Case Study: NTT DATA and JAL ONLINE Federate Business Travel Expense Reporting



Similar documents
Case Study: Bluewin Implements Liberty Alliance Specifications for Single Sign-On

EduTech Deploys Federated Identity for Maximum Impact

IDDY. Case Study: Rearden Commerce Delivers SaaS Via Federation WINNER

Guide to online booking and having tickets issued

Nationwide and Regional Health Information Networks and Federated Identity for Authentication and HIPAA Compliance

No Boundaries. Just GetThere. GetThere Travel and Collaboration Management. Travel. Meet. Network.

Case Study: Federated Telco Billing: The Next Wave in E-Commerce

DEVELOPMENT OF A SAFEGUARD MODEL FOR E-TICKETING ABSTRACT

Federated Identity in the Enterprise

Managing Trust in e-health with Federated Identity Management

HP Software as a Service. Federated SSO Guide

American Speech-Language-Hearing Association Travel Policies

Federated Identity Architectures

SAML Security Option White Paper

Who do I contact if I have issues with Concur Travel? The following support options are available to travelers regarding Concur Travel.

Privacy in Enterprise Identity Federation - Policies for Liberty Single Signon -

Identity opens the participation age. Dr. Rainer Eschrich. Program Manager Identity Management Sun Microsystems GmbH

Concur Travel and Expense Frequently Asked Questions

Dealer FAQ What is MyPriceLink? How do dealers gain access to MyPriceLink? What are the ways dealers can get MyPriceLink pricing?

Streamlining Identity Management

Case Study: SSO for All: SSOCircle Makes Single Sign-On Available to Everyone

Federated Identity Management Solutions

Internet ID - Flexible Re-use of Mobile Phone Authentication Security for Service Access

Network Identity. 1. Introduction. Kai Kang Helsinki University of Technology Networking Laboratory

TIB 2.0 Administration Functions Overview

T his feature is add-on service available to Enterprise accounts.

Why Identity Management. Identity Management. What We Cover. Role of Digital Identity. Digital Identity. Digital Identity (or network identity)

Identity Management im Liberty Alliance Project

The Air New Zealand American Express Platinum Card Benefits Terms and Conditions. Effective 1 June Realise the potential

Orbitz for Business Travel Arranger Guide. Release Date 01/24/14

Corporate Online Travel Solutions. by Thomas Cook (India) Ltd.

Ticket Process Outsourcing

The Primer: Nuts and Bolts of Federated Identity Management

SAP Travel Management with Amadeus. Sales & e-commerce

American Express Online (AXO) Reference Guide For Saint Louis University

New Generation of Liberty. for Enterprise. Fulup Ar Foll, Sun Microsystems

Great Neck Executive Office Center

TeamWorks Travel & Expense System. FAQ s

Secure the door to your business

AARP Medicare Supplement Program. Information Guide. Alabama Launch. 1 For internal use only

The Primer: Nuts and Bolts of Federated Identity Management

Revision Date: July 24, 2012 Page 1 of 8

TS Channels and Alliances. Travel & Expense Reimbursement Policy. for. U.S. Based Partners

TRIPwire HSIN Federation:

Travel Management System (TMS) FAQ s

USA SWIMMING TRAVEL POLICY SUMMARY

Travel and Expense Reimbursement FAQ s

TRAVEL POLICY MANUAL

AlwaysPass. Sector 5. Single Sign-On

This way, Bluewin will be able to offer single sign-on for service providers within the circle.

CHAPTER 4. o Hotel Results 15 CHAPTER 5. o Car Results: Matrix & Options 19. o Ground and Limo Service 21. o Trip Purchasing & Booking 23

GA Travel & Expense System. FAQ s

Vertafore Real-Time Connectivity Solutions for Carriers. Real Efficiencies. Real Benefits. Real Results.

AvMed s Physician-to- Physician Referral Program

Welcome to My NCL. Once you ve booked your cruise, log in to My NCL, and get ready for Freestyle Cruising, where you re free to... whatever.

Log-in made easy. MB Advantage Single Sign-On Now Available to DealerTrack.

Gateway Apps - Security Summary SECURITY SUMMARY

ipass Unlimited 1. Introduction 2. Challenges and Trends

ESMO Online event registration instructions Register someone else or few participants (1-9 persons)

MICROSOFT HIGHER SOLUTION

Simplify SSL Certificate Management Across the Enterprise

Scandinavian Airlines (SAS) Regulations of the SAS Credits Program

Prepare for a First Class Retirement

Protect your credit. Guard your identity. BENEFITS GUIDE

Identity Federation Management to make Operational and Business Efficiency through SSO

etravel Travel and Expense System Concur

Okta Identity Management for Portals Built on Salesforce.com. An Architecture Review. Okta Inc. 301 Brannan Street San Francisco, CA 94107

IMPLEMENTING SINGLE SIGN- ON USING SAML 2.0 ON JUNIPER NETWORKS MAG SERIES JUNOS PULSE GATEWAYS

You will not accrue miles or points if the vendors do not have this information. Please contact each vendor to make any changes.

MED-VIEW AIRLINE BOOKING POLICIES AND PROCEDURES FOR TRAVEL AGENTS

Security in the PEPPOL

Services Travel and Expense Policy. Services. September 13, 13. Hortonworks, Inc. Travel and Expense Policy v1.0 Page 1 of 15

Amadeus Value-added Solutions. I need. to take my business higher. Talk to Amadeus

Your guide to updates and next steps for non-rev travel

LIBERTY ALLIANCE. Case Study: Aetna Enhances Secure Provider Portal with SSO and SAML 2.0. The Company. Key Objectives

BUSINESS ONLINE BANKING QUICK GUIDE For Company System Administrators

Concur Travel & Expense Frequently Asked Questions

Owner s project control review Baker Tilly Virchow Krause, LLP

E D M O N T O N ADMINISTRATIVE PROCEDURE

Qualified Transportation Expense Benefit Plan. Featuring etrac Card Technology

Frequently Asked Questions (FAQ s)

Update on Identity Management Initiatives: What Are Institutions, Agencies and Federations Doing?

QUICK GUIDE. How to Select an Effective Mobile Workforce Management Solution. How to Select an Effective Mobile Workforce Management Solution

National Travel Associates

Concur Travel Frequently Asked Questions

Answers to Client questions about Online Services and Statement delivery.

Addition of New Premium Cards to the Suite of ANA and Diners Club Co-branded Cards

Liberty Alliance. CSRF Review. .NET Passport Review. Kerberos Review. CPSC 328 Spring 2009

airberlin business benefits

MILES-TO-GO sm PROGRAM RULES Welcome to the ToGoAway Travel Network Miles-To-Go sm Frequent Traveler Program WELCOME

Getting Started with the Sitecore App Center

Business-to-Business EIPP: Presentment Models, Part 1 By: The Council for Electronic Billing and Payment

IDDY. Case Study: ConAgra Deploys SSO for Travel Planning

Eva N. Santos Communication Award Nomination. Get Healthy Program. Pennsylvania Employees Benefit Trust Fund. Commonwealth of Pennsylvania

Integrating F5 Application Delivery Solutions with VMware View 4.5

NetSuite Certification FAQs April 2016

Masdar Institute Single Sign-On: Standards-based Identity Federation. John Mikhael ICT Department

GLOBAL ENTRY. on-site enrollment handbook

Traveler Frequently Asked Questions

Transcription:

Case Study: and JAL ONLINE Federate Business Travel Expense Reporting Company is one of Japan s preeminent systems integration companies with a reputation for innovation and technology excellence. traces its corporate roots to 967 when it was the data communications bureau within Nippon Telegraph and Telephone Public Corporation (present day NTT). Application BB Challenge With more than 7,500 employees, was looking for a way to improve the efficiency of their travel expense reporting lifecycle from report submission to reimbursement. They sought to: Access accurate and detailed statistics of expenses in order to better understand and lower costs Better manage employees itineraries Improve employee service through online reservation and ticketing In order to seamlessly integrate a valuable commercial service like JAL ONLINE with corporate internal business processes, we noticed it was critical to federate different identities on two different systems - the service provider and the user company. Liberty Alliance s specification the was best working solution for this challenge. Mr. Naoya Saito Project Manager of Corporation Provide a means of cashless reimbursement Reduce costs through e-ticketing and discount offers Solution decided to adopt JAL ONLINE, a BB services solution provided by Japan Airlines, the largest airline in Japan. JAL ONLINE provides ticketing, scheduling, and other services to domestic businesses. JAL ONLINE was introduced in 999 and is currently has more than,500 companies as their customers. At the time, JAL ONLINE was looking at application service providers as a way to better serve customers., on their end, was working to improve the efficiency of the travel expense reporting lifecycle. Because both companies have different identity mechanisms such as mileage service account numbers (JAL) and employee identification numbers (), they agreed that federated identity was an ideal solution to meet their individual needs and manage identities between organizations. Additionally, the new solution easily scales for other organizations seeking federation. This is one of the key reasons the Liberty specification was adopted by JAL ONLINE as standard technology.

The Issues Around Federating Two Different Systems Today, seamlessly federates its corporate authentication systems with JAL ONLINE. Key challenges included: Establishing that specific applications spoke only to other specific applications. For example, ran business travel expense reporting on their internal corporate system and they wanted this particular application and nothing else to talk with JAL ONLINE. Insuring that no changes could be made on s corporate authentication system. Creating a way for s business travel expense reporting application to work easily with both s and JAL ONLINE s individual user authentication systems. Establishing security to federate both systems. Diagram. How it Works Auto-Checkin AIRPORT AIRLINE 4 Monthly Invoice from JAL CREDIT CARD COMPANY 3 Auto-Checkin Corporate Card Boarding Pass Business Travel by Air Traveling Travel Planning Starts 5 Calculate Expenses and Reimbursement Referring to the Credit Card Statement Credit Card Transaction Data Reservation by E-Ticketing System Data of CrDetails of Expense Report System edit Card Use Expense Report Approval - - Itinerary Justifications - System Code Definition of Terms Identity (n). The most basic element in a high value relationship.. The individual characteristics by which a person, business, business partner, government agency or other entity is recognized or known. Single sign-on (n). having the capability of accessing an online system once and having that authentication honored by other system entities, often service providers. Identity Provider (IdP) (n). a service that authenticates identity, often a trusted party such as a bank, mobile operator or an Internet Service Provider (ISP). Federation (n). an association comprising of any number of service providers or organizations. a model based upon trust in which user identities and security are individually managed and distributed by the service providers or member organizations. 3. where the individual organization is responsible for vouching for the identity of its own users and the users are able to transparently interact with other trusted partners based on this first authentication 4. resembles the credit card model in that vendors accept an individual s ability to pay and then that ability is authenticated/verified through a single location. Circle of Trust (n). a trusted group of identity and service providers who share linked identities and have pertinent agreements in place regarding how to do business and interact with identity providers. where an individual or a business inputs a password once and credentials are shared among the circle of trust s members 3. A step strongly linked to federation, where multiple entities are involved, and there are business, policy and technical relationships in place.

Diagram. JAL ONLINE Seamless Login Login to NTT DATA Corporate System Travel Expense Report System Single Sign-on to JAL ONLINE Membership application only for first time to use JAL ONLINE 3 Single Sign-on in Action The Liberty Alliance s ID FF. was adopted to enable single sign-on and seamless integration. Today, when an employee wants to log into JAL ONLINE for the first time, that employee is asked to apply for the JAL ONLINE membership as part of for identity federation. After the application is accepted and authenticated on s end, that employee can seamlessly log into JAL ONLINE. In this environment, PKI and use of digital certificates provides additional security for both organizations. s corporate system can process the transactions via Web services without knowing the frequent travel numbers assigned to each employee, while JAL ONLINE can work with s corporate system without knowing each employee s formal ID. Additionally, real-time reservation information reference and business travel plan itineraries are available via JAL ONLINE. This service fetches reservation information on JAL ONLINE and sends it to the travel expense report system via a SOAP to link within the respective business travel request. The Web service infrastructure behind the federation is not Liberty s ID-WSF specification. When JAL ONLINE started implementing federation, Liberty s ID-WSF was still in the works. But ID-FF, the federation specifications, are designed to work with all Web services systems, one of the benefits of open standards. So JAL ONLINE and NTT DATA went ahead with the Web services portion of the project.

Diagram 3. How ID-FF v. and Web Federation Work IdP ID Business Travel Request NI Information Exchange Between Web Services LA Protocol Web Service 3 LOGIN Trust Relationship Single Sign-On LOGIN (Federation) JAL ONLINE Login Federation SP NI JMB# Reservation Information The Benefits to s For employees at, the benefits associated with establishing a federated identity solution are considerable. Travel plans and reservations can be made 4/7 from cellular phones, PDAs, computers and other devices--- and frequent flier miles and other bonus points are added directly to the employee s personal account. On the ground, e-ticketing and automatic check in have eliminated long lines and streamlined the boarding process. Credit statements now include all flight information making it easier create expense reports. In addition, is only billed when an employee actually boards a flight. This means that an NTT DATA employee can reserve seats for a couple of flights (4PM, 6PM), board the one which is most convenient and then only be billed for that particular flight. The Benefits to can now use JAL ONLINE s exclusive discount plan to reduce total travel cost. They can apply monthly reimbursements to employees for flights actually boarded. Additionally, by using JAL ONLINE, fees are saved because there s no extra charge for reservation changes or last minute cancellations. In this new environment, additional cost savings have been realized by improved operations: Day-to-day management of mapping employee IDs to their mileage number has been eliminated No special arrangements are required when each system either s corporate system or JAL ONLINE--performs maintenance or makes a password change. Increased system availability Security is also improved: PKI secures login Web services on s corporate system and JAL ONLINE are federating without accessing confidential ID information Scalability is supported: Possible feature enhancements include Liberty ID-WSF

About the Liberty Alliance The Liberty Alliance (www.projectliberty.org) is an alliance of more than 50 companies, non-profit and government organizations from around the globe. The consortium is committed to developing an open standard for federated network identity that supports all current and emerging network devices. Federated identity offers businesses, governments, employees and consumers a more convenient and secure way to control identity information in today s digital economy, and is a key component in driving the use of e-commerce, personalized data services, as well as web-based services. Membership is open to all commercial and noncommercial organizations. Email: info@projectliberty.org Telephone: + (73) 465-6475 (8:30am-5:00pm EST ) Facsimile: + (443) 647-0099