Download presentation
Presentation is loading. Please wait.
Published byAudrey Merrill Modified over 10 years ago
1
Sun Identity Manager Evaluation An exploration by the Advanced Systems Team, ICSD, Academic Services
2
IDM Demo Agenda Sun IDM architecture Sun IDM integration and administration Sun IDM deployment Sun IDM data flows Adding a Policy Agent Demonstration server network SSO Demonstration Policy Demonstration Q&A
3
Authentication Service Session Service Naming Service Policy Service Logging Service Users LDAP Access Manager Configuration LDAP Identity Server Index Data Authentication User Interface Server Protected web resource Web Policy Agent Staff and students Basic systems for the Exeter Identity Management Service Access Manager Directory Server Identity Manager DMZ Trent HR SITS Laminex PSMD
4
Access Manager Authentication User Interface Server Exeter My.Portal Web Policy Agent Identity Management Service Integration Directory Server Identity Manager Library Web Policy Agent WebCT Web Policy Agent Midland Trent HR Web Policy Agent Web service Admins Role Admins Identity Admins Trent HR, SITS, Laminex, PCMD
5
Protected Resource 3 Web Policy Agent Access Manager 1 AuthN UI Server 1 Directory Server 2Identity Manager 1Identity Manager 2 Directory Server 1 Access Manager 2 AuthN UI Server 2 Protected Resource LBAuthN UI LB Access Manager LB Directory Server LB 1 Protected Resource 2 Web Policy Agent Directory Server LB 2 Protected Resource 1 Web Policy Agent Load balancing, security and failover provision Message Queue Broker Message Queue Broker
6
A sequential illustration of data flow for a login sequence Access Manager 1 AuthN UI Server 1 Directory Server 2Identity Manager 1Identity Manager 2 Directory Server 1 Access Manager 2 AuthN UI Server 2 Protected Resource LBAuthN UI LB Access Manager LB Directory Server LB 1 Protected Resource 2 Web Policy Agent Directory Server LB 2 Protected Resource 1 Web Policy Agent Message Queue Broker Message Queue Broker
7
Adding a Policy Agent Apache: load a new module and specify a configuration file Example: Add file to /etc/httpd/conf.d: –LoadModule dsame_module /usr/local/linux_agent_apache/agents/apache/lib/libamapc2.so –Agent_Config_File /etc/opt/agents/apache/config/_etc_httpd_conf/AMAgent.properties Configure the AMAgent.properties file answering ten questions in a setup script. Restart web server
8
Advanced Systems Demonstration system Access Manager zaccess zauthn Identity Manager zident Directory Server zdir gilead Web Policy Agent zresource Web Policy Agent Role Admin Five Solaris zones on mcrmonitor02
9
IDM Demonstration SSO –Log into protected resource on zresource. Logout. –Log into protected resource on gilead. Logout. –Log into zresource and then gilead using SSO. Policy Management –Disable testuser2 access to gilead –Attempt to log into gilead
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.