Download presentation
Presentation is loading. Please wait.
Published byConstance Noreen Lang Modified over 9 years ago
1
Identity Lifecycle Management Jonny Chambers Senior Technical Specialist Microsoft Ireland jonncha@microsoft.com
2
Agenda The Identity Crisis The Identity Crisis What is Identity Management? What is Identity Management? Identity Lifecycle Management Requirements Identity Lifecycle Management Requirements Microsoft’s Solution Microsoft’s Solution Demo Demo Q&A Q&A
3
Islands Of Applications Has lead to islands of identities Pre 1980’s 1980’s1990’s2000’s # of Digital IDs Time Applications Mainframe Client Server Internet BusinessAutomation Company(B2E) Partners(B2B) Customers(B2C) Mobility
4
What is Identity Management? The process of authenticating credentials and controlling access to networked resources based on trust and identity. Repositories for storing and managing accounts, identity information, and security credentials. The processes used to create and delete accounts, manage account and entitlement changes, and track policy compliance. Directory Services Access Management Identity Lifecycle Management A system of procedures and policies to manage the lifecycle and entitlements of electronic credentials.
5
What is Identity Management? The processes used to create and delete accounts, manage account and entitlement changes, and track policy compliance. Identity Lifecycle Management
6
The Business Challenge Administrator has 34 requests for new user accounts buried in a stack of papers on his desk. Moved to a different building. Employees still calling her old phone number. Helpdesk staff spends 1/3 of the day resetting passwords. Employee terminated 4 months ago. Still has access to the VPN system.
7
On average, users are provisioned in 16 systems and de-provisioned in 10. The Business Cost Enterprises have 68 internal and 12 external account stores. 75% of internal users and 38% of external users are in multiple stores. Password resets cost $57-$147.
8
New User - -User ID Creation - -Credential Issuance - -Entitlements Change User - -Promotions - -Transfers - -Entitlement Changes Help Desk - -“Lost” Credentials - -Password Reset - -New Entitlements Retire User - -Delete Accounts - -Remove Entitlements Identity Lifecycle Management Reporting - -Compliance - -Audit - -Security Integration Workflow Self-Serve - -Password Kiosk - -Identity - -New Entitlements
9
Exchange 5.5 MIIS Synchronizes multiple repositories Synchronizes multiple repositories “Agentless” connection to other systems “Agentless” connection to other systems Provides attribute-level control Provides attribute-level control Manage global address lists (GAL) Manage global address lists (GAL) Automate group and DL management Automate group and DL management Active Directory Notes iPlanet SQL Oracle Supported repositories: Active Directory & Active Directory Application Mode Active Directory & Active Directory Application Mode Computer Associates ACF2 Computer Associates ACF2 IBM DB2, Lotus Domino 5.x/6.x, Tivoli Directory Server, RACF IBM DB2, Lotus Domino 5.x/6.x, Tivoli Directory Server, RACF Microsoft SQL 2000, SQL 7 Microsoft SQL 2000, SQL 7 Novell eDirectory Novell eDirectory Oracle 8i/9i Oracle 8i/9i Microsoft Exchange 5.5, 2000, 2003 Microsoft Exchange 5.5, 2000, 2003 Microsoft NT 4.x Microsoft NT 4.x Sun/iPlanet/Netscape Directory Sun/iPlanet/Netscape Directory Various flat-file formats: DSML, LDIF, CSV, fixed width Various flat-file formats: DSML, LDIF, CSV, fixed width
10
Case Study 25000 students, 2500 staff – 6000 user annual churn 25000 students, 2500 staff – 6000 user annual churn MIIS links in-house Ingres SIS MIIS links in-house Ingres SIS One password for core systems One password for core systems Helps in BS7799 accreditation Helps in BS7799 accreditation Annual savings of £25,000 Annual savings of £25,000 http://www.microsoft.com/windowsserversystem/miis2003/evaluation/casestudies/CaseStudy.aspx?CaseStudyID=16022
11
Summary Reduce administration cost Reduce administration cost GAL management DL/group management Helpdesk password reset Improved productivity Improved productivity User self-service Faster access to systems Identity data fidelity Increased security Increased security Fast de-provisioning iPlanet SQL Oracle Active Directory Exchange 5.5 Notes
12
Additional Information MIIS web site http://www.microsoft.com/MIIS MIIS web site http://www.microsoft.com/MIIS http://www.microsoft.com/MIIS Identity Management web site http://www.microsoft.com/IdM Identity Management web site http://www.microsoft.com/IdM http://www.microsoft.com/IdM Solution Accelerator for IdM http://www.microsoft.com/IdM Solution Accelerator for IdM http://www.microsoft.com/IdM http://www.microsoft.com/IdM Contact me jonncha@microsoft.com Contact me jonncha@microsoft.com jonncha@microsoft.com
13
© 2004 Microsoft Corporation. All rights reserved. This presentation is for informational purposes only. MICROSOFT MAKES NO WARRANTIES, EXPRESS OR IMPLIED, IN THIS SUMMARY.
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.