Protect Everything: Networks, Applications and Cloud Services



Similar documents
How To Make A Multi-Tenant Platform Secure And Secure

Profiting from SafeNet Authentication Service Offerings

Entrust IdentityGuard Comprehensive

Service Provider Administrator Guide

SAML Authentication Quick Start Guide

SafeNet Authentication Service

SafeNet Authentication Service Security Considerations

Integration Guide. SafeNet Authentication Service. Using SAS as an Identity Provider for Salesforce

WHITEPAPER. SECUREAUTH 2-FACTOR AS A SERVICE 2FaaS

300% increase 280 MILLION 65% re-use passwords $22 per helpdesk call Passwords can no longer protect you

SalesForce SSO with Active Directory Federated Services (ADFS) v2.0 Authenticating Users Using SecurAccess Server by SecurEnvoy

The PortalGuard All-In-One Authentication Solution-set: A Comparison Guide of Two-Factor Capabilities vs. the Competition

3Si Managed Authentication Services Service Description

Integration Guide. SafeNet Authentication Service. Using SAS as an Identity Provider for Tableau Server

SafeNet Authentication Service

PortWise Access Management Suite

BlackShield ID Best Practice

External authentication with Astaro AG Astaro Security Gateway UTM appliances Authenticating Users Using SecurAccess Server by SecurEnvoy

TrustedX - PKI Authentication. Whitepaper

Centrify Cloud Connector Deployment Guide

The increasing popularity of mobile devices is rapidly changing how and where we

DIGIPASS as a Service. Google Apps Integration

STRONGER AUTHENTICATION for CA SiteMinder

nexus Hybrid Access Gateway

Cisco ASA Authentication QUICKStart Guide

ipad or iphone with Junos Pulse and Juniper SSL VPN appliance Authenticating Users Using SecurAccess Server by SecurEnvoy

UDiMan. Introduction. Benefits: Name: UDiMan Identity Management service. Service Type: Software as a Service (SaaS Lot 3)

Easy as 1-2-3: The Steps to XE. Mark Hoye Services Portfolio Consultant

SafeWord 2008 Customer Release Notes

Welcome Guide for MP-1 Token for Microsoft Windows

External Authentication with Juniper SSL VPN appliance Authenticating Users Using SecurAccess Server by SecurEnvoy

OracleAS Identity Management Solving Real World Problems

PortWise Access Management Suite

Juniper SSL VPN Authentication QUICKStart Guide

Building Secure Applications. James Tedrick

HP Software as a Service. Federated SSO Guide

Implementing Microsoft Azure Infrastructure Solutions

Flexible Identity Federation

Entrust Secure Web Portal Solution. Livio Merlo Security Consultant September 25th, 2003

Proposal Document TitleDocument Version 1.0 TitleDocument

SAML Security Option White Paper

Configuring and Deploying a Private Cloud. Day(s): 5. Overview

Implementing Microsoft Azure Infrastructure Solutions

Development Proposal. Company Name Pty Ltd

ADDING STRONGER AUTHENTICATION for VPN Access Control

Introducing MachPanel v.5

External Authentication with Citrix Secure Gateway - Presentation server Authenticating Users Using SecurAccess Server by SecurEnvoy

Understanding Enterprise Cloud Governance

Identity in the Cloud

Automating User Management and Single Sign-on for Salesforce.com OKTA WHITE PAPER. Okta Inc nd Street Suite 350 San Francisco CA, 94107

2012 European Cloud-Based Authentication Services New Product Innovation Award

INTEGRATION GUIDE. DIGIPASS Authentication for Salesforce using IDENTIKEY Federation Server

AirWatch Solution Overview

The governance IT needs Easy user adoption Trusted Managed File Transfer solutions

INTEGRATION GUIDE. DIGIPASS Authentication for Google Apps using IDENTIKEY Federation Server

An Overview of Samsung KNOX Active Directory-based Single Sign-On

See Appendix A for the complete definition which includes the five essential characteristics, three service models, and four deployment models.

Ensuring the Security of Your Company s Data & Identities. a best practices guide

CA Adapter. Installation and Configuration Guide for Windows. r2.2.9

SaaS at Pfizer. Challenges, Solutions, Recommendations. Worldwide Business Technology

OneLogin Integration User Guide

How To Integrate Watchguard Xtm With Secur Access With Watchguard And Safepower 2Factor Authentication On A Watchguard 2T (V2) On A 2Tv 2Tm (V1.2) With A 2F

FortiAuthenticator. User Authentication and Identity Management. Last Updated: 17 th April Copyright Fortinet Inc. All rights reserved.

Configuring. SugarCRM. Chapter 121

NCSU SSO. Case Study

Installation Guide. SafeNet Authentication Service

External Authentication with Windows 2003 Server with Routing and Remote Access service Authenticating Users Using SecurAccess Server by SecurEnvoy

Defender Token Deployment System Quick Start Guide

Microsoft Office365 with Active Directory Federated Services (ADFS) Authenticating Users Using SecurAccess Server by SecurEnvoy

Securing the Cloud through Comprehensive Identity Management Solution

Configuring Single Sign-on from the VMware Identity Manager Service to AirWatch Applications

Oracle Access Manager. An Oracle White Paper

HOL9449 Access Management: Secure web, mobile and cloud access

Owner of the content within this article is Written by Marc Grote

Integration Guide. SafeNet Authentication Service. SAS Using RADIUS Protocol with Microsoft DirectAccess

The Cloud, Mobile and BYOD Security Opportunity with SurePassID

Bill Fiddes Learning and Development Specialist Rob Latino Program Manager in Office 365 Support

Configuring Salesforce

Agenda. How to configure

Samsung KNOX EMM Authentication Services. SDK Quick Start Guide

Total Cost of Ownership Overview ADFS vs OneLogin WHITEPAPER

SAM Context-Based Authentication Using Juniper SA Integration Guide

White Paper. Getting ahead in the cloud. the need for better identity and access controls

Securing Endpoint Data While Enabling the Mobile Workforce

owncloud Architecture Overview

REDCENTRIC MANAGED EXCHANGE SERVICE SERVICE DEFINITION

The Top 5 Federated Single Sign-On Scenarios

Configuring and Deploying a Private Cloud

Two-Factor Authentication

How To Manage A Plethora Of Identities In A Cloud System (Saas)

MS 20247C Configuring and Deploying a Private Cloud

F5 BIG-IP: Configuring v11 Access Policy Manager APM

CTERA Enterprise File Services Platform Architecture for HP Helion Content Depot

Course Outline: 6436 _ Designing a Windows Server 2008 Active Directory Infrastructure and Services Learning Method: Instructor-led Classroom Learning

Securing WebFOCUS A Primer. Bob Hoffman Information Builders

Ensuring Enterprise Data Security with Secure Mobile File Sharing.

HOTPin Integration Guide: Google Apps with Active Directory Federated Services

Technical Proposition. Security

Integrating Single Sign-on Across the Cloud By David Strom

External Authentication with Citrix Access Gateway Advanced Edition

Transcription:

Protect Everything: Networks, Applications and Cloud Services Tokens & Users Cloud Applications Private Networks Corporate Network API LDAP / Active Directory SAML RADIUS Corporate Network LDAP / Active Directory Agent Cloud Services SAML SAML Corporate Network LDAP / Active Directory Application Hosting Corporate Network Online Storage Administrator LDAP / Active Directory Disaster Recovery 1

Core Components Overview Ready to go international cloud-based infrastructure Multi-tenant capability Uses existing access devices Browser based portal access Multi-tier management Extensive feature set Automated deployments Rapid integration Detailed reporting Administrator Subscriber Companies Access Device Administrator Access Device Service Provider User Authentication Tokens & Users SafeNet Confidential and Proprietary 2

Deploy Service in Minutes Subscriber Company Administrator 3 2 Access Device Applications Active Directory 4 5 Step Step Step 1 2 3 Create Service Provider Create Customer Customer Administrator Step 4 Configure Access Device Step 5 Link Active Directory Step 6 Assign MP Tokens Step 7 Distribute hard tokens 6 7 Service Provider Tokens & Users 1 SafeNet Confidential and Proprietary 3

Service Provider Model Support for unlimited levels Allows centralised procurement, control and policies but delegated administration and localisation within customers business units or departments Supports multiple local and central user directories (eg ADs) Supports central and local authentication points (VPNs, Apps etc) Organisations lower in the hierarchy can inherit policies and settings Only view one level down Almost infinite flexibility in what is controlled centrally or devolved Service Provider Reseller Customer 1 Customer 2 Customer 3 Region 1 Region 2

Multi-Tier, Multi-Tenant Multi-tenant architecture Scales to thousands of companies Unlimited numbers of users per company Manage multiple organizations from one centralized interface Unlimited numbers of companies Supports multiple domains Secure Only view one level down Delegated management for lower tiers Deliver enhanced service wrappers Great for multi-region networks Inherit capabilities to lower level SMS / smtp gateways Branding Delegated Service Provider Managed Subscriber Subscriber A Virtual Service Provider Subscriber B Enterprise Subscriber Region 1 Region 2 Region 3 5

SafeNet Authentication Service Architecture SafeNet Authentication Service SafeNet Authentication Service User Repository Portals Service Provider Subscriber North America DataCenter EMEA DataCenter Token Repository Agents Engines LDAP Synch Authentication SMS via HTTP(S) Email via SMTP Internet SMS Service Provider (Subscriber or SP selected) User Self-Service Migration Provisioning Self-Enrolment Solutions Reporting/Alerts SMS message Admin Reports & Alerts End User requests Radius Request Radius Request SAML Request Agent Tokens User Repository Agents Access Devices Administrator Users SafeNet Confidential and Proprietary 6

Automation LDAP Changes Automatic updates of LDAP changes User Changes Directory Server IAS/NPS Server LDAP Agent Access Device or Application Group LDAP Rules Users Self Enrollment 7

Automation LDAP Changes Corporate Network LDAP / Active Directory / User Source Corporate Network LDAP / Active Directory / User Source Corporate Network User Directory Sources LDAP / Active Directory / User Source 8

Multiple Business Unit entities, Groups & Containers Realms enable common access points Realms allow a common access point to be used by a number of organizations Often used for common corporate access points that are shared between subsidiaries Users - Sales Users - Operations Sales 500 users, 600 tokens Operations 100 users, 100 tokens Users R&D R&D 700 users, 700 tokens 9

Multi-Tier, Multi-Tenant Realms enable common access points Realms allow a common access point to be used by a number of organizations Often used for common corporate access points that are shared between subsidiaries Users - Stentor Users - ACME Stentor 500 users, 600 tokens ACME 2000 users, 2000 tokens Users B&O B&O 700 users, 700 tokens 10

Public Cloud and Private Cloud Solution 20,000 Users Your Enterprise 20,000 Users Your Enterprise 11

Service Delivery Platform - Pure Cloud 1000 s of Customers Your Partners and Suppliers 1000 s of Internal Users Your Enterprise 1000 s of Subscribers Your Customers 12

Service Delivery Platform - Private Cloud 1000 s of Customers Your Partners and Suppliers 1000 s of Internal Users Your Enterprise 1000 s of Subscribers Your Customers 13

SAML Enhancements Single Sign-on Authentication at one allowed SAML site access to all allowed sites Logoff at one allowed site, logged off at all allowed sites SAML Assertion bill@gmail.com SAML Assertion bill.laham@safenet-inc.com UserID: Bill Password: OTP SAML Assertion bill 14