Presentation is loading. Please wait.

Presentation is loading. Please wait.

© 2008 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. HP Automates Infrastructure Outsourcing.

Similar presentations


Presentation on theme: "© 2008 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. HP Automates Infrastructure Outsourcing."— Presentation transcript:

1 © 2008 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. HP Automates Infrastructure Outsourcing Provisioning Processes with Oracle Identity Manager Doug Young - CISSP Lead Architect, HP October 14, 2009

2 Unleash your full potential with HP and Oracle Converge your infrastructure Modernize your environment Increase efficiency

3 Agenda: Overview HP view of security and its role in the business The challenge of Identity Management Oracle Identity Manager delivers process automation The challenges of scale in an outsourced environment Business drivers Approach to solve issues of scale Technical Solution Overview PLACEHOLDER – Future Phases Q & A and wrap-up

4 The Identity Challenge User productivity IT constraining business Runaway administrative and help desk costs Vulnerability of assets Slow response to change and growth Regulatory exposure Islands of security and management User productivity IT constraining business Runaway administrative and help desk costs Vulnerability of assets Slow response to change and growth Regulatory exposure Islands of security and management Directories Meta-Directories Virtual Directories Applications Messaging Databases Non Digital Facilities Equipment Entry Control Web Web Servers Portal Java App Custom Business Services IT AdminsEmployees Remote Employees PartnersSuppliersCustomers

5 Access Management Authentication Authorization Federation Single Sign- On Credential Management Identity Management & Compliance Support Identity and Access Management Components IT Admins Employees Directories Meta-Directories Virtual Directories Applications, Messaging Databases Non Digital Facilities Equipment Entry Control Web Web Servers Portal Java App Custom Services Business Services Remote Employees PartnersSuppliersCustomers Registration Creation Provisioning Synchronization Termination Privilege & Maintenance Management Audit and Reporting Policy Roles Entitlement Process PKI & EKM Tokens Biometrics An organization’s strategy for governing who authorized users are and management of their entitlements, privileges and access rights A process, not a product A mission challenge, not just an IT issue

6 IAM Environments & Solutions 615 August 2015 FROM THE CLOUD TO THE CLOUD IN THE CLOUD Customer Dedicated Solutions: Consulting Turnkey Managed Hosted Leveraged Solutions: Managed Hosted Multi- instance / tenant Managed Services Subscription Models As-a-Service models

7 Provisioning in a globally shared environment 715 August 2015 54 Million unique identity credentials 1000 + distinct customers Multiple global delivery hubs with mix of custom and standardized delivery tools and models Disparate policies and process flows User Administration processes often shared with 3 rd party ITO providers 54 Million unique identity credentials 1000 + distinct customers Multiple global delivery hubs with mix of custom and standardized delivery tools and models Disparate policies and process flows User Administration processes often shared with 3 rd party ITO providers CLIENT A CLIENT B CLIENT C CLIENT D CLIENT E ACCOUNT BASED USER ADMIN. PROCESSES USER ADMINISTRATION PROCESSES HP SECURITY ADMINISTRATORS HP MANAGED CLIENT INFRASTRUCTURE HP GLOBAL UNIQUE ID SERVICE

8 Business Drivers & Benefits Productivity Improvements SLA Improvement Process Efficiencies & Uniformity Compliance Management & Reporting Complex workflow integration & automation Investment Benefits Lower TCO Productivity gains Process efficiencies & improvements Improved time-to- provision Ability to handle complex workflows Significantly improved audit response times Increased accountability for privileged users Foundational platform for Identity-as-a-Service Investment Benefits Lower TCO Productivity gains Process efficiencies & improvements Improved time-to- provision Ability to handle complex workflows Significantly improved audit response times Increased accountability for privileged users Foundational platform for Identity-as-a-Service

9 Identity provisioning - Automation Challenges

10 Delivery Model Challenges Clien t 1 Clien t 2 Clien t 3 Multi- Instance Service Duplicate User Names Schema Extensions Support & Reconciliation Logistics Scalability Multi- Tenant Software versioning Cost System Administration & help desk functionality Cross instance reporting Multi- Instance

11 Technical deployment challenges Client specific approval requirements Manager Resource Owner Group based Multi-level Physical Scale Standardization & Repeatability Infrastructure Globalization Connectivity Change Management Protection of Data-in- transit Mapping multiple target accounts to one OIM account Initial load of customers- connecting existing accounts to new OIM profiles Provisioning one HP employee to multiple accounts Mixed Mode Authentication: Two-factor based authentication for administrative access, standard authentication for end users Mapping multiple target accounts to one OIM account Initial load of customers- connecting existing accounts to new OIM profiles Provisioning one HP employee to multiple accounts Mixed Mode Authentication: Two-factor based authentication for administrative access, standard authentication for end users

12 © 2008 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. Oracle Identity Manager Technical Solution Overview

13 Solution Scope Project Foundation User Self-Service Manager Initiated File Feed Oracle Identity Manager Global Identifier Service Request Portal Workflow System Integration Add-on Options Advanced User Management: Employee External Customer Role Management Compliance Support & Enterprise SOD Strong Authentication Access Management: SSO Federation Denied Windows AD Exchange Local Windows Group Provisioning Windows AD Exchange Local Windows Group Provisioning

14 Architectural View DB Tier Customer 1 Customer 2 Web Server Tier Application Server Tier Customer 1 Customer 2 Customer 1

15 Managing Security & Privacy Concerns Shared Web Server Load Balancer Database Server All Server Hardware VM Ware Host (ESX) Networks SAN Web Server Load Balancer Database Server All Server Hardware VM Ware Host (ESX) Networks SAN Dedicated Website OIM Software Instance Database Instance Website OIM Software Instance Database Instance Privacy of system and data Trans-border data flow & servicing requirements Regional and country privacy regulations Legal and privacy reviews for each customer instance Privacy of system and data Trans-border data flow & servicing requirements Regional and country privacy regulations Legal and privacy reviews for each customer instance Privacy Security in a shared environment

16 Future Phases

17 1715 August 2015 While at Oracle OpenWorld…. Visit HP in Moscone South, Booth #1301 Assess your IT environment – for a chance to win an HP Mini Netbook! −Take the TCO Challenge −Applications Modernization Assessment −Storage and Server Assessment −Adaptive Infrastructure Maturity Model −ERP Optimization Assessment

18 Technology for better business outcomes


Download ppt "© 2008 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. HP Automates Infrastructure Outsourcing."

Similar presentations


Ads by Google