aaps algacom Account Provisioning System



Similar documents
Novell to Microsoft Conversion: Identity Management Design & Plan

This module explains the Microsoft Dynamics NAV architecture and its core components.

Lepide Active Directory Self Service. Configuration Guide. Follow the simple steps given in this document to start working with

Active Directory Self-Service FAQ

Password Reset PRO INSTALLATION GUIDE

Installation and Configuration in Microsoft Dynamics NAV 2013

Specops Command. Installation Guide

Password Management Buyer s Guide. FastPass Password Manager V 3.3 Enterprise & Service Provider Editions

FOREFRONT IDENTITY MANAGEMENT

Enterprise Self Service Quick start Guide

ManageEngine ADSelfService Plus. Evaluator s Guide

PassTest. Bessere Qualität, bessere Dienstleistungen!

WebLink 3 rd Party Integration Guide

Role Based Identity and Access Management Basic Infrastructure for New Citizen Services and Lean Internal Administration

Sisense. Product Highlights.

DIRECTORY PASSWORD V1.2 Quick Start Guide

NetWrix USB Blocker Version 3.6 Quick Start Guide

Password Reset PRO. Quick Setup Guide for Single Server or Two-Tier Installation

OracleAS Identity Management Solving Real World Problems

Avaya Mailbox Manager and Unimax 2nd Nature A Comparison

Training module 2 Installing VMware View

MICROSOFT BITLOCKER ADMINISTRATION AND MONITORING (MBAM)

For each requirement, the Bidder should indicate which level of support pertains to the requirement by entering 1, 2, or 3 in the appropriate box.

E-Commerce. Version CDM SOFTWARE PART A3

Contents 1. Introduction 2. Security Considerations 3. Installation 4. Configuration 5. Uninstallation 6. Automated Bulk Enrollment 7.

Infrastructure security Active Directory and beyond.

Course 50382A: Implementing Forefront Identity Manager 2010 OVERVIEW

Active Directory Self-Service Bundle

HELP DOCUMENTATION UMRA USER GUIDE

NetWrix USB Blocker. Version 3.6 Administrator Guide

DiskBoss. File & Disk Manager. Version 2.0. Dec Flexense Ltd. info@flexense.com. File Integrity Monitor

DiskPulse DISK CHANGE MONITOR

Softerra Adaxes Enterprise Directory Solution

Security and Rights Delegations for the Password Reset PRO Master Service Applies to software versions 2.x.x and 3.x.x

CL_50382 Implementing Forefront Identity Manager 2010

Aurora Hosted Services Hosted AD, Identity Management & ADFS

Oracle Access Manager. An Oracle White Paper

Installation procedure for Chromis REC for 3CX

Page 1. Overview of System Architecture

Z-Term V4 Administration Guide

Software Development Kit

Server-based Password Synchronization: Managing Multiple Passwords

Active Directory Manager Pro Quick start Guide

Oracle WebLogic Foundation of Oracle Fusion Middleware. Lawrence Manickam Toyork Systems Inc

ADSelfService Plus Client Software Installation Guide

Sugar Professional. Approvals Competitor tracking Territory management Third-party sales methodologies

Citrix Password Manager Using the Account Self-Service Feature. Citrix Password Manager 4.6 with Service Pack 1 Citrix XenApp 5.0, Platinum Edition

This document is provided to you by ABC E BUSINESS, Microsoft Dynamics Preferred partner. System Requirements NAV 2016

Password Policy Enforcer

P-Synch by M-Tech Information Technology, Inc. ID-Synch by M-Tech Information Technology, Inc.

5 Challenges in Active Directory Management and How to Manage Them

System Requirements for Microsoft Dynamics NAV 2016

DirX Identity V8.5. Secure and flexible Password Management. Technical Data Sheet

Active Directory Reporter Quick start Guide

LEPIDEAUDITOR SUITE- DATASHEET

Windows Password Change Scenarios

Sugar Professional. Approvals Competitor tracking Territory management Third-party sales methodologies

Sophos SafeGuard Native Device Encryption for Mac Administrator help. Product version: 7

NetIQ Directory and Resource Administrator NetIQ Exchange Administrator. Installation Guide

Cloud Identity Management Tool Quick Start Guide

vtiger Customer Portal 4.2 User Manual

All included databases will be scanned automatically just by a single search and information is available to users immediately.

Stellar Active Directory Manager

ManageEngine ADManager Plus

Session Code*: 0310 Demystifying Authentication and SSO Options in Business Intelligence. Greg Wcislo

INSTALLING MICROSOFT SQL SERVER AND CONFIGURING REPORTING SERVICES

BMC Remedy Action Request System Integration Guide

Securing your business

Managing and Maintaining a Windows Server 2003 Network Environment

Administering Windows Server 2012

September 9 11, 2013 Anaheim, California 507 Demystifying Authentication and SSO Options in Business Intelligence

itop: the open-source ITSM solution

Avatier Identity Management Suite

Server Software Installation Guide

Manager 2010 R2 Handbook

CONFIGURING MICROSOFT SQL SERVER REPORTING SERVICES

Forefront Identity Manager 2010

HP OneView Administration H4C04S

Symantec Enterprise Vault.cloud Overview

Getting Started with HC SharePoint Module

MS 50255B: Managing Windows Environments with Group Policy (4 Days)

Portal for ArcGIS. Satish Sankaran Robert Kircher

System Requirements for Microsoft Dynamics NAV 2016

Documentation. CloudAnywhere. Page 1

NetWrix Account Lockout Examiner Version 4.0 Administrator Guide

MicroStrategy Course Catalog

How to leverage SAP NetWeaver Identity Management and SAP Access Control combined solutions

Choosing an SSO Solution Ten Smart Questions

CloudPortal Services Manager Version 11.0 CU2 Deployment Guide

NETWRIX ACCOUNT LOCKOUT EXAMINER

NetIQ Group Policy Administrator User Guide

CUSTOMER SAP Afaria Overview

ORACLE DATABASE SECURITY. Keywords: data security, password administration, Oracle HTTP Server, OracleAS, access control.

Implementing Microsoft Azure Infrastructure Solutions

Transcription:

aaps algacom Account Provisioning System Simple web interface, data integrity checks and customizable policies allow account administration without specific skills Account provisioning against Active Directory / Exchange 20xx, and flat files Product Features Large companies typically need to maintain accounts in distributed and heterogeneous environments. Different systems are operated in different locations. In these environments aaps guarantees that: Accounts may be managed by registration desks using a consistent and user friendly interface Centralized account management provides de-centralized provisioning Accounts are created according to specific company policies Orphaned accounts without well known owners may be identified at any time E-mail addresses and usernames always remain unique. Every single action performed on the accounts is tracked for auditing aaps is composed of different stand-alone modules, based on the user management module. Multiple distributed registration desks maintain their groups of users Rights and roles definable per registration desk Inconsistency checks report orphaned accounts and increase system security History reports document all committed actions algacom AG Rüchligweg 101 CH-4125 Riehen +41 61 603 8181

Flexibility, Interoperability, Performance aaps Architecture aaps is built with Microsoft technology. A three tier architecture is used: The presentation layer generates the HTML code which is sent to the account administrator s browser - IIS 6.0 or higher is used as a web server The business layer, provided by a set of configuration, makes sure that all required policies are followed and that only allowed operations are performed. The data layer incorporates SQL server 2005 and a data model optimized for account management. The data model requires a subject entry to be associated with each account entry. The subject entry typically stores a person s base attributes (name, location, a.o.). Once a subject is registered, several accounts may be assigned. The aaps provisioning agents make sure that the account information is delivered to the target system. aaps Architecture # ##$ % " # %$ & & ' (!"!

System Integration Capabilities aaps Portal The aaps product is a customizable, harmonized and easy to use web portal. It offers several applications which help you manage the accounts and enforce corporate account standards. A set of plug-ins and XML based configuration allows the aaps product to be very flexible allowing configurable layout and definition of new fields, rules and validation in order to meet the customer needs. It implements the presentation layer (web interface), the business layer (logic, security, configuration interface) and the data layer (data model, database independent - SQL Server 2005 out of the box). The Web GUI allows user friendly administration aaps Portal The Powershell Scripting Interface allows massive operation

Feeder HelpDesk & SelfService Groups History Tasks Base Provisioning Intelligent listboxes consider appropriate values and user rights Configurable search fields, field positions and labels aaps Base The aaps Base handles Active Directory and Exchange management out of the box. The integration of additional platform systems is easy to achieve. The web interface allow configurable pages to match the customer requirements and needs (adding new fields, modifying the layout and the position of the fields, adding/updating the business rules validation,, hiding unused fields...). The changes are effective without any restart of the application. Configurable support for mailbox size management Native support for e-mail address aliases aaps Provisioning Agent The provisioning agents deliver the required account information to the target systems. If a subject is associated with an account or if an existing account is modified, the information required on the target system is written into an event table. The multi-threaded provisioning agents read the events table and perform the appropriate action on the target system. There must be one provisioning agent instance per target system (Active Directory Forest, Exchange 200x Organization, DOMINO Domain, a.o.). Dynamic plug-ins can be used for specific provisioning tasks (creation of home directory,...)

Groups History Tasks Base Provisioning HelpDesk & SelfService Groups History Tasks Feeder HelpDesk & SelfService aaps Group Management The aaps Group Management includes builtin functionality for Active Directory security groups, E-mail Distribution lists (DOMINO, Exchange) and Dynamic Groups. Custom validation rules and naming convention enforcement may be applied. aaps History The History tracking is fully integrated to the base technology. aaps takes care of every single modification occuring on any managed data. A web interface is provided to view the complete audit trail. aaps Custom Tasks aaps is built to allow additional tasks to be set up and integrated to aaps without complex effort thanks to the aaps API.

Feeder HelpDesk & SelfService Groups History Tasks Base Provisioning aaps Data Feeder The aaps Data Feeder is a dynamic and flexible scripting interface. Pre defined Powershell commands may be used to perform massive creations or modifications. In addition, an HR Feeder is available, which allows synchronization of managed data between an HR source and the aaps database. The field mapping rules can easily be defined using an XML configuration file. Field authority rules may be defined in order to prevent modification of HR data by aaps administrators. aaps Helpdesk The aaps Helpdesk allows the aaps administrator with sufficient rights to reset passwords and unlock user accounts. aaps Self Service The aaps Self Service allows end users to update their own information such as Telephone Number, postal address, but also to unlock their account or reset their password. A sequence of custom questions is asked in order to identify the user.

aaps System Requirements aaps System Requirements & Licensing aaps Portal 2 processors (recommended.) 1 GB ram (min.) Windows 2003/2008 Server R2 Microsoft SQL Server 2005 Microsoft Internet Information Server 6.0/7.0 aaps Provisioning Agent 2 processors (recommended.) 1 GB ram (min.) Windows 2003/2008 Server R2 aaps Licensing An aaps licensing fee is applied for every active account and charged on a yearly base. There is no one time licensing cost. The unit cost is driven by two parameters: Initial Contract duration Number of active accounts. algacom AG Rüchligweg 101 CH-4125 Riehen +41 61 603 8181