First-hand Information about the Enhanced Functionality and Integration Options Within SAP NetWeaver Identity Management 7.2
|
|
|
- Abel Dominic Caldwell
- 10 years ago
- Views:
Transcription
1 First-hand Information about the Enhanced Functionality and Integration Options Within SAP NetWeaver Identity Management 7.2 SAP Product Management, SAP NetWeaver Identity Management & Security Kristian Lehment, May 2011 ASUG-Conference Session ID 0709
2 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 2
3 Identity Management Definition Enables the efficient, secure and compliant execution of business processes By ensuring that the right users have the right access to the right systems at the right time Consistent with their roles across all systems and applications 2011 SAP AG. All rights reserved. 3
4 Challenges of a Typical Employee Lifecycle Long time to become productive Enormous costs and efforts Security leaks if employee leaves 7 Years Later 8 Years Later 10 Years Later 1 Year Later 3 Weeks Later Hire Date Chuck Brown joins company Available: Temporary accounts Chuck Brown is able to work in accounting Available: Portal Internet Accounting Chuck Brown transfers to sales Available: Portal Internet Accounting CRM (west) Marketing data (west) Chuck Brown is promoted: Vice President Sales Available: Portal Internet Accounting CRM (global) Marketing data (global) Chuck Brown resigns All known accounts of Chuck Brown are deactivated Chuck Brown still has access to the system Available: Accounting Marketing data (global) 2011 SAP AG. All rights reserved. 4
5 SAP NetWeaver Identity Management Holistic Approach e.g. on-boarding Compliance checks SAP Business Suite Integration Identity virtualization and identity as service Approval workflows Reporting SAP BusinessObjects Access Control (GRC) Rule-based assignment of business roles SAP NetWeaver Identity Management Password management Web-based Single Sign-On & Identity Federation Central Identity Store Provisioning to SAP and non-sap systems 2011 SAP AG. All rights reserved. 6
6 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 7
7 Role Definition and Provisioning Role Definition (design, one-time task) Read system access information (roles, groups, authorizations, etc.) from target systems Business Roles Define a business role hierarchy Assign technical roles to business roles Manager Develop rules for role assignments Accounting Provisioning (regularly) Assign or remove roles to/from people Employee Through request/approval workflow Manually (administrator) Automatically, e.g. HR-driven Technical Roles Automatic adjustment of master data and assignments of technical authorizations in target systems AD user End user (Portal role) Accounting (ABAP role) HR manager (ABAP role) System Active Directory SAP Portal SAP FI SAP HR 2011 SAP AG. All rights reserved. 8
8 Context-Based Role Assignment Available as of Release 7.2 As of Release 7.2, SAP NetWeaver ID Mgmt allows for the assignment between A person and a role or privilege And an optional context Context types are defined by the customer; examples include factory, store, project, location, etc. Use case: A person has a specific role in a given factory. Using context-based role assignment, there is no need to duplicate these roles for each factory. Example: 20 roles, 1000 factories IDM 7.1: entries (roles) IDM 7.2: entries (roles + contexts) Factory People Roles Benefit: Assigning a context reduces the number of roles (and privileges) SAP AG. All rights reserved. 9
9 Workflows in SAP NetWeaver Identity Management Operates on entries in the identity store Manual interactions through Web interface Start provisioning tasks Approve requests Monitor status Identity Store Rules Roles Provisioning Engine Workflow Engine Workflows can be started from: Web interface Event tasks Change of privilege assignments Meta directory operations Processing logic includes: Sequential operation Parallel operation Conditional operation Approval operation Applications Inform Alert Business Process Owner 5 2 User 3 1 Approve Request Identity Center Applications 4 Provisioning 2011 SAP AG. All rights reserved. 10
10 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 11
11 Assign automatically SAP NetWeaver ID Mgmt and SAP Business Suite: Increasing User Management Efficiency Automated User Account Maintenance for SAP Business Suite Applications Example: SAP CRM Sales representative Tom Peck needs access to SAP CRM. Creating a user account and role for Tom is not sufficient; you also have to create a Business Partner in CRM and assign the user account to this Business Partner. CRM Business Partner Automatic consideration of system- and applicationspecific aspects User Assign Role SAP NetWeaver ID Mgmt automates the Business Partner assignment in SAP CRM, eliminating the need for manual administration steps 2011 SAP AG. All rights reserved. 12
12 SAP Business Suite Integration Business-Driven Identity Management SAP Supplier Relationship Management SAP Human Capital Management Key Benefits Automated creation of Business Partner in SAP CRM, SAP SCM SAP Customer Relationship Management SAP Portfolio and Product Management SAP NetWeaver Identity Management SAP ERP Financials SAP Transportation Management Link from Business Partner to user SAP Product Lifecycle Management SAP Extended Warehouse Management SAP Service Parts Planning SAP Supply Network Collaboration 2011 SAP AG. All rights reserved. 13
13 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 14
14 Reporting Options in SAP NetWeaver Identity Mgmt Basic Reporting, Reporting with Jasper Reports or Crystal Reports Focus: Static, printable reports Report creation on database level Extended Reporting with SAP Business Warehouse (SAP BW)* Focus: Dynamic reports, offering more, highly detailed, and customizable reporting options Report creation on semantic BW InfoProviders Data is extracted from SAP NetWeaver Identity Management on a regular basis (as per defined job) Predefined report templates available Custom reports can be freely defined based on individual customer requirements SAP BW features include filtering, sorting, export to MS Excel, CSV, PDF, send via , publishing in Portal, etc. *SAP BW is not part of the SAP NetWeaver ID Mgmt license 2011 SAP AG. All rights reserved. 15
15 SAP NetWeaver Identity Management Basic Reporting Functionality Application/Privilege-Centric Determination of system access User-Centric Determination of user privileges Entry data Current data, historical data, time stamps, modified by, audit flags Approval data Who approved what when? Who had what privilege at what time? Segregation of duties, Attestation Task audit log Determination of tasks run on user / by user General logs Off-the-shelf reporting tools can be used 2011 SAP AG. All rights reserved. 16
16 SAP NetWeaver ID Mgmt Extended Reporting Capabilities Integration with SAP BW SAP BW report templates delivered with persons, privileges, roles and their assignments over time and for specific dates Person(s) Advanced filtering and sorting options Access control: Roles for Reporting User (Administrator, Manager, Owner) Flexibility (BEX reports are used) Privilege(s) Change history up to the time of last synchronization Assignment Role(s) Implementation Guide: BI Content Documentation: SAP AG. All rights reserved. 17
17 SAP NetWeaver Identity Management Extended Reporting with SAP BW Object types (can be extended) Person, privilege (aggregated by system), role Report types Content-based reporting (person-attributes or role memberships) Time-based reporting (state on given date or changes in period) Aggregations Number of assignments between object types Navigation between reports ("report-report interface") Person to assigned manager, role, etc. Basic auditing data: Who changed what Authorization concept with three roles Administrator, HR Manager, Object Owner Flexibility Use of BEx reports 2011 SAP AG. All rights reserved. 18
18 SAP BusinessObjects Access Control (GRC) and SAP NetWeaver Identity Mgmt: Integration Scenario SAP NetWeaver Identity Management SAP NetWeaver Identity Management Heterogeneous connectivity SAP Business Suite integration Powerful business role mapping Password management SAP BusinessObjects Access Control (GRC) SAP BusinessObjects Access Control (GRC) Compliance checks Business risk controls and mitigation Combined SAP NetWeaver Identity Management SAP BusinessObjects Access Control (GRC) Compliant identity management for the entire system landscape! 2011 SAP AG. All rights reserved. 20
19 Compliant, Business-Driven Identity Management Requirement: Provide automated, position-based role management while ensuring compliance Reduce TCO by simplifying assignment of roles and privileges to users, triggered by HCM events Reduce risk through compliance checks and remediation Automate manual processes through integration with SAP Business Suite New Hire Calculate entitlements based on position Compliance check Remediation Approve assignments Create user Assign roles Yes Create User Assign roles No Create User Assign privileges HCM SAP NetWeaver Identity Management SAP BusinessObjects Access Control Line Manager Landscape 2011 SAP AG. All rights reserved. 21
20 Compliant Identity Management Process Flow 4 Risk analysis SAP BusinessObjects Access Control (GRC) Forward request for risk analysis Request Role Assignment SAP NetWeaver Identity Management 3 1 Manager approval 5 Risk 6 Risk status Notification to mitigation user / manager Provisioning to target systems SAP AG. All rights reserved. 22
21 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 24
22 Password Management Requirement: Centralized password management Reduce calls to help desk for password resets Enable password provisioning across heterogeneous landscape Reset password Recover lost password Set new password User Help Desk SAP NetWeaver Identity Management Landscape 2011 SAP AG. All rights reserved. 25
23 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 26
24 Identity Virtualization Virtual Directory Server (VDS) provides Single consistent view and entry point for multiple distributed identity data sources Identity information as a service for applications through standard protocols (LDAP, SPML) Abstraction layer for underlying data stores Consumer only sees one standard interface Transform incoming LDAP requests, and connect directly to the existing data repositories Data stays within original data source Efficient caching SPML Virtual Directory Server LDAP Properties Real-time access to data SPML LDAP JDBC No need to consolidate data sources No extra data store Quick LDAP deployment Easier and cheaper maintenance Attribute manipulation Name space modifications Directory Server Directory Server Database Application Complex operations on-the-fly 2011 SAP AG. All rights reserved. 27
25 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 28
26 SAP Central User Administration and SAP NetWeaver Identity Management What is the relationship between SAP NetWeaver Identity Management and the Central User Administration (CUA)? SAP NetWeaver Identity Management is the strategic solution for managing identities in SAP and non- SAP environments. SAP recommends replacement of the CUA by SAP NetWeaver ID Mgmt. This is a valuable strategic move, as it yields significant benefits and functional enhancements SAP will continue to support SAP CUA in its current functionality according to SAP maintenance rules; however, the solution will no longer be enhanced with new functionality. Systems connected to CUA can be smoothly migrated to a SAP NetWeaver ID Mgmt solution without loss of functionality. Main benefits of SAP NetWeaver ID Mgmt compared to CUA include: Connectivity for a heterogeneous system landscape Automatic cross-system rule-based access management Workflow support 2011 SAP AG. All rights reserved. 29
27 Comparing SAP CUA and SAP NetWeaver Identity Management Functionality Central User Administration (CUA) SAP NetWeaver Identity Management (ID Mgmt) Target Systems ABAP only SAP and non-sap Workflow Support No Yes Rule based access management almost no (except the rarely used HR Org rule engine) Yes Modeling of role hierarchy No Yes Cross system role assignments Manual Full support LDAP directory integration LDAP synchronization Full support Support of all user attributes Yes Yes Password management Management and distribution of initial passwords Yes; including user interface and workflow support 2011 SAP AG. All rights reserved. 30
28 Central User Administration Gradual Migration to SAP NetWeaver ID Mgmt Requirement: Extend identity management to non-sap environments and increase level of functionality Supports SAP and heterogeneous environments Self-service and delegated administration Workflows and approvals Business role management SAP NetWeaver ID Mgmt SAP NetWeaver ID Mgmt Manage CUA from SAP NetWeaver ID Mgmt Migrate ABAP systems from CUA to ID Mgmt Shut down CUA when all systems are migrated 2011 SAP AG. All rights reserved. 31
29 SAP NetWeaver Identity Management Connectivity Overview Other SAP Application Server Microsoft Windows NT Directory Servers Unix/Linux Shell execute Custom Java connector API Script-based connector API Databases Microsoft SQL Server Microsoft Access Oracle database IBM UDB (DB2) MySQL Sybase Applications SAP Business Suite SAP BusinessObjects Access Control (GRC) Lotus Domino / Notes Microsoft Exchange RSA ClearTrust RSA SecurID Technical SPML LDAP ODBC / JDBC / OLE-DB RFC LDIF files XML files CSV files Directory Servers Microsoft Active Directory IBM Tivoli Directory Novell edirectory SunONE Java Directory Oracle Internet Directory Microsoft Active Directory Application Mode (ADAM) Siemens DirX OpenLDAP eb2bcom View500 Directory Server CA etrust Directory SAP NetWeaver IDM Virtual Directory Server Any LDAP v3 compliant directory srv 2011 SAP AG. All rights reserved. 32
30 Third Party Connector Certification SAP ICC Integration Scenario NW-IDM-CON SAP NetWeaver Identity Management Integration Scenario NW-IDM-CON The SAP Integration and Certification Center (ICC) offers a certification for the integration scenario NW-IDM-CON. SAP partners as well as potential partners and independent software vendors (ISVs) are invited to use the Connector Development Kit (CDK) to create an SAP NetWeaver Identity Management connector for their application, and to integrate the application into the identity management landscape. This connector can then be certified by the SAP ICC. For general information about third party certifications with SAP products, please refer to or contact the SAP Integration and Certification Center (ICC) directly at [email protected] 2011 SAP AG. All rights reserved. 33
31 Identity Services SOA-Based Identity Management Requirements: Create a tight integration with SAP applications Integrate third-party applications Identity services as a standards-based single access point for querying and managing identity information in the complete system landscape Tightly aligned, loosely coupled integration with SAP and heterogeneous applications based on industry standards Business Workflow SAP Business Suite SAP Business Suite Identity Management Other SAP Applications IDM +++ Heterogeneous Environment 2011 SAP AG. All rights reserved. 34
32 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 35
33 What is Identity Federation? Identity Federation Describes the technologies, standards and use-cases which serve to enable the portability of identity information across otherwise autonomous security domains. Enables users of one domain to securely access data or systems of another domain seamlessly, and without the need for completely redundant user administration. Comes in many flavors, including "user-controlled" or "user-centric" scenarios, as well as enterprise controlled or B2B scenarios Could involve user-to-user, user-to-application as well as application-toapplication use-case scenarios at both the browser tier as well as the web services tier SAP AG. All rights reserved. 36
34 Identity Federation in SAP NetWeaver Identity Management 7.2 Home Identity Federation in SAP NetWeaver Identity Management 7.2 Identity federation provides the means to share identity information across company boundaries. User must be unambiguous and clearly identifiable, even though different user identifiers may exist across the landscape. The name identifier (name ID) is the means to establish a common identifier. Once the name ID has been established, the user is said to have a federated identity. Identity federation enables SSO for web browser based access (user-centric) and web services (system centric) across domains. SAP s solution relies on standards for interoperability between SAP and non SAP systems For Web browser-based access, identity federation uses an identity provider that supports SAML 2.0. For Web services, identity federation uses a security token service (STS) that supports WS-Trust 1.3, supporting X.509, SAML 1.1, and SAML 2.0 tokens SAP AG. All rights reserved. 37
35 Home Security Assertion Markup Language (SAML) 2.0 Security Assertion Markup Language (SAML) 2.0 The Security Assertion Markup Language (SAML) version 2.0 is a standard for the communication of assertions about principals, typically users. The assertion can include the means by which a subject was authenticated, attributes associated with the subject, and an authorization decision for a given resource. The main benefits of SAML 2.0 are: SSO with SAML 2.0 SAML provides a standard for cross-domain Single Sign-On (SSO) SAML 2.0 supports identity-provider-initiated SSO as in SAML 1.x SAML 2.0 also supports service-provider-initiated SSO SLO with SAML 2.0 Single Log-Out (SLO) enables users to cleanly close all their sessions in a SAML landscape, even across domains. Identity federation Identity federation provides the means to share identity information between partners SAP AG. All rights reserved. 38
36 Identity Federation Web Browser-Based Access Home For Web browser-based access, identity federation uses an identity provider that supports SAML 2.0. SAML 2.0 also enables Single Log-Out (SLO). Identity federation can also be used to transport profile attributes to create or update temporary or permanent users between systems. Authorization attributes can be transported enabling to change user authorizations in target systems. Web Browser-Based Access 2011 SAP AG. All rights reserved. 39
37 Home Identity Federation Web Services-Based Access For Web services, identity federation uses a security token service (STS) that supports WS-Trust 1.3. STS supports a number of authentication methods from a Web service consumer. It can convert these tokens into a security token that a Web service provider can use. STS supports X.509, SAML 1.1, and SAML 2.0 tokens. Like SAML 2.0 for Web-based access, the SAML 2.0 assertion can transport profile and authorization attributes to the target Web service provider. Web Services-Based Access 2011 SAP AG. All rights reserved. 40
38 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 41
39 SAP NetWeaver Identity Management Architecture Identity Center Database Identity store Configuration Processing logic Workflow User Interface Main interface for users and managers Monitoring User Interface Monitoring and audit interface for administrators Management Console Visual development and configuration UI Runtime Engine and Dispatcher Processing and provisioning logic including connectors Event Agent Monitors connected systems and initiates synchronization Virtual Directory Server Virtualization layer SAP NetWeaver Identity Management Identity Center Workflow and Monitoring UI (AS Java) Dispatcher Runtime Engine System Identity Center Database Read / write Active Directory SAP Portal Management Console Event Agent Service SAP ERP Virtual Directory Server Detect changes others SAP GRC Web services 2011 SAP AG. All rights reserved. 42
40 SAP NetWeaver Identity Management Communication Paths SAP ERP HCM System Transfer employee data to IDM (LDAP) Update employee record with communication details (RFC) SAP NetWeaver Identity Management Virtual Directory Server (VDS) Identity Center (IC) Forward request for risk analysis & poll status (Web Service Call) SAP BusinessObjects Access Control (GRC) Provision identity to target system (Protocol dependant on target system) 2011 SAP AG. All rights reserved. 43
41 Custom User Interfaces for SAP NetWeaver ID Mgmt With Open API (RESTful Web Services) Architecture REST( Representational State Transfer) JSON (Java Script Object Notation) Schema Retrieve schema information Entries Search for entries Retrieve entries and attributes Change attribute values Resetting of passwords Approvals Retrieving open approvals Processing of approvals WEB browser Mobile device RESTful web services AS Java Identity Store 2011 SAP AG. All rights reserved. 44
42 Custom Role Request User Interface Based on REST API 2011 SAP AG. All rights reserved. 45
43 Custom User Display Based on REST API 2011 SAP AG. All rights reserved. 46
44 Agenda Introduction to Identity Management SAP NetWeaver Identity Management Solution in Detail Role Management and Workflows Business-Driven Identity Management Compliance, Reporting, and Auditing Password Management Identity Virtualization Connectivity and Services Identity Federation and Web-Based Single Sign-On SAP NetWeaver Identity Management Architecture Summary and Additional Information Sources 2011 SAP AG. All rights reserved. 47
45 Highlights of SAP NetWeaver Identity Management 7.2 Identity Federation Use of Identity Provider (IdP) and Security Token Service (STS) for Web- and browser-based single sign-on scenarios. Reporting with SAP Business Warehouse Leverage SAP BW for dynamic, flexible reporting. Context-Based Role Assignments Use of context-based assignment to reduce the number of roles and privileges in the enterprise. Custom User Interfaces with Open API Use of a REST-based open API to develop custom user interfaces (for example for mobile devices) and/or extend the existing UIs. Continuous Improvement in Various Areas Examples include: Assignment improvements, context towards back-end systems, accessing assignment information from run time, guided tasks, approvals, configuration transport, request-complete task, dispatcher system tuning, extension framework, provisioning framework, etc SAP AG. All rights reserved. 49
46 Why SAP NetWeaver Identity Management Offers close alignment with business processes Provides best value for business sponsors Re-uses SAP deployment experience and intellectual property Integrates with existing identity management infrastructure Combines tight SAP integration with heterogeneous IT Integrates roadmap and blueprint with SAP BusinessObjects Access Control (GRC) Provides the lowest-risk solution for SAP connectivity 2011 SAP AG. All rights reserved. 50
47 More Information Visit the SAP Developer Network (SDN) for comprehensive information on SAP NetWeaver Identity Management, such as Product information, documentation, training, and support information Articles, blogs, WIKI, FAQs, forum, and newsletters Downloads SAP NetWeaver Product Complementary Offerings SAP NetWeaver Identity Management sdn/nw-identitymanagement 2011 SAP AG. All rights reserved. 51
48 Thank You!
SAP Identity Management Overview
Identity Management Overview October 2014 Public Agenda Introduction to Identity Management Role Management and Workflows Business-Driven Identity Management Compliant Identity Management Reporting Password
SAP Identity Management Overview
Identity Management Overview Public May 2016 Agenda Introduction to Identity Management Role Management and Workflows Business-Driven Identity Management Compliant Identity Management Reporting Password
BUSINESS-DRIVEN, COMPLIANT IDENTITY MANAGEMENT USING SAP NetWeaver IDENTITY MANAGEMENT
Solution in Detail NetWeaver BUSINESS-DRIVEN, COMPLIANT IDENTITY MANAGEMENT USING NetWeaver IDENTITY MANAGEMENT Identity management today presents organizations with a host of challenges. System landscapes
Business-Driven, Compliant Identity Management
Solution in Detail NetWeaver NetWeaver Identity Business-Driven, Compliant Identity Using NetWeaver Identity Managing users in heterogeneous IT landscapes presents many challenges for organizations. System
How to leverage SAP NetWeaver Identity Management and SAP Access Control combined solutions
How to leverage SAP NetWeaver Identity Management and SAP Access Control combined solutions Introduction This paper provides an overview of the integrated solution and a summary of implementation options
SAP NetWeaver Identity
SAP NetWeaver SAP NetWeaver Identity Management: The Time Is Now Replace CUA Set a Strategic Course in User Administration CONTENT 4 Bring New Efficiency to Your User Administration 5 At Home in Every
SAP Solution in Detail SAP NetWeaver SAP NetWeaver Identity Management. Business-Driven, Compliant Identity Management
Solution in Detail NetWeaver Business-Driven, Compliant Identity Table of Contents 3 Quick Facts 4 Business Challenges Identity for the User Lifecycle 5 The Solution Supporting a Heterogeneous IT Landscape
Business-Driven, Compliant Identity Management
SAP Solution in Detail SAP NetWeaver SAP Identity Management Business-Driven, Compliant Identity Management Table of Contents 3 Quick Facts 4 Business Challenges: Managing Costs, Process Change, and Compliance
Enabling Federation and Web-Single Sign-On in Heterogeneous Landscapes with the Identity Provider and Security Token Service Supplied by SAP NetWeaver
Enabling Federation and Web-Single Sign-On in Heterogeneous Landscapes with the Identity Provider and Security Token Service Supplied by SAP NetWeaver SAP Product Management, SAP NetWeaver Identity Management
Compliant, Business-Driven Identity Management using. SAP NetWeaver Identity Management and SBOP Access Control. February 2010
Compliant, Business-Driven Identity Management using SAP NetWeaver Identity Management and SBOP Access Control February 2010 Disclaimer This presentation outlines our general product direction and should
How Accenture is taking SAP NetWeaver Identity Management to the next level. Kristian Lehment, SAP AG Matthew Pecorelli, Accenture
How Accenture is taking SAP NetWeaver Identity Management to the next level Kristian Lehment, SAP AG Matthew Pecorelli, Accenture In This Session You will receive an overview of the functionality that
By Makesh Kannaiyan [email protected] 8/27/2011 1
Integration between SAP BusinessObjects and Netweaver By Makesh Kannaiyan [email protected] 8/27/2011 1 Agenda Evolution of BO Business Intelligence suite Integration Integration after 4.0 release
Extending The Value of SAP with the SAP BusinessObjects Business Intelligence Platform Product Integration Roadmap
Extending The Value of SAP with the SAP BusinessObjects Business Intelligence Platform Product Integration Roadmap Naomi Tomioka Phipps Principal Solution Advisor Business User South East Asia 22 nd April,
SAP NetWeaver Single Sign-On. Product Management SAP NetWeaver Identity Management & Security June 2011
NetWeaver Single Sign-On Product Management NetWeaver Identity Management & Security June 2011 Agenda NetWeaver Single Sign-On: Solution overview Key benefits of single sign-on Solution positioning Identity
SAP Identity Management Connector Overview. SAP SE Walldorf, August 2015
SAP Identity Management Connector Overview SAP SE Walldorf, August 2015 Disclaimer This presentation outlines our general product direction and should not be relied on in making a purchase decision. This
SAP NetWeaver Identity Management Experiences from an Implementation at Colgate-Palmolive Company
[ [ SAP NetWeaver Identity Management Experiences from an Implementation at Colgate-Palmolive Company Sarah Henriquez Senior Manager IT Risk Management, Colgate-Palmolive Kristian Lehment Product Manager
Product overview. CA SiteMinder lets you manage and deploy secure web applications to: Increase new business opportunities
PRODUCT SHEET: CA SiteMinder CA SiteMinder we can CA SiteMinder provides a centralized security management foundation that enables the secure use of the web to deliver applications and cloud services to
IBM Tivoli Directory Integrator
IBM Tivoli Directory Integrator Synchronize data across multiple repositories Highlights Transforms, moves and synchronizes generic as well as identity data residing in heterogeneous directories, databases,
SAP NetWeaver & Enterprise Services Architecture
SAP NetWeaver & Enterprise Services Architecture Market Strategy, Technology Denis Rousseau SAP NetWeaver and... Enterprise Services Architecture! Business Drives Technology! Enterprise Services Architecture!
<Insert Picture Here> Move to Oracle Database with Oracle SQL Developer Migrations
Move to Oracle Database with Oracle SQL Developer Migrations The following is intended to outline our general product direction. It is intended for information purposes only, and
Identity Management with SAP NetWeaver IdM
Identity Management with SAP NetWeaver IdM Andreas Müller, BT Global Services 24.04.2008 Agenda Introduction SAP NetWeaver IdM Project IdM@BT Project ISP Background and Motivation Functionality Lessons
Cloud Single Sign-On and On-Premise Identity Federation with SAP NetWeaver Cloud White Paper
Cloud Single Sign-On and On-Premise Identity Federation with SAP NetWeaver Cloud White Paper TABLE OF CONTENTS INTRODUCTION... 3 Where we came from... 3 The User s Dilemma with the Cloud... 4 The Administrator
WebLearning SAP Best Practice CD-ROM Courseware and e-library Titles. SAP Best Practices for Business Intelligence and Warehouse - BW
WebLearning SAP Best Practice CD-ROM Courseware and e-library Titles SAP Best Practices for Business Intelligence and Warehouse - BW SAP Best Practices for Business Intelligence support the fast and smooth
Role Based Identity and Access Management Basic Infrastructure for New Citizen Services and Lean Internal Administration
Role Based Identity and Access Management Basic Infrastructure for New Citizen Services and Lean Internal Administration Horst Bliedung Director International Sales CEE Siemens IT Solutions and Services
CA SiteMinder. Implementation Guide. r12.0 SP2
CA SiteMinder Implementation Guide r12.0 SP2 This documentation and any related computer software help programs (hereinafter referred to as the "Documentation") are for your informational purposes only
September 9 11, 2013 Anaheim, California 507 Demystifying Authentication and SSO Options in Business Intelligence
September 9 11, 2013 Anaheim, California 507 Demystifying Authentication and SSO Options in Business Intelligence Greg Wcislo Introduction We will not go into detailed how-to, however links to multiple
midpoint Overview Radovan Semančík December 2015
midpoint Overview Radovan Semančík December 2015 Agenda Identity Management Introduction midpoint Introduction midpoint Architecture Conclusion Identity Management Introduction Identity Management System
PingFederate. SSO Integration Overview
PingFederate SSO Integration Overview 2006-2012 Ping Identity Corporation. All rights reserved. PingFederate SSO Integration Overview Version 6.6 January, 2012 Ping Identity Corporation 1001 17th Street,
Minimize Access Risk and Prevent Fraud With SAP Access Control
SAP Solution in Detail SAP Solutions for Governance, Risk, and Compliance SAP Access Control Minimize Access Risk and Prevent Fraud With SAP Access Control Table of Contents 3 Quick Facts 4 The Access
Session Code*: 0310 Demystifying Authentication and SSO Options in Business Intelligence. Greg Wcislo
Session Code*: 0310 Demystifying Authentication and SSO Options in Business Intelligence Greg Wcislo Introduction We will not go into detailed how-to, however links to multiple how-to whitepapers will
Open Source Identity Management
Open Source Management OpenAlt 2015 Radovan Semančík November 2015 Ing. Radovan Semančík, PhD. Software architect Co-owner of Evolveum (open source company) Architect of midpoint project Apache committer
Oracle Identity Analytics Architecture. An Oracle White Paper July 2010
Oracle Identity Analytics Architecture An Oracle White Paper July 2010 Disclaimer The following is intended to outline our general product direction. It is intended for information purposes only, and may
NetWeaver Identity Management
NetWeaver Identity Management Überblick DI Johannes Kuch Consultant NetWeaver SAP Österreich GmbH Agenda 1. Einführung 2. Betrachtung der Funktionen im Detail Rollenverwaltung Workflows BusinessSuite Integration
Oracle Access Manager. An Oracle White Paper
Oracle Access Manager An Oracle White Paper NOTE: The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into any
Web Applications Access Control Single Sign On
Web Applications Access Control Single Sign On Anitha Chepuru, Assocaite Professor IT Dept, G.Narayanamma Institute of Technology and Science (for women), Shaikpet, Hyderabad - 500008, Andhra Pradesh,
Identity and Access Management
Cut costs. Increase security. Support compliance. www.siemens.com/iam Scenarios for greater efficiency and enhanced security Cost pressure is combining with increased security needs compliance requirements
Exploring the Synergistic Relationships Between BPC, BW and HANA
September 9 11, 2013 Anaheim, California Exploring the Synergistic Relationships Between, BW and HANA Sheldon Edelstein SAP Database and Solution Management Learning Points SAP Business Planning and Consolidation
An Oracle White Paper Dec 2013. Oracle Access Management Security Token Service
An Oracle White Paper Dec 2013 Oracle Access Management Security Token Service Disclaimer The following is intended to outline our general product direction. It is intended for information purposes only,
Identity. Provide. ...to Office 365 & Beyond
Provide Identity...to Office 365 & Beyond Sponsored by shops around the world are increasingly turning to Office 365 Microsoft s cloud-based offering for email, instant messaging, and collaboration. A
Frequently Asked Questions
Table of contents 1. Agent Technology...3 1.1. Has the Knoa agent been tested with standard set of services on the PC?... 3 1.2. Do users need to do anything to activate the Agent?...3 1.3. Does the Knoa
Oracle Identity Management for SAP in Heterogeneous IT Environments. An Oracle White Paper January 2007
Oracle Identity Management for SAP in Heterogeneous IT Environments An Oracle White Paper January 2007 Oracle Identity Management for SAP in Heterogeneous IT Environments Executive Overview... 3 Introduction...
SOA REFERENCE ARCHITECTURE: WEB TIER
SOA REFERENCE ARCHITECTURE: WEB TIER SOA Blueprint A structured blog by Yogish Pai Web Application Tier The primary requirement for this tier is that all the business systems and solutions be accessible
Business Intelligence In SAP Environments
Business Intelligence In SAP Environments BARC Business Application Research Center 1 OUTLINE 1 Executive Summary... 3 2 Current developments with SAP customers... 3 2.1 SAP BI program evolution... 3 2.2
Category: Business Process and Integration Solution for Small Business and the Enterprise
Home About us Contact us Careers Online Resources Site Map Products Demo Center Support Customers Resources News Download Article in PDF Version Download Diagrams in PDF Version Microsoft Partner Conference
IBM Tivoli Identity Manager
Automated, role-based user management and provisioning of user services IBM Tivoli Identity Manager Reduce help-desk costs and IT staff workload with Web self-service and password reset/synch interfaces
Securing your business
Securing your business Anders Askåsen Product Manager for OpenIDM * World Wide Coverage ForgeRock.com Enterprise Open Source Software ForgeRock Norway ForgeRock USA ForgeRock UK ForgeRock France Consulting
Ameritas Single Sign-On (SSO) and Enterprise SAML Standard. Architectural Implementation, Patterns and Usage Guidelines
Ameritas Single Sign-On (SSO) and Enterprise SAML Standard Architectural Implementation, Patterns and Usage Guidelines 1 Background and Overview... 3 Scope... 3 Glossary of Terms... 4 Architecture Components...
Oracle Identity Management Concepts and Architecture. An Oracle White Paper December 2003
Oracle Identity Management Concepts and Architecture An Oracle White Paper December 2003 Oracle Identity Management Concepts and Architecture Introduction... 3 Identity management... 3 What is Identity
Documentation. CloudAnywhere. http://www.cloudiway.com. Page 1
Documentation CloudAnywhere http://www.cloudiway.com Page 1 Table of Contents 1 INTRODUCTION 3 2 OVERVIEW 4 2.1 KEY FUNCTIONALITY 4 2.2 PREREQUISITES 5 3 FEATURES 6 3.1 A UNIVERSAL PROVISIONING SOLUTION.
Federated single sign-on (SSO) and identity management. Secure mobile access. Social identity integration. Automated user provisioning.
PingFederate We went with PingFederate because it s based on standards like SAML, which are important for a secure implementation. John Davidson Senior Product Manager, Opower PingFederate is the leading
ALM 271 From End-User Experience Monitoring to Management Dashboards and Reporting Stefan Lahr, SAP Active Global Support September, 2011
ALM 271 From End-User Experience Monitoring to Management Dashboards and Reporting Stefan Lahr, SAP Active Global Support September, 2011 Disclaimer This presentation outlines our general product direction
<Insert Picture Here> Oracle Identity And Access Management
Oracle Identity And Access Management Gautam Gopal, MSIST, CISSP Senior Security Sales Consultant Oracle Public Sector The following is intended to outline our general product direction.
CA Single Sign-On r12.x (CA SiteMinder) Implementation Proven Professional Exam
CA Single Sign-On r12.x (CA SiteMinder) Implementation Proven Professional Exam (CAT-140) Version 1.4 - PROPRIETARY AND CONFIDENTIAL INFORMATION - These educational materials (hereinafter referred to as
Jitterbit Technical Overview : Microsoft Dynamics CRM
Jitterbit allows you to easily integrate Microsoft Dynamics CRM with any cloud, mobile or on premise application. Jitterbit s intuitive Studio delivers the easiest way of designing and running modern integrations
Tips and tricks for using SAP BusinessObjects Web Intelligence with SAP BW
Orange County Convention Center Orlando, Florida May 15-18, 2011 Tips and tricks for using SAP BusinessObjects Web Intelligence with SAP BW Deepu Sasidharan ] [ Agenda Introduction System Landscape Advanced
SAP User and Access Management with Microsoft Identity Integration Server
Collaboration Technology Support Center Microsoft Collaboration Brief August 2005 SAP User and Access Management with Microsoft Identity Integration Server Authors Rüdiger Berndt, IdM Lead Architect, Oxford
ITM204 Post-Copy Automation for SAP NetWeaver Business Warehouse System Landscapes. October 2013
ITM204 Post-Copy Automation for SAP NetWeaver Business Warehouse System Landscapes October 2013 Disclaimer This presentation outlines our general product direction and should not be relied on in making
SAP HANA Cloud Platform
SAP HANA Cloud Platform SAP Forum 2015 César Martín 12 de marzo de 2015 SAP HANA Cloud Platform Build, extend, and run next-generation applications on SAP HANA in the cloud The in-memory cloud platform-as-a-service
SAP NetWeaver. The integration and application platform for lower TCO
SAP NetWeaver The integration and application platform for lower TCO SAP is Ready for the Next Bold Move Business Requirements Int. business processes Adaptable business 3-Tier Client/Server R/3 Basis
Enterprise Identity Management Reference Architecture
Enterprise Identity Management Reference Architecture Umut Ceyhan Principal Sales Consultant, IDM SEE Agenda Introduction Virtualization Access Management Provisioning Demo Architecture
SAP Single Sign-On 2.0 Overview Presentation
SAP Single Sign-On 2.0 Overview Presentation March 2016 Public Agenda SAP security portfolio Overview SAP Single Sign-On Single sign-on main scenarios Capabilities Summary 2016 SAP SE or an SAP affiliate
Oracle Platform Security Services & Authorization Policy Manager. Vinay Shukla July 2010
Oracle Platform Security Services & Authorization Policy Manager Vinay Shukla July 2010 The following is intended to outline our general product direction. It is intended for information purposes only,
Sisense. Product Highlights. www.sisense.com
Sisense Product Highlights Introduction Sisense is a business intelligence solution that simplifies analytics for complex data by offering an end-to-end platform that lets users easily prepare and analyze
Business Objects BI Platform 4.x with SAP NetWeaver
Ingo Hilgefort Integrating SAP Business Objects BI Platform 4.x with SAP NetWeaver Bonn Boston Contents at a Glance 1 SAP Business Objects 4.x and SAP NetWeaver... 21 2 Installation and Configuration...
Can I customize my identity management deployment without extensive coding and services?
SOLUTION BRIEF CONNECTOR XPRESS AND POLICY XPRESS UTILITIES IN CA IDENTITY MANAGER Can I customize my identity management deployment without extensive coding and services? SOLUTION BRIEF CA DATABASE MANAGEMENT
CRYSTAL REPORTS SERVER A FUNCTIONAL OVERVIEW
SAP Functions in Detail Crystal Reports Server CRYSTAL REPORTS SERVER A FUNCTIONAL OVERVIEW Crystal Reports Server software offers user-friendly features and tools to simplify your work when you manage
B2C, B2B and B2E:! Leveraging IAM to Achieve Real Business Value
B2C, B2B and B2E:! Leveraging IAM to Achieve Real Business Value IDM, 12 th November 2014 Colin Miles Chief Technology Officer, Pirean Copyright 2014 Pirean Limited. All rights reserved. Safe Harbor All
Integration of SAP central user administration with Microsoft Active Directory
Collaboration Technology Support Center Microsoft - Collaboration Brief June 2005 Integration of SAP central user administration with Microsoft Active Directory Chris Kohlsdorf, Senior System Architect
August 2014 San Antonio Texas The Power of Embedded Analytics with SAP BusinessObjects
August 2014 San Antonio Texas The Power of Embedded Analytics with SAP BusinessObjects Speaker: Kevin McManus Founder, LaunchWorks Learning Points Eliminate effort and delay of moving data to the cloud
DirX Identity V8.5. Secure and flexible Password Management. Technical Data Sheet
Technical Data Sheet DirX Identity V8.5 Secure and flexible Password Management DirX Identity provides a comprehensive password management solution for enterprises and organizations. It delivers self-service
Business Intelligence mit SAP: Strategie, Neuerungen, Nutzen. Andreas Forster / Solution Advisor June 2013
Business Intelligence mit SAP: Strategie, Neuerungen, Nutzen Andreas Forster / Solution Advisor June 2013 Agenda SAP Business Intelligence Vision SAP BusinessObjects Suite SAP BusinessObjects BI and SAP
etoken TMS (Token Management System) Frequently Asked Questions
etoken TMS (Token Management System) Frequently Asked Questions Make your strong authentication solution a reality with etoken TMS (Token Management System). etoken TMS provides you with full solution
Approaches to Enterprise Identity Management: Best of Breed vs. Suites
Approaches to Enterprise Identity Management: Best of Breed vs. Suites 2015 Hitachi ID Systems, Inc. All rights reserved. Contents 1 Introduction 1 2 Executive Summary 1 3 Background 2 3.1 Enterprise Identity
Ingo Hilgefort. Integrating SAP. Business Objects BI with SAP NetWeaver. Bonn Boston
Ingo Hilget Integrating SAP Business Objects BI with SAP NetWeaver Bonn Boston Contents at a Glance 1 SAP Business Objects BI and SAP NetWeaver Overview... 21 2 Installation and Configuration... 39 3 Semantic
Sun and Oracle: Joining Forces in Identity Management
Sun and Oracle: Joining Forces in Identity Management The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into
SAP BusinessObjects Business Intelligence 4.1 One Strategy for Enterprise BI. May 2013
SAP BusinessObjects Business Intelligence 4.1 One Strategy for Enterprise BI May 2013 SAP s Strategic Focus on Business Intelligence Core Self-service Mobile Extreme Social Core for innovation Complete
Identity Management Basics. OWASP May 9, 2007. The OWASP Foundation. Derek Browne, CISSP, ISSAP [email protected]. http://www.owasp.
Identity Management Basics Derek Browne, CISSP, ISSAP [email protected] May 9, 2007 Copyright The Foundation Permission is granted to copy, distribute and/or modify this document under the terms
IDENTITY MANAGEMENT AND WEB SECURITY. A Customer s Pragmatic Approach
IDENTITY MANAGEMENT AND WEB SECURITY A Customer s Pragmatic Approach AGENDA What is Identity Management (IDM) or Identity and Access Management (IAM)? Benefits of IDM IDM Best Practices Challenges to Implement
Single Sign On. SSO & ID Management for Web and Mobile Applications
Single Sign On and ID Management Single Sign On SSO & ID Management for Web and Mobile Applications Presenter: Manish Harsh Program Manager for Developer Marketing Platforms of NVIDIA (Visual Computing
The Primer: Nuts and Bolts of Federated Identity Management
The Primer: Nuts and Bolts of Federated Identity Management Executive Overview For any IT department, it is imperative to understand how your organization can securely manage and control users identities.
Security and Your SAP System When Working with Winshuttle Products
Security and Your SAP System When Working with Winshuttle Products 2014 Winshuttle, LLC. All rights reserved. 2/14 www.winshuttle.com Background Companies running SAP systems are accustomed to configuring
NetIQ Identity Manager Identity Reporting Module Guide
NetIQ Identity Manager Identity Reporting Module Guide December 2014 www.netiq.com/documentation Legal Notice THIS DOCUMENT AND THE SOFTWARE DESCRIBED IN THIS DOCUMENT ARE FURNISHED UNDER AND ARE SUBJECT
Data Integration Checklist
The need for data integration tools exists in every company, small to large. Whether it is extracting data that exists in spreadsheets, packaged applications, databases, sensor networks or social media
Consolidate by Migrating Your Databases to Oracle Database 11g. Fred Louis Enterprise Architect
Consolidate by Migrating Your Databases to Oracle Database 11g Fred Louis Enterprise Architect Agenda Why migrate to Oracle What is migration? What can you migrate to Oracle? SQL Developer Migration Workbench
SAS Information Delivery Portal
SAS Information Delivery Portal Table of Contents Introduction...1 The State of Enterprise Information...1 Information Supply Chain Technologies...2 Making Informed Business Decisions...3 Gathering Business
IBM Maximo technology for business and IT agility
IBM Software Tivoli March 2010 IBM Maximo technology for business and IT agility IBM asset and service management solutions 2 IBM Maximo technology for business and IT agility Contents 2 Executive summary
The Unique Alternative to the Big Four. Identity and Access Management
The Unique Alternative to the Big Four Identity and Access Management Agenda Introductions Identity and Access Management (I&AM) Overview Benefits of I&AM I&AM Best Practices I&AM Market Place Closing
SAP NetWeaver. SAP NetWeaver
SAP NetWeaver SAP NetWeaver POWERED BY SAP NetWeaver The SAP NetWeaver technology platform is a comprehensive integration and application platform that helps reduce your total cost of ownership (TCO).
Overview Application Incident Management. David Birkenbach ALM Solution Management August 2011
Overview Application Incident David Birkenbach ALM Solution August 2011 How the New SAP Solution Manager Supports Business & IT SAP Solution Manager 7.1 provides: Better coverage of the complete customer
SAP NetWeaver Information Lifecycle Management
SAP NetWeaver Information Lifecycle Management What s New in Release 7.03 and Future Direction June 2012 SAP NetWeaver Information Lifecycle Management Information lifecycle management Retention management
secure user IDs and business processes Identity and Access Management solutions Your business technologists. Powering progress
secure Identity and Access Management solutions user IDs and business processes Your business technologists. Powering progress 2 Protected identity through access management Cutting costs, increasing security
SAP Secure Operations Map. SAP Active Global Support Security Services May 2015
SAP Secure Operations Map SAP Active Global Support Security Services May 2015 SAP Secure Operations Map Security Compliance Security Governance Audit Cloud Security Emergency Concept Secure Operation
