Presentation is loading. Please wait.

Presentation is loading. Please wait.

MetaFrame Secure Access Manager Overview Presented by Douglas A. Brown.

Similar presentations


Presentation on theme: "MetaFrame Secure Access Manager Overview Presented by Douglas A. Brown."— Presentation transcript:

1 MetaFrame Secure Access Manager Overview Presented by Douglas A. Brown

2 MetaFrame Secure Access Manager MetaFrame Secure Access Manager is the most cost-effective way to get secure, personalized access over the Web to applications and information Secure access to any application or information over the Internet Single-point access to enterprise resources Personalized, role-based user experience Easy deployment and management

3 Secure access to any application or information over the Internet Access application & information from anywhere Without the cost or complexity of a traditional VPN How does it work? –Standards-based encryption over the Internet –Minimal client configuration –Support for 2-factor authentication –Firewall traversal –Support for fault tolerance

4 Single-point access to enterprise resources All the information you need aggregated in one convenient location Easy to find any information resource - within the enterprise or across the web How does it work? –All information and applications delivered to a single point –Familiar browser interface –Search and index functionality

5 Personalized, role-based user experience Organize your access environment for optimal productivity and efficiency Ensure the right people can easily access the right information and applications How does it work? –Role definition –Role-based access –Personal user interface –Persistent user configurations –International content support

6 How does this compare to Web Interface? MetaFrame Presentation Server web interface delivers a list of applications based on the user’s identity MetaFrame Secure Access Manager delivers applications and information tailored to each user’s role

7 Easy deployment and management Integrates seamlessly into existing MetaFrame Presentation Server environments Centralizes administration to make management simple Wizard-driven configuration means little to no programming to implement Offers flexible environment for customization

8 User Perspective Access Center Favorites List: List of external and/or internal Web sites Program Neighborhood: Published applications available to the individual user from MetaFrame XP Presentation Server farm Web Site Viewer: Securely view and browse internal or external web content Content Delivery Agents (CDAs)

9 User Perspective Search CDA: Allows users to search Web sites and file shares, returns only content and files accessible by individual user, and provides search results by relevancy Content Delivery Agents (CDAs) secure access manager

10 User Perspective Search CDA: Allows users to search Web sites and file shares, returns only content and files accessible by individual user, and provides search results by relevancy Content Delivery Agents (CDAs)

11 User Perspective ICA Applications: View and operate ICA published applications

12 Content Delivery Agents CDAs deliver data, applications, documents, and services to the an access center, including –MetaFrame XP published resources –Internal or external Web sites and applications –Documents and network resources User access to different CDAs is administrator controlled. Custom agents can be created using SDK’s in the form of scripts, or can incorporate Microsoft Web Part (.dwp) files.

13 Access Server Farm Authentication Service / STA Agent Servers (load balanced) Database Server Index Server MetaFrame XP farm Access Management Console Secure Gateway Web Servers Enterprise Resources State Server Remote Users Internal Users

14 State Server Authentication Service / STA Agent Servers (load balanced) Database Server Index Server MetaFrame XP farm Access Management Console Secure Gateway Web Servers Enterprise Resources Remote Users Internal Users State Server The State Server is the primary server in the farm, and maintains: –Session information –Server farm configuration data –Critical access center data and user configurations Permanent member of the farm and cannot be changed or removed.

15 Agent Server Authentication Service / STA Database Server Index Server MetaFrame XP farm Access Management Console Secure Gateway Web Servers Enterprise Resources State Server Remote Users Internal Users Agent Servers (load balanced) Agent Servers handle CDA execution and generation of Access Center pages. –can be installed on web servers or stand alone –requests are load balanced by MSAM based on CPU utilization.

16 SQL Database Server Authentication Service / STA Agent Servers (load balanced) Index Server MetaFrame XP farm Access Management Console Secure Gateway Web Servers Enterprise Resources State Server Remote Users Internal Users Database Server SQL database required to store configuration information (existing SQL server can be used): –Microsoft SQL Server 7.0 or 2000 –Microsoft Data Engine (MSDE) MSAM creates all accounts and tables at install, and installs MSDE if required. CDAs can also use MSAM database for storage

17 Web Server Authentication Service / STA Agent Servers (load balanced) Database Server Index Server MetaFrame XP farm Access Management Console Secure Gateway Enterprise Resources State Server Remote Users Internal Users Web Servers Web Servers are used to format and serve Access Center content to users. –requires Microsoft IIS 5.0 or higher –installs Web server extensions and Access Center configurations on all Web servers

18 Index Server Authentication Service / STA Agent Servers (load balanced) Database Server MetaFrame XP farm Access Management Console Secure Gateway Web Servers Enterprise Resources State Server Remote Users Internal Users Index Server The Index Server indexes and allows searching of: –Web content (Internet or intranet) –Intranet documents

19 Secure Gateway Secures access to –MetaFrame XP published resources –Web servers in the access server farm –Web and application servers in your network Agent Servers (load balanced) Database Server Index Server MetaFrame XP farm Access Management Console Web Servers Enterprise Resources State Server Remote Users Internal Users Authentication Service / STA Secure Gateway

20 User/Web Client Browser Authenticati on Service / STA Agent Servers (load balanced) Database Server MetaFrame XP farm Access Management Console Secure Gateway Web Servers Enterprise Resources State Server Index Server Remote Users Internal Users Allows users to see the Access Interface. Requires: –Internet Explorer 5.0 SP2 and above, or –Internet Explorer 6.0 SP1 and above, with –JavaScript execution permission on client-side, and –Active-X permissions for Gateway Client

21 Simplified Access Center Communication Authenticati on Service / STA Agent Servers (load balanced) Database Server Index Server MetaFrame XP farm Access Management Console Secure Gateway Enterprise Resources State Server Remote Users Internal Users 1.The client’s Web browser requests the page from the Web server.2.The Web server contacts an agent server (based on an internal load-balancing algorithm) for the page content. 3.The agent server contacts the state server for configuration information. 4.The agent server builds the page from the required CDAs (based on the request and the users access privileges) and sends the built page in XML format to the Web server. 5.The Web server converts the XML to HTML and sends it to the client’s Web browser. The client’s Web browser processes and renders the page. Web Servers

22 Providing Access to Traditional Applications MetaFrame-enabled applications –MetaFrame XP for Windows –MetaFrame for UNIX Access Options: –Program Neighborhood CDA - Multi-Farm support –Embedded Applications – Run in a web page –Access Center menu – Application list by login –File-Type Association – Click and run application access

23 Providing Access to Web Applications and Resources To provide unified access to: –Web-based applications –ASP applications –Intranet, Extranet and Internet Resources –Web-based reporting tools Access Options: –Web Site Viewer – embed Web pages –Web Favorites – list of Web-based content

24 Providing Access to Documents and Information To provide simplified access to: –Network file shares –Document Management –Indexed information and knowledge Access Options: –Shared Documents – point to any UNC path –Wed Site Viewer – integrate web-based reports/docs –Internet Search – search the internet –Microsoft Sharepoint Portal Server integration –Other document management applications

25 Providing Access to Database Information To provide access to: –Custom/queried views –Web-based reports Access Options: –Database Viewer – custom SQL views/dynasets –Web Site Viewer – HTML reports –Microsoft Spreadsheet Web Part – Spreadsheet views –File-type association – Proprietary formatted reports

26 Hardware Requirements Single-server installation –Server: 700 Mhz, 2Gb Ram –Components: Web, Agent, State, DB Server –Advantage: quick deployment, minimal hardware requirements, suitable also for development environment Multi-server installation –Server standard: 700 Mhz, 1Gb Ram –Servers: Web/State(1), Agent(2), SQL (1) –Advantage: built in redundancy, increased user loads

27 New Features in Version 2.2

28 Customer Challenges Remote employees need offline access to email. Need to support additional browser beyond Microsoft’s Internet Explorer. Securing existing Enterprise Information Portal (EIP) or other existing Web based infrastructure. Displaying Java based internal Web sites and applications. Accessing internal Web sites with unique verb sets, WebDAV enabled sites, etc…

29 MetaFrame Secure Access Manager 2.2 delivers… New Advanced Gateway Client, providing support for: –Most common PC browsers (IE, Netscape, etc…) –Synchronization of Outlook 2000+ clients –Access to java based Web sites and applications –Access to sites incorporating unique verb sets such as WebDAV enabled sites, Outlook Web Access, etc… –All the capability of existing client

30 MetaFrame Secure Access Manager 2.2 delivers… Alternative User Interface: –Allows MetaFrame Secure Access Manager to direct users to different EIPs or Web based infrastructures (other than the Access Center) immediately after authentication. –Allows customers to leverage existing infrastructure –Secures Enterprise Information Portals (EIPs) –Enables greater flexibility in customized MetaFrame Secure Access Manager deployments

31 Advanced Gateway Client Intercepts traffic at the IP level Uses the standard Windows Service Provider Interface Restricts request interception to a known list of applications and servers Simple to configure Stand alone install Application Presentation Session Transport Network Data Link Physical Advanced Gateway Client Gateway Client

32 Advanced Gateway Client Permissions Click Modify to grant user rights to the Advanced Gateway Client (requires access to the Citrix XML Service) click here to return to presentatio n

33 Advanced Gateway Client Server Configuration Click add to enter server details click here to return to presentatio n

34 Alternative UI Server Configuration Click add to enter Alt UI server details click here to return to presentatio n

35 Alternative UI Configuration Uncheck this box Enter Alt UI URL here click here to return to presentatio n

36 Thank You!


Download ppt "MetaFrame Secure Access Manager Overview Presented by Douglas A. Brown."

Similar presentations


Ads by Google