The Circle of Life: Protecting Your Sun IAM Investment with ForgeRock s Open Identity Stack (formerly Sun Open Source IAM)

Size: px
Start display at page:

Download "The Circle of Life: Protecting Your Sun IAM Investment with ForgeRock s Open Identity Stack (formerly Sun Open Source IAM)"

Transcription

1 White Paper The Circle of Life: Protecting Your Sun IAM Investment with ForgeRock s Open Identity Stack (formerly Sun Open Source IAM) 1. Overview 2. Understanding the Options 3. Solving the Customer Problem 4. ForgeRock Open Identity Stack 5. ForgeRock Sun Upgrade Offering: Make it Easy 6. Appendix: Product Comparisons

2 The Circle of Life: Protecting Your Sun IAM Investment with ForgeRock s Open Identity Stack (formerly Sun Open Source IAM) 1. Overview As many feared when Oracle acquired Sun Microsystems in 2009,Oracle has end-of-life d (EOL) the market-leading Sun Identity and Access Management (Sun IAM) platform which thousands of organizations have depended on to secure businesses-critical applications and services. Oracle has provided two alternatives to these Sun customers; stay on the Sun IAM platform and purchase an over-priced Sustaining Support contract, or move to the Oracle Fusion platform, a painful and costly process of ripping out and replacing their Sun IAM products. Fortunately, there is a third option that is cost-effective, has a minimal impact on your business and provides a path to modern IAM: the ForgeRock Open Identity Stack. Based on the Sun Microsystems open source IAM products, the ForgeRock Open Identity Stack is low risk upgrade.. Since it s inception four years ago ForgeRock has been busy adding new functionality and reliability to the original Sun IAM products. In the case of OpenSSO, for example, ForgeRock has written 100,000 lines of code, committed 10,000 code check-ins, and released 10 new versions of the product. Recently, ForgeRock launched the industry s first identity relationship management platform, focused on using secured, online identities to grow revenue, extend reach, and launch new business models. ForgeRock s Open Identity Stack powers solutions for many of the world s largest companies and government organizations. Founded in 2010, ForgeRock s leadership team brings 80 combined years of experience in the software industry and includes open source icons and innovators, with investors from two of the leading global venture capital firms Accel Partners and Foundation Capital. The following paper has been prepared to aid Sun IAM customers in understanding their options so they can make the best decision for their business. SUN IDENTITY AND ACCESS MANAGEMENT (SUN IAM) REPLACEMENT OPTIONS: Option 1 Stuck in Time: Oracle Sustaining Support Option 2 Rip and Replace: Oracle Fusion Replacement This option allows customers to continue running their existing Sun IAM deployment at an exorbitant cost. There are no innovations or new product releases. The offering grows stagnant and dated over time, eventually driving organizations to Option 2 or 3. This option requires customers to invest in completely new IAM infrastructure. This requires a rip and replace of existing Sun IAM infrastructure and expensive system integration costs to deploy a new platform. 2 FORGEROCK.COM

3 Option 3 A New Sun IAM Future: The ForgeRock Open Identity Stack Building on the Sun IAM source code, ForgeRock s Open Identity Stack allows for a hybrid model where organizations can directly upgrade portions of their portfolio to ForgeRock products, minimize service costs by avoiding rip and replace, and continue to build out their Sun IAM platform backed by a best-in-class identity and access management product development company. 2. Understanding the Options Option 1: Stuck in Time Oracle Sustaining Support Oracle s diminishing interest in the Sun IAM products became clear early on, when they announced plans to end full Premier Support of Sun IAM products starting in 2010, and then to end limited Extended Support by 2012 for all releases. It s critical to note that when a software product s end-of-life (EOL) date is announced, it signals a fundamental shift in investment on the part of the software vendor, Oracle in this case. Dedicated engineering resources for the product s development, maintenance, and QA are diverted to other projects. Only a skeleton crew of support engineers remain and customers no longer get software updates, upgrades, or patches for their software product. Oracle s lack of commitment to the Sun IAM products means that organizations relying on these products for mission-critical business processes are at high risk of failure and business interruption. Bottom line: if your systems go down, or something breaks because you upgraded an integrated third-party product, there won t be a team of experienced and motivated engineers to assist. You are on your own. Despite their own lack of resource dedication and commitment to Sun IAM, Oracle requires continuing Sun customers to purchase Sustaining Support contracts. In exchange for the customer s additional investment in Sun IAM, Oracle only promises to maintain the product in its current state (interminably) without providing any new updates, fixes, security alerts, data fixes, critical patch updates, upgrades, new technology, or paths forward. For customers running mission-critical identity and access management solutions, Oracle s Sustaining Support option is fraught with risk. ADDITIONAL INFORMATION ABOUT THE ORACLE SUPPORT OF IAM CAN BE FOUND AT: FORGEROCK.COM

4 Option 2: Rip and Replace Oracle Fusion Replacement A second alternative is to move off of Sun IAM and onto Oracle Fusion. There are clear costs to this option, as it would mean a rip and replace of the Sun IAM product. For some organizations, this could mean millions in added consulting and software licensing costs. In addition to the steep financial costs, the Oracle Fusion option is time-consuming and risky for even the most experienced IT team. As we all know, there are times when rip and replace is necessary, but it s hard to justify unless there are compelling technical or business drivers. Since the Sun IAM portfolio is a best-of-breed offering with a strong install-base and successful deployments globally, many organizations are struggling to justify a rip and replace strategy that would move them to a monolithic and complex platform such as Oracle Fusion or similar traditional IAM platforms. Many Sun IAM customers are only considering a move off of Sun because they are being forced to by Oracle s end-of-life policies and inadequate support commitment not very compelling reasons for making such a significant architectural change. This compels us to a third option, the ForgeRock Open Identity Stack. Sun Microsystems Oracle ForgeRock OpenSSO OpenSSO OpenAM Sun Access Manager OpenSSO OpenAM Sun Identity Manager Waveset OpenIDM Directory Server Enterprise Edition Directory Server Enterprise Edition / Oracle Unified Directory OpenDS Directory Server Enterprise Edition / Oracle Unified Directory OpenDJ OpenDJ Option 3: A New Future The ForgeRock Open Identity Stack Formed from the roots of Sun s open source IAM products, ForgeRock continues to invest in and build out a best-of-breed stack based on the Sun IAM source code. ForgeRock not only continues to shepherd the Sun IAM product strategy, but is also comprised of many of the management, engineering, services, sales, and marketing leaders from the Sun IAM team. This means that organizations using Sun products don t have to choose between paying exorbitant fees for Oracle s Sustaining Support or ripping out and replacing their Sun IAM infrastructure for a completely new solution. The ForgeRock Open Identity Stack gives organizations the ability to minimize cost and risk while optimizing value. Sun IAM customers can continue to build next-generation features on top of their existing IAM investment with off-the-shelf products designed and developed by some of the great identity leaders from Sun. The ForgeRock Open Identity Stack is a full suite of identity products. The table below shows the progression from the Sun Microsystems and Oracle products to the corresponding ForgeRock products. 4 FORGEROCK.COM

5 A Better Business Partner ForgeRock offers the best option for Sun customers through our deep engineering expertise with the Sun IAM code base, our unique business model, and our highly differentiated open source development model. From a financial licensing and support perspective, ForgeRock is the antithesis of the traditional vendor approach. Our commercial subscription license gives customer access to unlimited support, patches / upgrades and hotfixes, community support, and legal indemnification. Our open source model also provides the added assurance that there s no vendor lock in and no barrier to exit. With closed-source vendors like Oracle, you will be locked into a platform with up to a 5-to-1 services-to-license cost ratio and even more expensive to rip out and replace. A Better Technology Choice From a technology perspective, organizations that have Oracle products know they are monolithic, heavyweight, and designed for the on-premise enterprise. Any Oracle migration is an expensive rip and replace proposition. Oracle IAM requires complex integration, has limited scalability, and remains inaccessible to most developers. That s because legacy vendors like Oracle buy identity products ad-hoc, glue them together, label them with an integrated marketing sticker, and mark up the price. Unfortunately, these acquired software products utilize different user interfaces, APIs, libraries, and install requirements, saddling companies with complex, time- consuming, and ultimately painful migration and integration processes. As a result, organizations have been forced to slow down the implementation of their identity infrastructure, and have spent an extraordinary amount of money in the process with limited success. Our Mission ForgeRock has taken a completely different approach to solving the IAM problem. Utilizing an open source development model, ForgeRock is revolutionizing IAM through the creation of a simple, open, developer-friendly identity services product stack. Our goal is to create a ubiquitous, unified open identity stack to replace traditional, proprietary identity management suites. ForgeRock has the only agile, integrated solution that s simple to implement and architected from the ground up for Internet scale. The bottom line is that migration to Oracle IAM products is only worth considering if you have significant Oracle application, middleware, and database investments. The following table details the unique ForgeRock value proposition: ForgeRock Legacy Vendors Integrated Platform We re the first company to design an integrated, open-source identity platform for enterprise, cloud, social, and mobile environments. Our products are purposebuilt to work together anywhere. Legacy vendors like Oracle have an accidental architecture built through acquisitions. This model passes those costs to the customer through deployment complexity and maintenance. All-in-One We provide the only all-in-one open identity stack on the market. Lightweight and flexible, you can use any part of our stack with all of your existing legacy products. We are an integrated stack yet legacy system friendly. Oracle markets their products as integrated, yet requires multiple, separate installations just to enable core product functionality. This is an unnecessary expense and a deployment hassle. 5 FORGEROCK.COM

6 Open Source With over 300,000+ downloads, we have a vibrant community that directly impacts how our software is developed. With the ability to inspect every line of code and view our month roadmap, you can now transparently plan for the future and can decide at any time to continue or discontinue use of our suite. Legacy vendors like Oracle have proprietary, closed source products that block code inspection and lock you in to prevent any exit. This monolithic development and release process makes it difficult to vet the product, plan ahead, and focus on innovation and flexibility. Developer-Friendly Our identity solutions are unified, designed for the developer using a single, common programming interface (REST) and architected from the ground up for Internet scale. Oracle products were designed to support Fusion App platform products first, your application environment second. Providing simple API access to developers to enable easy integration is not part of their DNA. Pay at the Point of Value Download our products anytime, anywhere. We eliminate the complex licensing restrictions. You never pay for the cost of acquisition before you evaluate and test. Oracle requires upfront payment for the full deployment, yet getting to the production phase may take up to a year. Why pay in full for proof of concept or test or build? Speed to Market We deliver the latest stable product releases every six months compare that to legacy vendors standard 18-month cycle. This means you get new technology, standards, and features faster than anyone. Legacy vendors with proprietary products like Oracle have a standard 18-month development and release cycle. Why should you be penalized because they have a slow development and test process? Business Requirements Our architecture was purpose-built for enterprise, mobile, social, and cloud business requirements. Internet scalable, REST APIs for easy access, all-in-one unified platform for simple deployments. Designed to support Oracle Fusion apps first not next gen apps like mobile, social, or cloud. Products are not designed as a single, unified architecture, which means massive integration costs are passed to customers. No Barrier to Exit Open source provides assurance that if we re not for you, there s no barrier to exit and no vendor lock in. Proprietary vendor technology is designed to lock you in forever. This results in a high barrier to exit, up to 10x the original cost. 6 FORGEROCK.COM

7 3. Solving the Customer Problem Customer Profile: Multi-billion-dollar media services company that operates a multi-channel, multi-platform television service for over 10 million+ households delivering movies, news, entertainment, arts, and sports channels. Business Challenge: The customer had a legacy identity infrastructure that was approaching end of life in 2010 and kicked off a project to upgrade their Sun IAM technology. The goal was to leverage as much of the investment in the Sun IAM platform as possible while migrating to another solution. The biggest hurdle to migration was the risk that customers would not be able to access core services if a new vendor required a rip and replace transition. What the customer needed was a flexible technology platform, based on highly scalable products to support 15 million+ users with SSO, Access Management, and Directory Services, with minimal end-user disruption. IT Requirements: 24x7 support for a highly-available solution with more than 15 million+ users with peak concurrent usage in the millions Rapid transition to new platform while maintaining a live environment in production with minimal disruption to end-user services Flexible and highly customizable products which would be supported in production at an attractive TCO Project Details: The customer selected ForgeRock OpenAM and OpenDJ over Oracle technology, based on ease of developer access, projected implementation costs, and technically superior products. In early 2011 the customer began to migrate from Sun Access Manager and Sun DSEE to OpenAM and OpenDJ. With careful planning and preparation, the solutions were deployed to production, with ForgeRock providing expertise through technical support and incident management to minimize disruption to end-user services. Benefits: The customer was able to successfully upgrade complex Sun Directory Server, SSO, and Access Management infrastructure to ForgeRock OpenAM and OpenDJ. This protected the customer s previous investment in Sun technology, obviating the need to re-invest in a new technology platform. With expert assistance provided by ForgeRock throughout the process, the project was completed with minimal downtime and minimal user impact. The project completed on time and without incident, with OpenAM and OpenDJ demonstrating significant performance improvements against the legacy Sun DSEE and Sun Access Manager. The OpenAM and OpenDJ project involved the migration of more than 12 million user identities, multi-master replication across 6 directory instances, and a multi-site deployment in two data centers running at high availability. The upgrade allowed a seamless transition for end-users, and was completed in a live production environment. 7 FORGEROCK.COM

8 4. ForgeRock Open Identity Stack The ForgeRock Open Identity Stack is a shared services-based architecture for managing the complete lifecycle of an identity and its ongoing usage, including attributes, credentials, and entitlements; the real-time controls for access based on attributes, role, entitlement, and context; and the administration and reporting of those activities. The architecture has many shared services that span the three core products, making it easier to develop, implement, and manage your deployment. These services include a common RESTful API, registration, and standards- based services such as OAuth 2.0, among others, along with a common lightweight UI model to help integrate the internal Open Identity Stack components as well as external systems, and provide a unified experience for developers and administrators. OPEN IDENTITY STACK SHARED SERVICES ARCHITECTURE The Open Identity Stack is 100% open source and consists of the following solutions: OpenAM is an open source Authentication, Authorization, Federation, Web Services Security, Fine-Grained Entitlements, and Adaptive Authorization solution. It also includes application and web container policy enforcement agents. Packaged with OpenAM, OpenIG (Identity Gateway) is a high-performance gateway with specialized session management and credential replay functionality. OpenIDM is an open source User Administration and Provisioning solution. OpenIDM uses the Open Identity Connectors Framework and Toolkit (OpenICF) to aid development of resource connectors. OpenDJ is an open source LDAP directory service the first-ever DS server natively supporting REST API with a high-performance, highly available, secure directory server, built-in data replication, client tools, and a developer-friendly LDAP SDK. Access is provided via LDAP, Web Services, and REST API. Refer to Appendix for more details on the ForgeRock Open Identity Stack and how it stacks up against Oracle. 8 FORGEROCK.COM

9 5. Getting Started: Sun Upgrade Offering The ForgeRock Sun Upgrade offering has been designed to help organizations strategically plan for upgrading all or parts of their Sun IAM deployment. For many customers, this will be a very straightforward process, depending on the Sun products and versions deployed. The first step is the Sun Upgrade Assessment offering which is designed to help organizations map out their current IAM architecture and business processes. The assessment also includes an evaluation of technical and business needs against short and long-term strategies. The Assessment will produce a multi-point plan with recommendations that can be used for internal planning and budgeting. It is our goal at ForgeRock to help organizations with their decision-making process as they work through use-case scenarios for existing and future requirements. The ForgeRock Sun Upgrade offering is designed to help organizations strategically plan an upgrade of all or part of their Sun IAM deployment. With a variety of resources available to our customers to help with this process, ForgeRock will be your trusted partner in mapping your current IAM architecture and business processes, and in evaluating your current needs against your short and long term strategies. Let s get started. Contact us at 9 FORGEROCK.COM

10 6. Appendix Product Comparison of ForgeRock Open Identity Stack to Oracle Fusion Products OpenAM Overview There are several key reasons OpenAM provides the best possible upgrade solution from Sun OpenSSO or Sun Access Manager. The OpenAM code source foundation comes from Sun and has continued to evolve and improve over time. ForgeRock has audited and cleaned the entire Sun code base; and since the initial release of OpenAM, more than a thousand bugs, security issues, and improvements have been implemented. The code source lineage is detailed in the following chart. OpenAM Code Source Lineage OpenAM 9.0 OpenAM 9.5 OpenAM 10.0 OpenAM 10.1 OpenSSO Build 6 OpenSSO Build 7 OpenSSO Build 8 ONE SINGLE PRODUCT FOR AAA+ FEDERATION OpenSSO Ent 8.0 U1 U1 P1 U1 P2 U1 P3 BROKEN INTO SEVERAL NON-COMPATIBLE PRODUCTS U2 Oracle Access Manager* Oracle Identity Federation* Oracle Entitlements Server* Oracle Adaptive AM* Oracle Fedlet* OPEN SOURCE CLOSED SOURCE * Must purchase all products above to replicate OpenAM functionality OpenAM Product Description OpenAM has a unique architecture to support use cases from complex enterprise access control, to multi-protocol federation, to SSO enablement for cloud systems. At the highest level, OpenAM consists of a single, self-contained Java application; service components such as session management; client-side APIs in C, Java, REST; service provider interfaces to enable custom plugins; and policy agents for web and app server containers to enforce access policies to protected web sites and web applications. Organizations with existing internal access management solutions can easily integrate OpenAM into their environment through API services. Maintaining all installation and configuration capabilities within one application vastly simplifies deployment. In addition, agent configuration, server configuration, and other tasks are simplified to be repeatable and scalable, so multiple instances of the solution can be deployed without additional effort. The embedded OpenDJ directory server eliminates the need to configure a separate directory to support the configuration and user stores; or if desired, users can utilize other LDAP directories such as Sun DSEE or databases as user stores instead. 10 FORGEROCK.COM

11 OpenAM Functional Diagram UI Layer Management End User Protected Resources Layer Web Agents JavaEE Agents WS Agents Access Layer Common REST OpenID Connect OAuth2 SAML WS Services Layer AuthN Federation Adaptive Risk AuthZ Session Management SSO Entitlements Password Management Logging Data Persistence Layer External Layer Authentication Systems User Directory Stores Reporting Tools SIEM, Analytics Tools OpenAM Advantages ForgeRock Legacy Vendors Cost-Effective Upgrade Path ForgeRock offers the most cost-effective path for existing Sun customers. Because it is based on the same code base, upgrading to OpenAM is just moving to the latest version of Sun OpenSSO. OpenAM is also designed as a single solution, meaning there are no additional license fees to get all the features one price gives you everything today and what s delivered in the future. Oracle recommends that you rip and replace Sun OpenSSO or Sun AM as the upgrade path to OAM. If you are an existing OAM customer then you probably already know the pain of moving from just OAM 10g to 11g. Unless there are significant business reasons to move to OAM, OpenAM is technically a better product, a more cost-effective solution, and an easier upgrade path. Comprehensive It is the only All-in-One Access Management solution that includes Authentication, SSO, Authorization, Federation, Entitlements, Adaptive Authentication, Strong Authentication, and Web Services Security in a single, unified product. Comparing OAM to OpenAM is not 1:1. OAM has 8+ individual products vs. 1 integrated OpenAM solution. You end up paying more for an accidental architecture through added deployment complexity and a steep learning curve. 11 FORGEROCK.COM

12 Developer-Friendly Designed for the developer using a single, common programming interface (REST), or if preferred, Java and C. Our key objective is to make it easier, faster, and less complex to implement IT and business requirements. Oracle products were designed to support Fusion App platform products first, your application environment second. Providing simple API access to developers to enable easy integration is not part of their DNA. Performance, Scalability, High Availability Supports large-scale implementations with thousands of logins and registrations per second. Requires fewer machines at scale, decreasing footprint. Load balancing and high availability with session failover across sites support complex, multi-site environments. Oracle designed OAM for the enterprise and Oracle Fusion apps, and now is saddled with an architecture that cannot effectively support large-scale deployments for ISPs, SaaS providers, and customer-facing services. Systems designed for a single purpose are not cost-effective or practical for alternative uses. Built-in Data Store OpenDJ comes embedded as a sessionpersistent store and a highly scalable and high-performance configuration store. There is no additional cost to use it straight out of the box with OpenAM. This saves you time and money with license and configuration issues. Or use your choice of datastore if desired. OAM does support almost any LDAP datastore but it s at your own cost. Separate install, config, license, and support contract. With a 100+ step checklist to install an OAM supported directory, it s anything but simple. OpenDJ is part of the OpenAM install process and is up and running in a few clicks. OpenIDM Overview To understand why we designed OpenIDM the way we did, it s important to know a bit about the history of user provisioning. Legacy user provisioning products were designed years ago when IT used a three-tier web architecture for application development and attempted to consolidate all identities into a centralized directory service. These first-generation provisioning systems helped automate the administration of users to reduce cost and resource overhead. By building a system that connected to the mainframe, HR system, and systems, departments and lines of business could manage their own policies for granting system access. Fast-forward to today, and the entire IT landscape has radically changed. It s now more complex than ever due to the explosion of devices, users, roles, and regulations, among many other requirements. While the original provisioning systems worked as point solutions, they had limited ability to fully integrate into the enterprise, limited flexibility to adapt to new business requirements, and were inherently complex to implement. For these reasons, OpenIDM was developed as a clean sheet design using a modern, lightweight, modular architecture that supports business use cases for identity administration and provisioning not only within the enterprise, but for cloud-based services delivered to the user across a wide variety of devices including mobile and desktop. Moving to OpenIDM from Sun Identity Manager provides a lightweight, developer-friendly solution. It will provide a flexible system that is easy to adapt to many different use cases that the business requires, not just today, but in 3 to 5 years, as the IT landscape continues to evolve. 12 FORGEROCK.COM

13 OpenIDM Product Overview OpenIDM is a User Administration and Provisioning solution purpose-built to manage user access and accounts across enterprise, cloud, social, and mobile environments. OpenIDM is 100% open source, offering a very different approach to application development, with a more reasonable cost model and improved flexibility to support the innovation required to stay competitive. Because the Java-based architecture is built on the OSGi framework, OpenIDM is able to provide lightweight, modular services such as automated workflow, user self-service, registration, password sync, data reconciliation, and audit logging, all accessible through the RESTful API using standard Java development tools. The OSGi framework enables modular, plug-and-play identity services if you want to use an alternative component, such as a workflow engine, with OpenIDM you can easily do so. In addition, OpenIDM leverages OpenICF (Open Source Identity Connector Framework) to vastly simplify resource connector development and sharing through the open source community. With complete flexibility in data and object schema, the OpenIDM architecture enables support for traditional on-premise applications as well as cloud service providers such as Workday, Google Apps, and Salesforce.com. Using SCIM (System for Cross- Domain Identity Management), open standards, and the REST API, OpenIDM is easy to configure straight out of the box, enabling user- provisioning and administration services for cloud providers without complex customization. This simplifies account creation, updates, deletions, and auditing without the cost and overhead of deploying multiple systems. OpenIDM Functional Diagram UI Layer ForgeRock UI Framework Access Layer Common REST Business Logic Layer JavaScript Groovy Java Services Layer Provisioning Services Password Management Report & Audit Service Directory Service OpenIDM Repository Task Scanner Workflow Engine Policy Service External Resources Layer 13 FORGEROCK.COM

14 OpenIDM Advantages ForgeRock Sun Identity manager Internet Scale Architecture With a next-gen architecture, OpenIDM is unique in its support for large-scale, hightransaction rate operations for customerfacing systems that deliver user self-service, password management, and account creation. With a high-speed reconciliation and sync engine, data is managed efficiently between multiple backend datastores to ensure data is clean and consistent. Sun Identity Manager was purpose-built for enterprise provisioning between HR, AD, and other backoffice systems. Because of the complex configuration, usually no more than 25 systems were connected. The Service Provider edition was an attempt to provide the scale needed for new externally facing applications. Open Standardsbased Connector Framework OpenIDM provides standard, out-of-the-box ICF connectors (based on OpenICF [Open Source Identity Connector Framework]) to the most widely used backend systems. Connector code is open, reusable, and can be shared through the OpenICF community. The original Sun Identity Manager connector code was proprietary and as such is not reusable when migrating. Oracle recognized this and moved new connector tools to support the OpenICF framework, which will help simplify some of the migration to OpenIDM. Developer-Friendly Simple RESTful interfaces provide APIs for managing all core operations of user administration, sync, and reconciliation. A server-side scripting engine is provided with JavaScript and Groovy supported out of the box. Sun Identity Manager provided limited API access for developers and the XPRESS scripting language was proprietary. XPRESS correlation rules can be migrated from XPRESS to JavaScript. Embeddable for SaaS/ Custom App OpenIDM has a modular architecture with a small footprint, and it s open source and developer-friendly. This makes OpenIDM an ideal solution to embed in a SaaS, IaaS, PaaS, or hosted service provider offering. Sun Identity Manager was purpose-built for enterprise workflow processes only. Any SaaS or service provider system requiring a lightweight, embeddable, developer-friendly solution will have to use another option such as OpenIDM. Independent UI Framework OpenIDM is the first provisioning solution designed with a UI that is decoupled from the core services. Through support of jquery and REST APIs, it allows complete customization of the presentation layer. Sun Identity Manager does not offer developer access to the admin UI. This is a traditional software app that has an admin console UI or CLI that can be used for managing configuration. Forms are used for the end user UI and can be modified as needed. 14 FORGEROCK.COM

15 Industry Standard Workflow Modeling OpenIDM supports a plug-and-play design that allows choice of either the embedded Activiti engine or another of the customer s choice. Activiti supports industry-standard BPMN 2.0 process definition models, which can not only exchange between different graphical editors, but can also execute as is on any BPMN 2.0-compliant engine. Sun Identity Manager has a flexible yet proprietary workflow design that was custombuilt and therefore cannot be changed. OpenIDM exposes the same capability but instead of using a proprietary workflow definition language, we leverage the industry standard BPMN 2.0 to specify workflows. ForgeRock is able to help customers migrate the proprietary notation to industry standard BMPN 2.0 notation. Flexible Data Model The object model is designed to support whatever the organization requires. The options are to configure OpenIDM to create a virtual identity with links to external systems (data sparse model), or to create a metadirectory that centrally stores a copy of identity attributes (data full model). Sun Identity Manager uses a data sparse data model, which is good if the organization doesn t have a lot of data to manage, sync, or reconcile between backend systems. OpenIDM provides the advantage of either data model, which is critical to the current needs of many businesses. OpenDJ Overview OpenDJ, initiated as the Sun Microsystems OpenDS project, was designed as a replacement for Sun Directory Server Enterprise Edition, and therefore provides the easiest migration path. ForgeRock is changing the decades old approach to LDAP directory services by simplifying the way developers gain access to the underlying directory service. OpenDJ is the first commercial open source solution that provides both an LDAP and REST-compliant directory service. With a design specifically developed for the Java platform, it can provide high-throughput performance for both reads and writes, configurable with replication for highlyavailable service, and secure protection of data with multiple levels of authentication and authorization. OpenDJ is also the easiest directory to deploy and manage for many different use cases whether it is for a large- scale cloud service directory, a consumerfacing directory, or an enterprise or network operating system (NOS) directory. With its 100% Java code base, OpenDJ runs on many platforms, including virtualized environments. All software and data are architecture-independent, so migration to a different OS or a different server is as simple as copying an instance to the new server. This increases the deployment flexibility, as well as the portability between different operating systems and system architectures. 15 FORGEROCK.COM

16 OpenDJ Functional Diagram UI Layer Management End User Access Layer Common REST LDAP SDK LDAPv3 Services Layer REST2LDAP Access Control Password Policy Groups Schema Management Caching LDAPv3 Replication Monitoring Auditing External Layer Active Directory Samba User Directory Stores Reporting Tools SIEM, Analytics Tools OpenDJ Advantages ForgeRock Oracle Internet Scale Architecture OpenDJ provides industry-leading performance with sub-millisecond read/write response times and low latency throughput, up to hundreds of thousands of operations per second. HA deployments supported with N-way multi-master replication, including data centers with geographic separation for managing failover and disaster recovery. Meets the most rigorous SLA requirements, from telco subscriber systems to missioncritical enterprise environments. Oracle has 3 different directory products to choose from. The Sun OpenDS code base provides the foundation for both Oracle Unified Directory and OpenDJ which means all the advantages of the Oracle product can be found in OpenDJ as well Internet scalability, HA, and support for use cases for the enterprise and cloud except OpenDJ is 100% open source with an actively and rapidly contributing community and the flexibility to customize code. Developer-Friendly OpenDJ is the first LDAP directory to support a range of developer options including a REST API, SCIM, LDAP, and DSML-based Web Services. And for the traditionalists, the OpenDJ SDK provides a library of Java classes and interfaces for accessing and implementing LDAP directory services. Oracle only provides access through traditional APIs like DSML and the Identity Governance Framework (IGF) ArisID Java Interfaces. 16 FORGEROCK.COM

17 Pass-Through Authentication OpenDJ enables simple to configure delegated authentication to another LDAP directory service, such as Active Directory, without the need to install other components or products. Delegated authentication removes security risks associated with synchronizing passwords (e.g. transfer of cleartext passwords). Oracle requires installation of other Oracle products such as the Directory Integration Platform for synchronization between other directory services, adding complexity and cost to every deployment. OpenDJ provides this feature standard out of the box as it is one of the baseline use cases for almost every enterprise. About ForgeRock ForgeRock is redefining identity and access management for the modern web including public cloud, private cloud, hybrid cloud, and enterprise and mobile environments, ForgeRock products support mission-critical operations with a fully open source platform. ForgeRock s Open Identity Stack powers solutions for many of the world s largest companies and government organizations. For more information and free downloads, visit or follow ForgeRock on Twitter at 17 ForgeRock is the trademark of ForgeRock Inc. or its subsidiaries in the U.S. and in other countries. FORGEROCK.COM

Tech Brief: Upgrading from Sun IAM to ForgeRock Open Identity Stack

Tech Brief: Upgrading from Sun IAM to ForgeRock Open Identity Stack White Paper Tech Brief: Upgrading from Sun IAM to ForgeRock Open Identity Stack 1. Overview 2. OpenAM 3. OpenIDM 4. OpenDJ 5. Getting Started Tech Brief: Upgrading from Sun IAM to ForgeRock Open Identity

More information

G Cloud 6 CDG Service Definition for Forgerock Software Services

G Cloud 6 CDG Service Definition for Forgerock Software Services G Cloud 6 CDG Service Definition for Forgerock Software Services Author: CDG Date: October 2015 Table of Contents Table of Contents 2 1.0 Service Definition 3 1.0 Service Definition Forgerock as a Platform

More information

WHITEPAPER OpenIDM. Identity lifecycle management for users, devices, & things

WHITEPAPER OpenIDM. Identity lifecycle management for users, devices, & things WHITEPAPER OpenIDM Identity lifecycle management for users, devices, & things Introduction Organizations of all sizes employ a variety of different approaches to manage identity administration and provisioning

More information

WHITEPAPER ForgeRock Identity Management. Identity lifecycle management for users, devices, and things

WHITEPAPER ForgeRock Identity Management. Identity lifecycle management for users, devices, and things WHITEPAPER ForgeRock Identity Management Identity lifecycle management for users, devices, and things Introduction Organizations of all sizes employ a variety of different approaches to manage identity

More information

OpenAM All-In-One solution to securely manage access to digital enterprise and customer services, anytime and anywhere.

OpenAM All-In-One solution to securely manage access to digital enterprise and customer services, anytime and anywhere. OpenAM All-In-One solution to securely manage access to digital enterprise and customer services, anytime and anywhere. OpenAM, the only all-in-one open source access management solution, provides the

More information

PRODUCT BRIEF OpenAM. Delivering secure access for customers, applications, devices and things

PRODUCT BRIEF OpenAM. Delivering secure access for customers, applications, devices and things PRODUCT BRIEF OpenAM Delivering secure access for customers, applications, devices and things Introduction Identity and access management is going through a new golden age. CEOs are pushing growth as their

More information

Open Identity Stack. Forging a New Future with Identity Relationship Management

Open Identity Stack. Forging a New Future with Identity Relationship Management White PaPer Open Identity Stack Forging a New Future with Identity Relationship Management 1. Executive Summary 2. Introduction 3. Business Pain Points 4. Business Trends 5. The Open Source Solution 6.

More information

Enterprise Open Source Identity Middleware. Anders Askåsen, Product Manager

Enterprise Open Source Identity Middleware. Anders Askåsen, Product Manager Enterprise Open Source Identity Middleware Anders Askåsen, Product Manager The Day the Music Died Our Mission ForgeRock is an independent software vendor (ISV), whose core mission is to deliver an enterprise-class

More information

Securing your business

Securing your business Securing your business Anders Askåsen Product Manager for OpenIDM * World Wide Coverage ForgeRock.com Enterprise Open Source Software ForgeRock Norway ForgeRock USA ForgeRock UK ForgeRock France Consulting

More information

Sun and Oracle: Joining Forces in Identity Management

Sun and Oracle: Joining Forces in Identity Management Sun and Oracle: Joining Forces in Identity Management The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into

More information

Federated single sign-on (SSO) and identity management. Secure mobile access. Social identity integration. Automated user provisioning.

Federated single sign-on (SSO) and identity management. Secure mobile access. Social identity integration. Automated user provisioning. PingFederate We went with PingFederate because it s based on standards like SAML, which are important for a secure implementation. John Davidson Senior Product Manager, Opower PingFederate is the leading

More information

Overview. The Cloud. Characteristics and usage of the cloud Realities and risks of the cloud

Overview. The Cloud. Characteristics and usage of the cloud Realities and risks of the cloud Overview The purpose of this paper is to introduce the reader to the basics of cloud computing or the cloud with the aim of introducing the following aspects: Characteristics and usage of the cloud Realities

More information

BOF4803 Open source identity and access management. 1 October 2012 5:30p San Francisco CA

BOF4803 Open source identity and access management. 1 October 2012 5:30p San Francisco CA Open source identity and access management 1 October 2012 5:30p San Francisco CA slide 2 Expert Panel Ludovic Poitou, ForgeRock Matt Hardin, Symas Pascal Jakobi, Thales Group Shawn McKinney, JoshuaTree

More information

midpoint Overview Radovan Semančík December 2015

midpoint Overview Radovan Semančík December 2015 midpoint Overview Radovan Semančík December 2015 Agenda Identity Management Introduction midpoint Introduction midpoint Architecture Conclusion Identity Management Introduction Identity Management System

More information

IBM WebSphere Application Server Family

IBM WebSphere Application Server Family IBM IBM Family Providing the right application foundation to meet your business needs Highlights Build a strong foundation and reduce costs with the right application server for your business needs Increase

More information

<Insert Picture Here> Integrating your On-Premise Applications with Cloud Applications

<Insert Picture Here> Integrating your On-Premise Applications with Cloud Applications Integrating your On-Premise Applications with Cloud Applications Agenda Hybrid IT Infrastructure An Emerging Trend A New Set of Challenges The Five Keys to Overcoming the Challenges

More information

Extend and Enhance AD FS

Extend and Enhance AD FS Extend and Enhance AD FS December 2013 Sponsored By Contents Extend and Enhance AD FS By Sean Deuby Introduction...2 Web Service SSO Architecture...3 AD FS Overview...5 Ping Identity Solutions...7 Synergy

More information

VALUE PROPOSITION FOR SERVICE PROVIDERS. Helping Service Providers accelerate adoption of the cloud

VALUE PROPOSITION FOR SERVICE PROVIDERS. Helping Service Providers accelerate adoption of the cloud VALUE PROPOSITION FOR SERVICE PROVIDERS Helping Service Providers accelerate adoption of the cloud Partnership with Service Providers Enabling Your Cloud Services in Complex Environments Today s challenge

More information

Modernize IAM with a Web Scale LDAP Directory Server

Modernize IAM with a Web Scale LDAP Directory Server Modernize IAM with a Web Scale LDAP Directory Server with Nathanael Coffing, Co- founder of Syntegrity Copyright 2015 UnboundID, Inc. Today s Speakers Terry Sigle Dir. of SoluEons Engineering, UnboundID

More information

The Customizable Cloud. How the Cloud Provides the More Flexible Alternative to Legacy ERP Platforms

The Customizable Cloud. How the Cloud Provides the More Flexible Alternative to Legacy ERP Platforms How the Cloud Provides the More Flexible Alternative to Legacy ERP Platforms Executive Summary For years, Enterprise Resource Planning (ERP) applications have been instrumental in integrating business

More information

Top 8 Identity and Access Management Challenges with Your SaaS Applications. Okta White paper

Top 8 Identity and Access Management Challenges with Your SaaS Applications. Okta White paper Okta White paper Top 8 Identity and Access Management Challenges with Your SaaS Applications Okta Inc. 301 Brannan Street, Suite 300 San Francisco CA, 94107 info@okta.com 1-888-722-7871 wp-top8-113012

More information

The Top 5 Federated Single Sign-On Scenarios

The Top 5 Federated Single Sign-On Scenarios The Top 5 Federated Single Sign-On Scenarios Table of Contents Executive Summary... 1 The Solution: Standards-Based Federation... 2 Service Provider Initiated SSO...3 Identity Provider Initiated SSO...3

More information

How Solace Message Routers Reduce the Cost of IT Infrastructure

How Solace Message Routers Reduce the Cost of IT Infrastructure How Message Routers Reduce the Cost of IT Infrastructure This paper explains how s innovative solution can significantly reduce the total cost of ownership of your messaging middleware platform and IT

More information

Identity and Access Management for the Cloud

Identity and Access Management for the Cloud Identity and Access Management for the Cloud What you need to know about managing access to your clouds Organizations need to control who has access to which systems and technology within the enterprise.

More information

White Paper. Anywhere, Any Device File Access with IT in Control. Enterprise File Serving 2.0

White Paper. Anywhere, Any Device File Access with IT in Control. Enterprise File Serving 2.0 White Paper Enterprise File Serving 2.0 Anywhere, Any Device File Access with IT in Control Like it or not, cloud- based file sharing services have opened up a new world of mobile file access and collaborative

More information

Securely. Mobilize Any Business Application. Rapidly. The Challenge KEY BENEFITS

Securely. Mobilize Any Business Application. Rapidly. The Challenge KEY BENEFITS Mobilize Any Business Application. Rapidly. Securely. The Challenge Today's enterprises are increasingly leveraging mobility solutions to improve productivity, decrease response times and streamline operational

More information

White Pages Managed Service Solution Rapid Global Directory Implementation. White Paper

White Pages Managed Service Solution Rapid Global Directory Implementation. White Paper White Pages Managed Service Solution Rapid Global Directory Implementation White Paper December 2014 Author: Tom Eggleston Version: 1.0 Status: FINAL Reference: DA-WP01 Creation Date: 03/12/14 Revision

More information

ON-PREMISE OR IN THE CLOUD, A SINGLE JAVA EE APPLICATION PLATFORM

ON-PREMISE OR IN THE CLOUD, A SINGLE JAVA EE APPLICATION PLATFORM ON-PREMISE OR IN THE CLOUD, A SINGLE JAVA EE APPLICATION PLATFORM TECHNOLOGY OVERVIEW FEATURES Fully certified Java EE 6 container Full web services stack Modular architecture optimized for cloud and virtual

More information

Oracle s Cloud Computing Strategy

Oracle s Cloud Computing Strategy Oracle s Cloud Computing Strategy Your Strategy, Your Cloud, Your Choice Sandra Cheevers Senior Principal Product Director Cloud Product Marketing Steve Lemme Director, Cloud Builder Specialization Oracle

More information

VMware Hybrid Cloud. Accelerate Your Time to Value

VMware Hybrid Cloud. Accelerate Your Time to Value VMware Hybrid Cloud Accelerate Your Time to Value Fulfilling the Promise of Hybrid Cloud Computing Through 2020, the most common use of cloud services will be a hybrid model combining on-premises and external

More information

Identity and Access Management (IAM) Across Cloud and On-premise Environments: Best Practices for Maintaining Security and Control

Identity and Access Management (IAM) Across Cloud and On-premise Environments: Best Practices for Maintaining Security and Control Identity and Access Management (IAM) Across Cloud and On-premise Environments: Best Practices for Maintaining Security and Control agility made possible Enterprises Are Leveraging Both On-premise and Off-premise

More information

MOVING TO THE NEXT-GENERATION MEDICAL INFORMATION CALL CENTER

MOVING TO THE NEXT-GENERATION MEDICAL INFORMATION CALL CENTER MOVING TO THE NEXT-GENERATION MEDICAL INFORMATION CALL CENTER Pharma companies are improving personalized relationships across more channels while cutting cost, complexity, and risk Increased competition

More information

Datamation. Find the Right Cloud Computing Solution. Executive Brief. In This Paper

Datamation. Find the Right Cloud Computing Solution. Executive Brief. In This Paper Find the Right Cloud Computing Solution In This Paper There are three main cloud computing deployment models: private, public, and hybrid The true value of the cloud is achieved when the services it delivers

More information

Interoperate in Cloud with Federation

Interoperate in Cloud with Federation Interoperate in Cloud with Federation - Leveraging federation standards can accelerate Cloud computing adoption by resolving vendor lock-in issues and facilitate On Demand business requirements Neha Mehrotra

More information

The Dangers of Consumer Grade File Sharing in a Compliance Driven World

The Dangers of Consumer Grade File Sharing in a Compliance Driven World The Dangers of Consumer Grade File Sharing in a Compliance Driven World Enterprise data access is spiraling out of control owncloud, Inc. 57 Bedford Street Suite 102 Lexington, MA 02420 United States www.owncloud.com/contact

More information

Two-Factor Authentication

Two-Factor Authentication Two-Factor Authentication A Total Cost of Ownership Viewpoint CONTENTS + Two-Factor Authentication 3 A Total Cost of Ownership Viewpoint + Introduction 3 + Defining Total Cost of Ownership 3 + VeriSign

More information

B2C, B2B and B2E:! Leveraging IAM to Achieve Real Business Value

B2C, B2B and B2E:! Leveraging IAM to Achieve Real Business Value B2C, B2B and B2E:! Leveraging IAM to Achieve Real Business Value IDM, 12 th November 2014 Colin Miles Chief Technology Officer, Pirean Copyright 2014 Pirean Limited. All rights reserved. Safe Harbor All

More information

Red Hat Enterprise Linux solutions from HP and Oracle

Red Hat Enterprise Linux solutions from HP and Oracle Red Hat Enterprise Linux solutions from HP and Oracle Driven by innovation to improve interoperability and scalability, HP, Red Hat, and Oracle deliver a broad and deep range of Linux offerings to enhance

More information

Directory Integration with Okta. An Architectural Overview. Okta White paper. Okta Inc. 301 Brannan Street, Suite 300 San Francisco CA, 94107

Directory Integration with Okta. An Architectural Overview. Okta White paper. Okta Inc. 301 Brannan Street, Suite 300 San Francisco CA, 94107 Okta White paper Directory Integration with Okta An Architectural Overview Okta Inc. 301 Brannan Street, Suite 300 San Francisco CA, 94107 info@okta.com 1-888-722-7871 wp-dint-053013 Table of Contents

More information

Planning and Budgeting Cloud Service

Planning and Budgeting Cloud Service Planning and Budgeting Cloud Service You don t know what you don t know Andrew Mason Qubix International Ltd 1 Today s Topics The Challenges 5 Steps To Planning Brilliance Planning and Budgeting Cloud

More information

<Insert Picture Here> Oracle Identity And Access Management

<Insert Picture Here> Oracle Identity And Access Management Oracle Identity And Access Management Gautam Gopal, MSIST, CISSP Senior Security Sales Consultant Oracle Public Sector The following is intended to outline our general product direction.

More information

owncloud Architecture Overview

owncloud Architecture Overview owncloud Architecture Overview Time to get control back Employees are using cloud-based services to share sensitive company data with vendors, customers, partners and each other. They are syncing data

More information

Table of Contents. Abstract. Cloud computing basics. The app economy. The API platform for the app economy

Table of Contents. Abstract. Cloud computing basics. The app economy. The API platform for the app economy Table of Contents Abstract Cloud computing basics The app economy The API platform for the app economy Your API platform: in the cloud or on premises? The cloud deployment model Cloud characteristics The

More information

How can Identity and Access Management help me to improve compliance and drive business performance?

How can Identity and Access Management help me to improve compliance and drive business performance? SOLUTION BRIEF: IDENTITY AND ACCESS MANAGEMENT (IAM) How can Identity and Access Management help me to improve compliance and drive business performance? CA Identity and Access Management automates the

More information

CTERA Enterprise File Services Platform Architecture for HP Helion Content Depot

CTERA Enterprise File Services Platform Architecture for HP Helion Content Depot CTERA Enterprise File Services Platform Architecture for HP Helion Content Depot Whitepaper by CTERA Networks Highlights How unstructured data growth drives cloud storage adoption Putting cloud storage

More information

Build Your Mobile Strategy Not Just Your Mobile Apps

Build Your Mobile Strategy Not Just Your Mobile Apps Mobile Cloud Service Build Your Mobile Strategy Not Just Your Mobile Apps Copyright 2015 Oracle Corporation. All Rights Reserved. What is is it? Oracle Mobile Cloud Service provides everything you need

More information

Mobile Application Platform

Mobile Application Platform Mobile Application Platform from FeedHenry Next generation cloud-based solution that simplifies the development, deployment and management of mobile apps for enterprise. Develop native, hybrid and HTML5

More information

Secure the Web: OpenSSO

Secure the Web: OpenSSO Secure the Web: OpenSSO Sang Shin, Technology Architect Sun Microsystems, Inc. javapassion.com Pat Patterson, Principal Engineer Sun Microsystems, Inc. blogs.sun.com/superpat 1 Agenda Need for identity-based

More information

THE MOBlLE APP. REVOLUTlON. 8 STEPS TO BUlLDING MOBlLE APPS FAST ln THE CLOUD

THE MOBlLE APP. REVOLUTlON. 8 STEPS TO BUlLDING MOBlLE APPS FAST ln THE CLOUD THE MOBlLE APP REVOLUTlON 8 STEPS TO BUlLDING MOBlLE APPS FAST ln THE CLOUD People use hand-held devices for everything from communicating and playing games to shopping and surfing the Internet. In fact,

More information

Oracle Reference Architecture and Oracle Cloud

Oracle Reference Architecture and Oracle Cloud Oracle Reference Architecture and Oracle Cloud Anbu Krishnaswamy Anbarasu Enterprise Architect Social. Mobile. Complete. Global Enterprise Architecture Program Safe Harbor Statement The following is intended

More information

Kenneth Hee Director, Business Development Security & Identity Management. Oracle Identity Management 11g R2 Securing The New Digital Experience

Kenneth Hee Director, Business Development Security & Identity Management. Oracle Identity Management 11g R2 Securing The New Digital Experience Kenneth Hee Director, Business Development Security & Identity Management Oracle Identity Management 11g R2 Securing The New Digital Experience This document is for informational purposes. It is not a

More information

Cloud Security/Access Control and Identity Management. Patrick McLaughlin, Oracle Fellow SAOUG: 14 November, 2011

Cloud Security/Access Control and Identity Management. Patrick McLaughlin, Oracle Fellow SAOUG: 14 November, 2011 Cloud Security/Access Control and Identity Management Patrick McLaughlin, Oracle Fellow SAOUG: 14 November, 2011 Agenda Evolution of IT and IdM Requirements Building and Securing Clouds Oracle Public Cloud

More information

NCSU SSO. Case Study

NCSU SSO. Case Study NCSU SSO Case Study 2 2 NCSU Project Requirements and Goals NCSU Operating Environment Provide support for a number Apps and Programs Different vendors have their authentication databases End users must

More information

Oracle Identity Analytics Architecture. An Oracle White Paper July 2010

Oracle Identity Analytics Architecture. An Oracle White Paper July 2010 Oracle Identity Analytics Architecture An Oracle White Paper July 2010 Disclaimer The following is intended to outline our general product direction. It is intended for information purposes only, and may

More information

Openbravo Subscription and Recurring Billing Managing a Subscription-based Business and How a Technology Giant Did It

Openbravo Subscription and Recurring Billing Managing a Subscription-based Business and How a Technology Giant Did It Openbravo Subscription and Recurring Billing Managing a Subscription-based Business and How a Technology Giant Did It 1 Presenter Jon Setuain Senior Consultant at Openbravo 2 Trusted Vendor World leader

More information

Cloud Computing: What IT Professionals Need to Know

Cloud Computing: What IT Professionals Need to Know Learning Cloud Computing: What IT Professionals Need to Know Cloud computing promises new career opportunities for IT professionals. In many cases, existing core skill sets transfer directly to cloud technologies.

More information

MENDIX FOR MOBILE APP DEVELOPMENT WHITE PAPER

MENDIX FOR MOBILE APP DEVELOPMENT WHITE PAPER MENDIX FOR MOBILE APP DEVELOPMENT WHITE PAPER TABLE OF CONTENTS Market Demand for Enterprise Mobile Mobile App Development Approaches Native Apps Mobile Web Apps Hybrid Apps Mendix Vision for Mobile App

More information

Is Liferay Right for Your Organization? Seven Things to Consider When Choosing a Portal Platform

Is Liferay Right for Your Organization? Seven Things to Consider When Choosing a Portal Platform Is Liferay Right for Your Organization? Seven Things to Consider When Choosing a Portal Platform BY DAN LILIEDAHL, CTO, TANDEMSEVEN The outcome of your portal initiative and its success is directly related

More information

Clouds on the Horizon: What s the Best Oracle Fusion Strategy for Those Still on Oracle 11i or R12.0?

Clouds on the Horizon: What s the Best Oracle Fusion Strategy for Those Still on Oracle 11i or R12.0? Clouds on the Horizon: What s the Best Oracle Fusion Strategy for Those Still on Oracle 11i or R12.0? Gustavo Gonzalez -Oracle ACE at IT Convergence Abstract The general availability of Oracle Fusion,

More information

AT A LOWER COST MYSQL PROVIDES SCALABILITY, RELIABILITY, & ENTERPRISE SUPPORT. Open Databases White Paper April 2009. Abstract

AT A LOWER COST MYSQL PROVIDES SCALABILITY, RELIABILITY, & ENTERPRISE SUPPORT. Open Databases White Paper April 2009. Abstract MYSQL PROVIDES SCALABILITY, RELIABILITY, & ENTERPRISE SUPPORT AT A LOWER COST Open Databases White Paper April 2009 Abstract Enterprises are looking for the best, most cost-effective way to manage the

More information

nexus Hybrid Access Gateway

nexus Hybrid Access Gateway Product Sheet nexus Hybrid Access Gateway nexus Hybrid Access Gateway nexus Hybrid Access Gateway uses the inherent simplicity of virtual appliances to create matchless security, even beyond the boundaries

More information

Understanding Enterprise Cloud Governance

Understanding Enterprise Cloud Governance Understanding Enterprise Cloud Governance Maintaining control while delivering the agility of cloud computing Most large enterprises have a hybrid or multi-cloud environment comprised of a combination

More information

Izenda & SQL Server Reporting Services

Izenda & SQL Server Reporting Services Izenda & SQL Server Reporting Services Comparing an IT-Centric Reporting Tool and a Self-Service Embedded BI Platform vv Izenda & SQL Server Reporting Services The reporting tools that come with the relational

More information

Total Cloud Control with Oracle Enterprise Manager 12c. Kevin Patterson, Principal Sales Consultant, Enterprise Manager Oracle

Total Cloud Control with Oracle Enterprise Manager 12c. Kevin Patterson, Principal Sales Consultant, Enterprise Manager Oracle Total Cloud Control with Oracle Enterprise Manager 12c Kevin Patterson, Principal Sales Consultant, Enterprise Manager Oracle 2 Copyright 2011, Oracle and/or its affiliates. All rights reserved. Insert

More information

POINT-TO-POINT vs. MEAP THE RIGHT APPROACH FOR AN INTEGRATED MOBILITY SOLUTION

POINT-TO-POINT vs. MEAP THE RIGHT APPROACH FOR AN INTEGRATED MOBILITY SOLUTION POINT-TO-POINT vs. MEAP THE RIGHT APPROACH FOR AN INTEGRATED MOBILITY SOLUTION Executive Summary Enterprise mobility has transformed the way businesses engage with customers, partners and staff while exchanging

More information

CA Technologies Strategy and Vision for Cloud Identity and Access Management

CA Technologies Strategy and Vision for Cloud Identity and Access Management WHITE PAPER CLOUD IDENTITY AND ACCESS MANAGEMENT CA TECHNOLOGIES STRATEGY AND VISION FEBRUARY 2013 CA Technologies Strategy and Vision for Cloud Identity and Access Management Sumner Blount Merritt Maxim

More information

Optimizing Service Levels in Public Cloud Deployments

Optimizing Service Levels in Public Cloud Deployments WHITE PAPER OCTOBER 2014 Optimizing Service Levels in Public Cloud Deployments Keys to Effective Service Management 2 WHITE PAPER: OPTIMIZING SERVICE LEVELS IN PUBLIC CLOUD DEPLOYMENTS ca.com Table of

More information

Delivering value to the business with IAM

Delivering value to the business with IAM Delivering value to the business with IAM IDM, 18 th June 2014 Colin Miles Chief Technology Officer, Pirean Copyright 2014 Pirean Limited. All rights reserved. Safe Harbor All statements other than statements

More information

Oracle Cloud: Line of Business PaaS Services. Balaji Yelamanchili Senior Vice President Product Development

Oracle Cloud: Line of Business PaaS Services. Balaji Yelamanchili Senior Vice President Product Development Oracle Cloud: Line of Business PaaS Services Balaji Yelamanchili Senior Vice President Product Development Safe Harbor Statement "Safe Harbor" Statement: Statements in this presentation relating to Oracle's

More information

Amazon Cloud Storage Options

Amazon Cloud Storage Options Amazon Cloud Storage Options Table of Contents 1. Overview of AWS Storage Options 02 2. Why you should use the AWS Storage 02 3. How to get Data into the AWS.03 4. Types of AWS Storage Options.03 5. Object

More information

Directory Integration with Okta. An Architectural Overview. Okta Inc. 301 Brannan Street San Francisco, CA 94107. info@okta.

Directory Integration with Okta. An Architectural Overview. Okta Inc. 301 Brannan Street San Francisco, CA 94107. info@okta. Directory Integration with Okta An Architectural Overview Okta Inc. 301 Brannan Street San Francisco, CA 94107 info@okta.com 1-888-722-7871 Contents 1 User Directories and the Cloud: An Overview 3 Okta

More information

SOLUTION BRIEF CA TECHNOLOGIES IDENTITY-CENTRIC SECURITY. How Can I Both Enable and Protect My Organization in the New Application Economy?

SOLUTION BRIEF CA TECHNOLOGIES IDENTITY-CENTRIC SECURITY. How Can I Both Enable and Protect My Organization in the New Application Economy? SOLUTION BRIEF CA TECHNOLOGIES IDENTITY-CENTRIC SECURITY How Can I Both Enable and Protect My Organization in the New Application Economy? CA Security solutions can help you enable and protect your business

More information

Identity and Access Management for the Cloud What You Need to Know About Managing Access to Your Clouds

Identity and Access Management for the Cloud What You Need to Know About Managing Access to Your Clouds Identity and Access Management for the Cloud What You Need to Know About Managing Access to Your Clouds Identity & Access Management One of the biggest challenges in information security is Identity and

More information

EXTENDING SINGLE SIGN-ON TO AMAZON WEB SERVICES

EXTENDING SINGLE SIGN-ON TO AMAZON WEB SERVICES pingidentity.com EXTENDING SINGLE SIGN-ON TO AMAZON WEB SERVICES Best practices for identity federation in AWS Table of Contents Executive Overview 3 Introduction: Identity and Access Management in Amazon

More information

Accenture Cloud Platform Unlocks Agility and Control

Accenture Cloud Platform Unlocks Agility and Control Accenture Cloud Platform Unlocks Agility and Control 2 Accenture Cloud Platform Unlocks Agility and Control The Accenture Cloud Platform is at the heart of today s leading-edge, enterprise cloud solutions.

More information

Identity. Provide. ...to Office 365 & Beyond

Identity. Provide. ...to Office 365 & Beyond Provide Identity...to Office 365 & Beyond Sponsored by shops around the world are increasingly turning to Office 365 Microsoft s cloud-based offering for email, instant messaging, and collaboration. A

More information

HIGH-SPEED BRIDGE TO CLOUD STORAGE

HIGH-SPEED BRIDGE TO CLOUD STORAGE HIGH-SPEED BRIDGE TO CLOUD STORAGE Addressing throughput bottlenecks with Signiant s SkyDrop 2 The heart of the Internet is a pulsing movement of data circulating among billions of devices worldwide between

More information

OpenSSO: Simplify Your Single-Sign-On Needs. Sang Shin Java Technology Architect Sun Microsystems, inc. javapassion.com

OpenSSO: Simplify Your Single-Sign-On Needs. Sang Shin Java Technology Architect Sun Microsystems, inc. javapassion.com OpenSSO: Simplify Your Single-Sign-On Needs Sang Shin Java Technology Architect Sun Microsystems, inc. javapassion.com 1 Agenda Enterprise security needs What is OpenSSO? OpenSSO features > > > > SSO and

More information

IBM MobileFirst Launch David Lee Heyman

IBM MobileFirst Launch David Lee Heyman IBM MobileFirst Launch David Lee Heyman WW Mobile Business Agility Tiger Team IBM's Mobile Enterprise - A personal journey Watch now: http://youtu.be/0sealyljfag Announcing: IBM MobileFirst 5 2013 IBM

More information

Learning GlassFish for Tomcat Users

Learning GlassFish for Tomcat Users Learning GlassFish for Tomcat Users White Paper February 2009 Abstract There is a direct connection between the Web container technology used by developers and the performance and agility of applications.

More information

Identity Management in Liferay Overview and Best Practices. Liferay Portal 6.0 EE

Identity Management in Liferay Overview and Best Practices. Liferay Portal 6.0 EE Identity Management in Liferay Overview and Best Practices Liferay Portal 6.0 EE Table of Contents Introduction... 1 IDENTITY MANAGEMENT HYGIENE... 1 Where Liferay Fits In... 2 How Liferay Authentication

More information

How Oracle MAF & Oracle Mobile Cloud can Accelerate Mobile App Development

How Oracle MAF & Oracle Mobile Cloud can Accelerate Mobile App Development How Oracle MAF & Oracle Mobile Cloud can Accelerate Mobile App Development A RapidValue Solutions Whitepaper Contents Executive Summary... 03 Oracle Mobile Application Framework (MAF): The Complete Development

More information

DirX Identity V8.4. Secure and flexible Password Management. Technical Data Sheet

DirX Identity V8.4. Secure and flexible Password Management. Technical Data Sheet Technical Data Sheet DirX Identity V8.4 Secure and flexible Password Management DirX Identity provides a comprehensive password management solution for enterprises and organizations. It delivers self-service

More information

SOLUTION BRIEF Citrix Cloud Solutions Citrix Cloud Solution for On-boarding

SOLUTION BRIEF Citrix Cloud Solutions Citrix Cloud Solution for On-boarding SOLUTION BRIEF Citrix Cloud Solutions Citrix Cloud Solution for On-boarding www.citrix.com Contents Introduction... 3 The On- boarding Problem Defined... 3 Considerations for Application On- boarding...

More information

Confidence in the Cloud Five Ways to Capitalize with Symantec

Confidence in the Cloud Five Ways to Capitalize with Symantec Five Ways to Capitalize with Symantec Solution Brief: Confidence in the Cloud Confidence in the Cloud Contents Overview...............................................................................................

More information

identity as the new perimeter: securely embracing cloud, mobile and social media agility made possible

identity as the new perimeter: securely embracing cloud, mobile and social media agility made possible identity as the new perimeter: securely embracing cloud, mobile and social media agility made possible IT transformation and evolving identities A number of technology trends, including cloud, mobility,

More information

SUPERVALU Successfully Leverages Tablet Technology and Identity and Access Management Infrastructure for Increased Security and Business Productivity

SUPERVALU Successfully Leverages Tablet Technology and Identity and Access Management Infrastructure for Increased Security and Business Productivity BUYER CASE STUDY SUPERVALU Successfully Leverages Tablet Technology and Identity and Access Management Infrastructure for Increased Security and Business Productivity Sally Hudson IDC OPINION Global Headquarters:

More information

An enterprise- grade cloud management platform that enables on- demand, self- service IT operating models for Global 2000 enterprises

An enterprise- grade cloud management platform that enables on- demand, self- service IT operating models for Global 2000 enterprises agility PLATFORM Product Whitepaper An enterprise- grade cloud management platform that enables on- demand, self- service IT operating models for Global 2000 enterprises ServiceMesh 233 Wilshire Blvd,

More information

Identity and Access Management Integration with PowerBroker. Providing Complete Visibility and Auditing of Identities

Identity and Access Management Integration with PowerBroker. Providing Complete Visibility and Auditing of Identities Identity and Access Management Integration with PowerBroker Providing Complete Visibility and Auditing of Identities Table of Contents Executive Summary... 3 Identity and Access Management... 4 BeyondTrust

More information

Federated Directory Services

Federated Directory Services Federated Directory Services for the connected enterprise Federated Directory Server helps overcome the challenge of distributed identity data, which is a significant hurdle to the deployment of new enterprise

More information

owncloud Architecture Overview

owncloud Architecture Overview owncloud Architecture Overview owncloud, Inc. 57 Bedford Street, Suite 102 Lexington, MA 02420 United States phone: +1 (877) 394-2030 www.owncloud.com/contact owncloud GmbH Schloßäckerstraße 26a 90443

More information

Simplify Identity Management with the CA Identity Suite

Simplify Identity Management with the CA Identity Suite SOLUTION BRIEF CA DATABASE IDENTITY SUITE MANAGEMENT IDENTITY FOR MANAGEMENT DB2 FOR z/os DRAFT Answer the cover question by stating how the solution can deliver the desired benefits; typically, technical

More information

How To Improve Your Communication With An Informatica Ultra Messaging Streaming Edition

How To Improve Your Communication With An Informatica Ultra Messaging Streaming Edition Messaging High Performance Peer-to-Peer Messaging Middleware brochure Can You Grow Your Business Without Growing Your Infrastructure? The speed and efficiency of your messaging middleware is often a limiting

More information

Top Eight Identity & Access Management Challenges with SaaS Applications. Okta White Paper

Top Eight Identity & Access Management Challenges with SaaS Applications. Okta White Paper Top Eight Identity & Access Management Challenges with SaaS Applications Okta White Paper Table of Contents The Importance of Identity for SaaS Applications... 2 1. End User Password Fatigue... 2 2. Failure-Prone

More information

Implementing Hybrid Cloud at Microsoft

Implementing Hybrid Cloud at Microsoft Implementing Hybrid Cloud at Microsoft Published September 2013 The following content may no longer reflect Microsoft s current position or infrastructure. This content should be viewed as reference documentation

More information

I D C T E C H N O L O G Y S P O T L I G H T

I D C T E C H N O L O G Y S P O T L I G H T I D C T E C H N O L O G Y S P O T L I G H T U n i fied Cloud Management Increases IT- as- a - S e r vi c e Ag i l i t y November 2013 Adapted from VMware Unifies Cloud Management Portfolio with a Focus

More information

How To Manage Your It From A Business Perspective

How To Manage Your It From A Business Perspective ORACLE ENTERPRISE MANAGER CLOUD CONTROL TRANSFORM ENTERPRISE IT THROUGH TOTAL CLOUD CONTROL Create self-service IT, simplify and automate IT operations, and deliver enterprise clouds that provide maximum

More information

Planning the Migration of Enterprise Applications to the Cloud

Planning the Migration of Enterprise Applications to the Cloud Planning the Migration of Enterprise Applications to the Cloud A Guide to Your Migration Options: Private and Public Clouds, Application Evaluation Criteria, and Application Migration Best Practices Introduction

More information

THE QUEST FOR A CLOUD INTEGRATION STRATEGY

THE QUEST FOR A CLOUD INTEGRATION STRATEGY THE QUEST FOR A CLOUD INTEGRATION STRATEGY ENTERPRISE INTEGRATION Historically, enterprise-wide integration and its countless business benefits have only been available to large companies due to the high

More information

PLATFORM-AS-A-SERVICE: ADOPTION, STRATEGY, PLANNING AND IMPLEMENTATION

PLATFORM-AS-A-SERVICE: ADOPTION, STRATEGY, PLANNING AND IMPLEMENTATION PLATFORM-AS-A-SERVICE: ADOPTION, STRATEGY, PLANNING AND IMPLEMENTATION White Paper May 2012 Abstract Whether enterprises choose to use private, public or hybrid clouds, the availability of a broad range

More information