Modernize IAM with a Web Scale LDAP Directory Server with Nathanael Coffing, Co- founder of Syntegrity Copyright 2015 UnboundID, Inc.
Today s Speakers Terry Sigle Dir. of SoluEons Engineering, UnboundID Copyright 2015 UnboundID, Inc. Nathanael Coffing Co- Founder, Syntegrity
Typical Enterprise IT challenges today 1 Diverse range of new, 2 modern apps being added + + + + + Partners New Employee App New Partner App New Mobile App New SaaS 3 Move to virtualized 4 infrastructure or cloud Increasing demand for scale and reliability + ReLrees Require HA 99.999% Relentless Pressure to Contain IT Costs and Improve Security Private Hybrid Public $$ Copyright 2015 UnboundID, Inc. 3
Weak Link? Legacy IAM systems and 1990 s LDAP IT OperaLons: I need to upgrade my legacy IAM systems Outages Poor performance Can t support new apps End Users Internal App Partner App Internal App 2 SaaS Costly maintenance? Difficult to manage mul9ple silos Inadequate security No virtualiza9on or cloud support Legacy Dir Servers Legacy Dir Server Copyright 2015 UnboundID, Inc.
Reasons why: Brief LDAP Directory Server history ODSEE 11g Novell DSEE 5.2 DSEE 6.3 1995-2005 Period of investment and innovation 2006-Present Innovation stops, replaced by patch and fix strategy Copyright 2015 UnboundID, Inc.
UnboundID was founded in 2007 Company founder are pioneers in idenety management with leadership posieons at Netscape, Sun, and Oracle. UnboundID has developed a next- generaeon idenety and preference management plasorm Customers use UnboundID to modernize IdenEty and Access Management and enable new, customer- facing digital business strategies 100% customer renewal rate and more than 1 billion idenlles deployed with some of the world s most influeneal brands CUSTOMER EXAMPLES PARTNERS Copyright 2015 UnboundID, Inc. 6
Designed to address a changing IAM market Workforce Enablement Customer Engagement Partners Mobile Workers BYOD Contractors Mobile Social & Web Cloud & SaaS IoT Systems of Engagement Data Store Data Sync Metrics Engine Data Broker Secure Scalable Unified Adaptable UNIFIED VIEW MarkeLng AutomaLon Loyalty Programs Dynamic Pricing MDM CRM Big Data Legacy Directory Systems of Record Copyright 2015 UnboundID, Inc. 7
UnboundID Pla]orm Iden9ty and Preference Management at web scale Secure Scalable Unified Adaptable PlaSorm Modules Data Store Securely store and deliver idenety and preference data at web scale for billions of ideneees and a\ributes Data Sync Bi- direceonally synch massive volumes of data between systems of record in real- Eme to create unified customer views Metrics Engine Monitor real- Eme operaeonal metrics to ensure SLA compliance and gain visibility into idenety and preference data trends Data Broker High- speed, high- volume data delivery via REST API and governed with centralized policy controls Copyright 2015 UnboundID, Inc. 8
UnboundID Data Store Securely store and deliver iden2ty and preference data at web scale Extreme Scale and Performance Performance opemized through memory caching, self tuning, and horizontal scaling Migrate Costly, Poor Performing Legacy LDAP Web scale performance and high availability Enterprise-grade security Adaptable/VersaEle Store rich user profiles, preferences, opt- in/ out seleceons, privacy direceves and more Deploy on premise, virtualized, or in cloud Services exposed via REST APIs 2.5 billion daily transac9ons, sub- millisecond latency and 99.999998% availability Large U.S. wireless telco provider At last iphone launch, we peaked at 30-40x regular traffic. Since using UnboundID, we have had no issues. - Telco Customer Copyright 2015 UnboundID, Inc. 9
UnboundID Data Sync Data Mapping and Sync Unify, synchronize, and migrate massive volumes of data between disparate systems Connect to disparate data stores Sync/migrate from Oracle, MS AcEve Directory, and more Use for one- Eme migraeons or ongoing synchronizaeon Transform and map a\ributes between data stores Bi- DirecEonal SynchronizaEon Support massive data volumes at high speed Real- Eme or scheduled UNIFIED VIEW MDM CRM Big Data Legacy Directory We feel the UnboundID s Data Sync is the best product for migra9ng data from one Oracle system to another. - EU bank customer We were able to migrate 258 million entries in 13 minutes. - U.S. wireless telco Copyright 2015 UnboundID, Inc. 10
UnboundID Metrics Engine Visibility into opera2onal performance, iden2ty/ preference trends, and service level agreements Sense and Respond to Customer SenEment - Opt- in/op- out trends - Policy enforcement Customized dashboards with visibility into Real- Time OperaEonal Performance Capacity usage, resource loads, historical trends Push to standard monitoring tools REST API for idenety analyecs integraeon Secure Scalable Unified Adaptable Copyright 2015 UnboundID, Inc. 11
UnboundID benefits for IAM modernizalon 25%- 90% reduclon in TCO compared with legacy IAM Industry leading scale, performance and reliability Support modern apps (SCIM, OAuth2, OpenID Connect) Seamless data migralon without disruplng exislng apps Consolidate data silos or provide real- Lme bi- direclonal sync Deploy to virtualized infrastructure and/or cloud Adaptable security framework with encryplon at all stages Provide real- Lme operalonal visibility What our customers say: There has never been an service- level outage in our UnboundID deployments across 530M entries going back to 2009. - Telco Customer 500+ million entries, 250k concurrent users, deployed on VMware and zero down Eme. SP500 Sogware Co. Rock solid performance and availability to over 1000 legacy applicaeons. Global Aerospace Firm 5x Performance & ½ server footprint - Fortune 50 mulenaeonal bank Copyright 2015 UnboundID, Inc. 12
Today s Speakers Terry Sigle Dir. of SoluEons Engineering, UnboundID Copyright 2015 UnboundID, Inc. Nathanael Coffing Co- Founder Syntegrity
Closing the Security Gaps Too many demands for too few staff IT staff deploy-and-support overload Increasing pressure to improve time-to-market and business agility Patchwork approach and siloed security technologies makes organizations vulnerable
OrchIS: Automate UnboundID Platform deployment Simplified Drag and Drop IAM Security Architecture Automated setup/deployments in minutes with reusable architecture blueprints Flexible UI to design, adapt and implement security component architectures Cross platform policywriting and auditing Automation of security policies and configuration for applications
OrchIS: Deploy/migrate to major Cloud Providers Design Once, Deploy Anywhere Support for most major cloud providers and DevOps platforms Compress components into less complex environments (single box Dev instance) Ensure configurations match between Dev/QA/Prod Load balancer support Dynamically add servers to increase scale
OrchIS: Automated Security Configuration Automate Security Macro Policy Definition at the Application Tier WAF Policy APT Policy AM Policy Password Policy Automated Micro Policies for Security Services Cross platform policywriting and auditing Available for Cloud Apps Leverages existing infrastructure Remedy/ServiceNow Integration Simplifies application integration and updates
Q&A Email: info@unboundid.com Phone: +1-512- 600-7777 Blog: www.unboundid.com/blog TwiDer: twi\er.com/unboundid Copyright 2015 UnboundID, Inc. 18