group Program Manager, Azure AD
Protect your data Enable your users Desktop Virtualization Information protection Mobile device & application management Identity and Access Management.
Today’s challenges Data Users Apps Devices
Identity and Access Management
Secure Connected Infrastructure
LOCAL CLOUDINESS Dino Buljubašić Rijad Smajlović
Introduction to Windows Azure AppFabric
City-wide Active Directory Project Town Hall II
5/21/2018 9:40 PM BRK3021 Learn about modern infrastructure roles in RDS: Next generation Windows desktop & app virtualization Clark Nicholson - Principal.
Deployment Planning Services
SaaS Application Deep Dive
The power of common identity across any cloud
Forefront Security ISA
SharePoint Online Management and Control
Managing Digital Identity
Access and Information Protection Product Overview October 2013
Identity Infrastructure Fundamentals and Key Capabilities
TechEd /9/2018 1:09 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks.
Office 365 Identity Management
2/27/2019 © 2014 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks and/or trademarks.
James Cowling Senior Technical Architect
System Center Marketing
TechEd /6/ :24 PM © 2013 Microsoft Corporation. All rights reserved. Microsoft, Windows, and other product names are or may be registered trademarks.
Microsoft Virtual Academy
Presentation transcript:

Identity and Access Management: Strategy and Solution Sandeep Sinha Lead Product Manager Windows Server Product Management Redmond, USA

Agenda   Business Drivers   The Challenge   Identity and Access Management Framework   Identity and Access Management Solutions

The Issues  Password Management  Provisioning and De-provisioning  Customer Portal  Partner Integration  Security  Regulatory Compliance

Business Drivers Strategic Initiative Connecting with customers and partners Connecting with customers and partners Employee Portal/Personalization Employee Portal/Personalization Externalization of business processes Externalization of business processes Improve Security Secure data and network access Secure data and network access Assure authentication across platforms Assure authentication across platforms Manage cross-platform environment centrally Manage cross-platform environment centrally Regulatory Compliance HIPAA HIPAA Gramm-Leach-Blailey Gramm-Leach-Blailey FDIC FDIC Lower Operations Cost Decrease administrative/help desk overhead Decrease administrative/help desk overhead Reduce number of logins/passwords Reduce number of logins/passwords Lower cost for high-turnover environments Lower cost for high-turnover environments

The Challenge Provisioning Single Sign On Interoperability Authentication Authorization Passwords Directories

Microsoft’s Framework Directory Services Federation AuthenticationAuthorization Applications Provisioning

The Solution  Active Directory – The foundation  Windows Integrated Applications  Network Single Sign-on with Windows Server  Extending to non-integrated applications  Using Active Directory for LDAP authentication  The role of Microsoft Metadirectory Server (MMS) WindowsSingleSign-on  B2E using Active Directory and IIS  B2C using Active Directory and Passport  Extranet Access Management using Active Directory Web Single Sign-on Reduced Enterprise Sign-on

Windows Single Sign-on Integrated Windows Sign-on ActiveDirectory Logon to Windows Flexible Authentication Kerberos X509 v3/Smartcard Biometrics Passport (Web) Basic (Web) Digest (Web) Single Sign-on to: Windows File servers Windows Web applications Exchange SQL Server BizTalk Server Other Microsoft applications 3 rd Party Integrated Apps Exchange Web Service File Share Windows Integrated Applications

Reduced Enterprise Sign-On Extending Windows SSO ActiveDirectory Logon to AD Services for UNIX  NIS Server for AD  NIS-AD directory sync  Password synchronization  User name mapping UNIX Host Integration Server  Windows to RACF accounts  Windows to AS/400 Security System  Bi-Directional Password Synchronization 390/AS400 KerberosApplication Kerberos  Native AuthN protocol  MIT v5 Compliant  Carries group info in PAC  Windows PAC is open

Reduced Enterprise Sign-on LDAP Authentication & Directory Integration Account Directory LDAP SQL Enterprise App Integrate LDAP with AD  LDAP v3 compliant  Single AD and LDAP user account  AD/AM for personalization data Microsoft Metadirectory Server  Directory synchronization  LDAP (eg iPlanet & others)  Relational databases  Application specific  Account Provisioning  Automate account creation  Automate account de- provisioning  Password Management (MMS 2003)  Self-service password reset Exchange Web Service File Share Application Application ActiveDirectory

Web Single Sign-on B2C Using Active Directory and Passport Windows Server 2003 IIS Web Server (Step 1) Customer accesses a Web site using any standards-based browser (Step 4) User is authorized based AD account. (Step 2) Passport verifies the user’s credentials and sends a PUID back to the Web site (Step 3) Web app verifies activation code & maps PUID to AD account. ActiveDirectory Applications Passport manages user credentials Passport manages user authentication You manage user access controls

Web Single Sign-on Extranet Access Management using AD Web App 1 SSO Agent Web App 2 Delegated Admin ActiveDirectory EAM Web SSO Authentication LDAP Bind SSL Session Cookie Corporate Identities Authorization Check Partner Identities Enterprise Extranet“Trusted” Business Partner ActiveDirectory

Microsoft Products  Windows Server 2003  Active Directory, PKI, IAS  Microsoft Metadirectory Server 2003  Host Integration Server  Services for UNIX

Identity and Access Management Solution  Prescriptive Guidance  Proven  Actionable  Relevant  Benefits  Faster Time to Market  Lower Implementation Cost  Lower implementation Risks

Identity and Access Management Solution  Availability  Partners ready to deliver today.  Early July – Customer documents  Cost  Free  Development Partners  PricewaterhouseCoopers LLP  Oblix  OpenNetworks  Global Service Partners  PricewaterhouseCoopers LLP  Unisys  Hewlett Packard  Cap Gemini Ernst and Young  Demo  Available at Microsoft Booth

Call to Action  Call Microsoft or Partner Sales Reps  Create Vision and Strategy  Start small and focus on ROI  Leverage Microsoft’s Solution  Engage Partners and MCS

© 2003 Microsoft Corporation. All rights reserved. This presentation is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS SUMMARY.