Sway5-1 NabiTel Component : Policy Director  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리 

Slides:



Advertisements
Similar presentations
Citrix Secure Gateway v1.1 Technical Presentation August 2002 Technical Presentation August 2002.
Advertisements

Introduction to z/OS Security Lesson 4: There’s more to it than RACF
 1997 Entrust Technologies Orchestrating Enterprise Security Entrust Public Key Infrastructure Erik Schetina Chief Technology Officer IFsec, LLC
Novell eDirectory™ Deployment at Hydro Quebec Richard Cabana Enterprise Technology Account Manager Novell Canada Ltd.
Sway3-1 NabiTel Component : Global Sign-On  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리  Policy.
IBM Software Group ® Accessing Domino via Outlook iNotes Access for Microsoft Outlook - Notes Domino 5.5 – Domino Access for MS Outlook - Notes Domino.
Secure Remote Access from Cyber Cafe Timothy Siu SunONE SE Manager
Sentry: A Scalable Solution Margie Cashwell Senior Sales Engineer Sept 2000 Margie Cashwell Senior Sales Engineer
Novell iChain ® 2.x Configuration Using the Web Server Accelerator Wizard Cary Andrews Senior Software Engineer Novell, Inc.
Windows Vista And Longhorn Server PKI Enhancements Avi Ben-Menahem Lead Program Manager Windows Security Microsoft Corporation.
6/4/2015Page 1 Enterprise Service Bus (ESB) B. Ramamurthy.
Understanding Active Directory
Security and Policy Enforcement Mark Gibson Dave Northey
Using Internet Information Server And Microsoft ® Internet Explorer To Implement Security On The Intranet HTTP.
1 Pertemuan 10 Network Security and E-Commerce Matakuliah: M0284/Teknologi & Infrastruktur E-Business Tahun: 2005 Versi: >
Identity and Access Management
Remote Networking Architectures
PKI Network Authentication Dartmouth Applications Robert Brentrup Educause/Dartmouth PKI Summit July 27, 2005.
The World's Most Secured Browsing Solution COCKPIT4i is a radically new, powerful solution that protects against the security risks posed by exposure to.
Public Key Infrastructure from the Most Trusted Name in e-Security.
Windows 2003 and 802.1x Secure Wireless Deployments.
Matt Steele Senior Program Manager Microsoft Corporation SESSION CODE: SIA326.
May 30 th – 31 st, 2006 Sheraton Ottawa. Microsoft Certificate Lifecycle Manager Saleem Kanji Technology Solutions Professional - Windows Server Microsoft.
BASIC NETWORK CONCEPTS (PART 6). Network Operating Systems NNow that you have a general idea of the network topologies, cable types, and network architectures,
RSA Security Validating Users and Devices to Protect Network Assets Endpoint Solutions for Cisco Environments.
Best Practices in Deploying a PKI Solution BIEN Nguyen Thanh Product Consultant – M.Tech Vietnam
Module 10: Designing an AD RMS Infrastructure in Windows Server 2008.
Cyberoam - Unified Threat Management Unified Threat Management Cyberoam Copyright (C) 2010 Elitecore Technologies Ltd. All rights reserved. Privacy Policy.
Novera Software, Inc The Leader in Java Application Servers.
Making the Internet a Better Place for Business NIST PKI Steering Committee March 14, 2002.
Technology Overview. Agenda What’s New and Better in Windows Server 2003? Why Upgrade to Windows Server 2003 ?  From Windows NT 4.0  From Windows 2000.
Deploying PKI Inside Microsoft The experience of Microsoft in deploying its own corporate PKI Published: December 2003.
Joseph Ferracin Director IT Security Solutions Managing Security.
Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®
70-411: Administering Windows Server 2012
1 © Copyright IBM Corporation 2000 TPF in a Distributed World Stuart Waldron October 16, 2000 Any references to future plans are for planning purposes.
Simplify and Strengthen Security with Oracle Application Server Allan L Haensgen Senior Principal Instructor Oracle Corporation Session id:
® Gradient Technologies, Inc. Extending the Value of DCE Open Group Members Meeting Sand Diego, CA USA April 1998 Brian Breton.
1 Introduction to Microsoft Windows 2000 Windows 2000 Overview Windows 2000 Architecture Overview Windows 2000 Directory Services Overview Logging On to.
Sudha Iyer Principal Product Manager Oracle Corporation.
Maintaining Network Health. Active Directory Certificate Services Public Key Infrastructure (PKI) Provides assurance that you are communicating with the.
® Gradient Technologies, Inc. Inter-Cell Interworking Access Control Across the Boundary Open Group Members Meeting Sand Diego, CA USA April 1998 Brian.
Empowering people-centric IT Unified device management Access and information protection Desktop Virtualization Hybrid Identity.
One Platform, One Solution: eToken TMS 5.1 Customer Presentation November 2009.
Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®
"The majority of users in a typical enterprise simply want frequent, location-independent access to a few key applications, such as , calendar and.
Sway7-1 NabiTel  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리  Policy Director : 웹 서버 접근 관리.
Introduction to Microsoft Windows 2000 Welcome to Chapter 1 Windows 2000 Server.
Sway4-1 NabiTel Component : Security Manager  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리 
IT 620 Enterprise Systems Integration January 31, 2002.
Microsoft.NET; A vision for the next generation of XML Web Services. Steven Adler Product Manager Microsoft EMEA.
"The majority of users in a typical enterprise simply want frequent, location-independent access to a few key applications, such as , calendar and.
Module 9 User Profiles and Social Networking. Module Overview Configuring User Profiles Implementing SharePoint 2010 Social Networking Features.
1 Chapter 13: RADIUS in Remote Access Designs Designs That Include RADIUS Essential RADIUS Design Concepts Data Protection in RADIUS Designs RADIUS Design.
1 Active Directory Service in Windows 2000 Li Yang SID: November 2000.
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
The Hierarchical Trust Model. PGP Certificate Server details Fast, efficient key repository –LDAP, HTTP interfaces Secure remote administration –“Pending”
Linus Joyeux Valerie Alonso Managing consultantLead consultant blue-infinity (Switzerland) Active Directory Federation Services v2.
Oracle’s Hyperion Planning Architecture Browser/Office Client Windows* / UNIX / Linux Server Web Data EntryMS Office IntegrationReporting and Analysis.
Rights Management for Shared Collections Storage Resource Broker Reagan W. Moore
David Saslav Principal Product Manager Database and Application Server Technologies Oracle Corporation.
Active Directory Domain Services (AD DS). Identity and Access (IDA) – An IDA infrastructure should: Store information about users, groups, computers and.
L’Oreal USA RSA Access Manager and Federated Identity Manager Kick-Off Meeting March 21 st, 2011.
Linux Virtual Desktop Infrastructure (VDI) Access Bringing Linux virtualization to the enterprise Presenter: James Lui Director of Technical Services,
PowerMart of Informatica
Introduction to z/OS Security Lesson 4: There’s more to it than RACF
Goals Introduce the Windows Server 2003 family of operating systems
Public Key Infrastructure from the Most Trusted Name in e-Security
Presentation transcript:

Sway5-1 NabiTel Component : Policy Director  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리  Policy Director : 웹 서버 접근 관리  Privacy Manager : 개인 정보 접근 관리  Risk Manager : 침입 위험 관리  PKI : 공개 키를 이용한 인증 관리  User Administration : 사용자 등록 관리  Global Sign-On : 사용자 Log On 관리  Security Manager : 보안 정책 생성 및 적용 관리  Policy Director : 웹 서버 접근 관리  Privacy Manager : 개인 정보 접근 관리  Risk Manager : 침입 위험 관리  PKI : 공개 키를 이용한 인증 관리

Sway5-2 NabiTel Component : Policy Director - 특징  Addresses the top challenges of e-business security  Secure communication with  Customers  Business partners  Others  Centrally define/manage security policy e-business applications  Transparently enforce authorization policy  Through access control rights to Web applications  Support virtually any client device  Browsers  Pervasive devices that use Wireless Access Protocol(WAP)  Addresses the top challenges of e-business security  Secure communication with  Customers  Business partners  Others  Centrally define/manage security policy e-business applications  Transparently enforce authorization policy  Through access control rights to Web applications  Support virtually any client device  Browsers  Pervasive devices that use Wireless Access Protocol(WAP)

Sway5-3 NabiTel Component : Policy Director - 특징 ( 계속 )  Use public key infrastructure (PKI)-based authentication  To access existing Web-based applications  No rewriting or modification of applications  Control access to legacy TCP/IP-based client/server applications  Provide single sign-on to Web-based applications  Access for the Right People at the Right Time  Reduce your cost of building security into new applications  Eliminate the need to write complex security code  Use public key infrastructure (PKI)-based authentication  To access existing Web-based applications  No rewriting or modification of applications  Control access to legacy TCP/IP-based client/server applications  Provide single sign-on to Web-based applications  Access for the Right People at the Right Time  Reduce your cost of building security into new applications  Eliminate the need to write complex security code

Sway5-4 NabiTel Component : Policy Director - 특징 ( 계속 )  Secure Access to Enterprise Web Servers  WebSEAL server manages access to all your Web servers  Centrally control Web resources as one logical Web space  Intelligent load balancing over replicated servers  Effective server scalability and deployment  Provides a fail over capability  Automatically switch to a backup Web server.  Secure Access to Enterprise Web Servers  WebSEAL server manages access to all your Web servers  Centrally control Web resources as one logical Web space  Intelligent load balancing over replicated servers  Effective server scalability and deployment  Provides a fail over capability  Automatically switch to a backup Web server.

Sway5-5 NabiTel Component : Policy Director - 특징 ( 계속 )  Supports authentication and access control of Web browsers  Through user IDs and passwords  Through client-side certificates  Through RSA SecureID tokens  Provides single sign-on access to the Web servers it secures  Single log on once to PD  Subsequent logons are handled transparently  Supports authentication and access control of Web browsers  Through user IDs and passwords  Through client-side certificates  Through RSA SecureID tokens  Provides single sign-on access to the Web servers it secures  Single log on once to PD  Subsequent logons are handled transparently

Sway5-6 NabiTel Component : Policy Director - 특징 ( 계속 )  Secure Access to Legacy Client/Server Applications  Secures traditional Internet services  Telnet and TCP/IP-based legacy applications  Logon required for access  VPN support  Between NetSEAT client and NetSEAL server  End-to-end encryption  Secure Access to Legacy Client/Server Applications  Secures traditional Internet services  Telnet and TCP/IP-based legacy applications  Logon required for access  VPN support  Between NetSEAT client and NetSEAL server  End-to-end encryption

Sway5-7 NabiTel Component : Policy Director - 특징 ( 계속 )  Support for Many Standardized Features  Supports many open, industry standards  LDAP for the storage of user and group credentials  Supports Netscape/IBM SecureWay LDAP directories  Provides strong authentication to web-based resources  Using X.509 V3 client certificates  Support/manage for full Certificate Revocation List (CRL)  Real-time control of user access rights  Support for Many Standardized Features  Supports many open, industry standards  LDAP for the storage of user and group credentials  Supports Netscape/IBM SecureWay LDAP directories  Provides strong authentication to web-based resources  Using X.509 V3 client certificates  Support/manage for full Certificate Revocation List (CRL)  Real-time control of user access rights

Sway5-8 NabiTel Component : Policy Director - 특징 ( 계속 )  Authorization API (AuthAPI) implements  Open Group Authorization Service API (aznAPI)  Provides a common set of authorization services  Support multiple operating system environments  Logon required for access  Security application development API  Customized security environment  Authorization decision-making possible in applications  Authorization API (AuthAPI) implements  Open Group Authorization Service API (aznAPI)  Provides a common set of authorization services  Support multiple operating system environments  Logon required for access  Security application development API  Customized security environment  Authorization decision-making possible in applications

Sway5-9 NabiTel Component : Policy Director - 특징 ( 계속 )  Integration with Other Tivoli Products  Foundation for Policy Director for Application Servers  Adds security support for CORBA applications  Logon required for access  Backbone for Tivoli SecureWay Privacy Manager  Integrates with Tivoli SecureWay PKI  Identifies users to PD access  Identifies PD to Web browsers  Integration with Other Tivoli Products  Foundation for Policy Director for Application Servers  Adds security support for CORBA applications  Logon required for access  Backbone for Tivoli SecureWay Privacy Manager  Integrates with Tivoli SecureWay PKI  Identifies users to PD access  Identifies PD to Web browsers

Sway5-10 NabiTel Component : Policy Director - 특징 ( 계속 )  Can configure PD as a logon target for Global Sign-On  Provide single sign-on across enterprise  Enables users to access resources across the enterprise  Integration with UA and SM  Allows PD user creation from UA console  Allows security policies from SM console  Can configure PD as a logon target for Global Sign-On  Provide single sign-on across enterprise  Enables users to access resources across the enterprise  Integration with UA and SM  Allows PD user creation from UA console  Allows security policies from SM console

Sway5-11 NabiTel Policy Director WebSEAL Authorization Database Firewall Component : Policy Director - Architecture 사용자 1 권한 : A, B 사용자 2 권한 : B, C A C B Smart Junction Logical Web Space

Sway5-12 NabiTel Component : Policy Director - Access Control

Sway5-13 NabiTel Component : Policy Director - 효과  Application 과 보안의 독립  No Agent Code  No Security Code  Centralized Single Point Control  Authentication  Authorization  e-Commerce Infra Enabler  Virtual Web Server Integration  생산성 증대  관리 효율성 향상  Application 과 보안의 독립  No Agent Code  No Security Code  Centralized Single Point Control  Authentication  Authorization  e-Commerce Infra Enabler  Virtual Web Server Integration  생산성 증대  관리 효율성 향상 Microsoft IBM User Netscape Policy Director Single Point Access Control Apache Permi t Deny

Sway5-14 NabiTel Component : Policy Director - Platform  Client  Windows 95  Windows 98  Windows NT 4.0  Client  Windows 95  Windows 98  Windows NT 4.0  Server  IBM RS/6000  Sun SPARC  Intel x86 or Pentium  IBM AIX  Sun Solaris 2.6  Windows NT 4.0  HP-UX 11.0  Server  IBM RS/6000  Sun SPARC  Intel x86 or Pentium  IBM AIX  Sun Solaris 2.6  Windows NT 4.0  HP-UX 11.0

Sway5-15 NabiTel "Policy Director authorization and access control technology has been instrumental in helping us build several of our most strategic e-business initiatives -- in particular our Global Supplier Network and our intranet capabilities. " Ralph Szygenda - Vice President and Chief Information Officer, General Motors. Ralph Szygenda - Vice President and Chief Information Officer, General Motors. General Motors 세계 최대 자동차 제조 회사 Policy Director 를 이용하여 GM/ 협력사 적용업무에 대한 안전한 웹 포탈 서비스를 제공 일만개의 직접 공급사를 지원하는 확장 가능성을 제공 공급사들이 GM 의 웹서버 자원을 직접 관리함으로써 사업의 활성화를 유도 Component : Policy Director - GM

Sway5-16 NabiTel T.RowePrice 뮤추얼 펀드, 자산 관리 서비스 제공 회사 Policy Director 를 이용하여 자사의 고객을 대상으로 하는 e-commerce 시스템의 보안 솔루션 구축 Legacy 시스템과 웹 기반의 시스템의 원활한 연동 Scalability 와 extensibility 가 가장 큰 장점 Component : Policy Director - RowePrice

Sway5-17 NabiTel "Using Tivoli's Policy Director solution for our new Cockpit and Cabin Crew System had a very positive effect on the business case. It's central management allows for reduced TCO while the need of not writing 'permissions' -identification and access control - into each application but using a central policy scheme improved the ROI.” Bert van Wijk, Head of KLM Cabin Crew Projects KLM Major 국제 항공사 Policy Director 를 이용하여 “Crew WorkStation” mission-critical 어플리케이션을 위한 웹 포탈 사이트 구축 중앙집중식 접근 통제 시스템 / 중앙 접근 통제 관리 시스템 구축 Component : Policy Director - KLM

Sway5-18 NabiTel 동아일보사 국내 Major 언론사 Policy Director 를 이용하여 기자들을 위한 Secure-Intranet 웹 사이트 구축 특징 : Tivoli PKI 와의 연동으로 사용자 인증 방식 강화 국세청 국내 주요 관청 Policy Director 를 이용하여 국세청 Secure-Internet 웹 사이트 구축 특징 : 웹 관리자를 위한 인증과 Access Control 기능 제공으로 일반 사용자와 관리자의 접근 분리 Component : Policy Director - 국내

Sway5-19 NabiTel  ABN/Amro  ABP  ADP  Aduanas  Aetna Insurance  Ahold  Air Tran  Alfa Laval  AmeriSource Corp  Anico  APNT  AT&T  Banco Banesco  Banco Itau  Banco Rio  Banco Santander  Banco Weise Sudameris  Banesto  Bangkok Bank  Banrural  Barclays Baxter Health BBV Bell Atlantic Internet Bell Canada BC/BS of IL/TX BC/BS of Kansas BG British Airways Burlington Industries CanTV Capital BC/BS Cari Varona Cargill CGU Insurance Chase Manhattan Bank CP Rail Dascom – J Delta Lloyd Insurance Den Danske Bank Dept. of Justice Deutsche Telecom DTCC Expedium Federal Reserve Bank Fireman’s Fund First USA Freddie Mac Frieghtliner GKM Chep Ltd. GM Group Health (Kaiser) HIT HSBC Hundai I2 ICCREA IKON Independent BC/BS ING Bank Component : Policy Director - Reference

Sway5-20 NabiTel Intessa Investment Banker’s Trust Jaztel John Deere Juske Bank KBC Kemper Insurance KLM Kotak Securities Kreditkassen Leader Systems Maersk Matsushita Met Life Multrix Mutual of Omaha Navistar Navy Credit NCM New York Stock Exchange NTT Panasonic Partima Pershing Ralston Purina Safelite Autoglass SBC SEB Shell Canada St. Paul Insurance State of NJ State of Ohio State of Washington SunTrust  Telcordia/Belcore  Telstra  Texas Farm Bureau  Tokyo Marines  Winn Dixie  WM Data  YKB  United Airlines  Universidad Autonoma de Campo  University of MA  VW Gedas  Washington State University  Westpac Banking Corp.  Westvaco  Whirlpool Component : Policy Director - Reference