3. Directory Landscape Is Changing
Mobile Access
Personalization Identity as a Service
Cloud Applications
Social Networking
Federated Sign-on
Scale
Performance
3
4. Demand for Write Operations is Increasing
“Percentage of Writes Increasing”
• Personalization data
• Location data 10s Billions
• Mobile applications Cloud and
Billions Social
Mobile Networking
Millions Enterprise/
Extranet
Reads:70%
Thousands Writes:30%
Host Access Reads:60%
Writes:40%
Reads:80%
Writes:20%
“Read Performance Still Important”
Reads:90% • Billions of users and devices
Writes:10%
• Millions of operations per second
• Elastic growth
4
5. A Trend Towards Unification
More Directory Convergence
• More RFP’s Require Integrated Capability
• Expansion Shared Services vs. LOB IT Virtual
• Compliance and Security Requirements Business
Affiliates/Subsidiaries
Storage Synch
Corporate
LDAP Employees/Partners/Customers
Customer
LDAP
“Convergence drives Unification”
• Lower TCO
Extranet • Lower Administration Effort
LOB
LDAP • Improved User Experience
5
6. Introducing Oracle Unified Directory 11g
Extreme Scale • Scale to 10’s of Billions
• Convergence of directories
• Integrated with ODSM for
configuration and Enterprise
Next Generation Manager
• Inter-operable with all certified
ODSEE ISV software
• Integrated with ODS+
Integrated and
Interoperable Optimized for cloud, mobile
and social
6
7. Extreme Scale
Compared to ODSEE Highlights
Proxy
Read • Built on OpenDS
3X Performance
Synch • Convergence of directories
Write • Advanced Replication
5X Performance
• Flexible Deployment
Core Components • Horizontal data vs. Monolithic
data scale approach
• Directory Server
• Proxy Server Oracle
Unified Will continue to enhance and
• Replication Server
Directory maintain existing directory
offerings
7
8. Next Generation
Social Unified Directory
Application
Location Based
Application
Mobile Devices
8
9. Interoperable and Compatible
ODSEE OUD
• Fully Compatible With
Replication Replication
ODSEE
Topology Topology
• Bi-directional replication ODSEE OUD
OUD
with ODSEE Directory Replication Directory
Server 1 Gateway Server 1
• Run mixed OUD and DSEE
environment ODSEE OUD OUD
Directory Replication Directory
• Zero down time upgrade Server 2 Gateway Server 2
from ODSEE to OUD
Simplified Deployment
9
10. OUD is Included in ODS Plus Suite
• Oracle • Oracle Virtual
Directory Directory
Server
• New Architecture Enterprise
Edition
Industry first 100 % Java
directory service solution
ODSEE OVD
• New Scale Approach
Horizontal vs. Monolithic data
scale approach ODS +
• Certification
OUD OID
Will be certified with Oracle
technology that requires OID • Oracle Unified • Oracle Internet
Directory Directory
ODS Plus Customers get
OUD included in license
10
11. Oracle Unified Directory 11gR1
• Core directory functions
• A directory server, equivalent of DSEE directory server
• A directory proxy server for fail-over, load-balancing, data distribution and
security
• Dedicated replication server and replication gateway modes
• Full compatibility with ODSEE
• What works with ODSEE will work with OUD
• Replication gateway for ODSEE and OUD co-existence
• Complete Java directory services solution with OVD and DIP
• OVD for identity virtualization
• Directory Integration platform (DIP) for synchronization
• OUD is a J2SE app that runs in a JVM which does not require a J2EE
container
11
12. Oracle Unified Directory 11gR1
• Elastic scalability
• Global index for high performance and data distribution
• Advanced replication
• Fractional replication, priority replication, and assured replication
• Flexible deployment options
• Multiple algorithms for proxy load-balancing
• Proportional, saturation, failover, optimal
• Multiple algorithms for proxy data distribution/ partition
• Numeric, lexicographic, DN pattern, and capacity based
• ODSM Admin UI
• J2EE app that is certified for WLS
• Enterprise Manager Grid Control monitoring
• Certified as identity store for IDM product as well as FMW through
OPSS
12
14. Deployment in two Data Centers with
Distribution DS and Proxy with Global
Index
14
15. Architecture
Oracle Unified Directory
Protocol Handling
(LDAP, LDAPS, JMX, …)
Front End
Provide access to…
Naming Context, request filtering
Directory Service policy, resource limits
List of accessible
Naming Context naming context
Local Load Distribution
Distribution
Back-End Balancing algorithms
Proxy
Local DB Schema
backend BE (Load-balancing algorithms)
Default data store
(Oracle BDB JE, ACID)
15
16. Zero Down-time Upgrade
Upgrade to ODSEE 11gR1
• Follow the documented upgrade process
Upgrade ODSEE Servers to OUD
• Each Server can be done one at a time
Replication between OUD and ODSEE
• Use the built in OUD replication gateway
Continue Upgrading Additional Servers
• Upgrade with Zero down-time
16
17. Upgrade from DSEE 5.2 to OUD
DSEE5.2 to OUD
Initial deployment DSEE 11gR1
DSEE 5.2 DSEE 5.2 DSEE 11gR1 DSEE 11gR1
DS Master 1 DS Master 3 DS Master 1 DS Master 3
DSEE 5.2 DSEE 5.2 DSEE 11gR1 DSEE 11gR1
DS Master 2 DS Master 4 DS Master 2 DS Master 4
• All masters are upgraded to ODSEE 11gR1
• Change password policy from old 5.2 compatibility mode to 11gR1 mode
17
18. Upgrade from DSEE 5.2 to OUD
DSEE5.2 to OUD
DSEE 11gR1 OUD topology
OUD
Directory
DSEE 11gR1 DSEE 11gR1 Server 1
OUD
DS Master 1 DS Master 3 Replication
Server 1
OUD
DSEE 11gR1 DSEE 11gR1 Replication
Server 2
DS Master 2 DS Master 4 OUD
Directory
Server 2
• Install an OUD topology
• Initialize OUD topology by exporting data from ODSEE 11gR1 and importing in
OUD
18
19. Upgrade from DSEE 5.2 to OUD
DSEE5.2 to OUD
DSEE 11gR1 OUD topology
OUD
Directory
DSEE 11gR1 DSEE 11gR1 Server 1
OUD OUD
DS Master 1 DS Master 3 Replication Replication
Gateway Server 1
OUD OUD
DSEE 11gR1 DSEE 11gR1 Replication Replication
Gateway Server 2
DS Master 2 DS Master 4 OUD
Directory
Server 2
• Install Replication Gateway
19
20. Upgrade from DSEE 6.x/7.0 to OUD
DSEE 6.x/7.0 to OUD
DSEE6.x/7.0 &
Initial deployment DSEE 11gR1
DSEE 6.x/7.0 DSEE 6.x/7.0 DSEE 6.x/7.0 DSEE 11gR1
DS Master 1 DS Master 3 DS Master 1 DS Master 3
DSEE 6.x/7.0 DSEE 6.x/7.0 DSEE 6.x/7.0 DSEE 11gR1
DS Master 2 DS Master 4 DS Master 2 DS Master 4
• Master 3, 4 are upgraded to ODSEE 11gR1
• Change password policy from old 6.x/7.0 compatibility mode to 11gR1 mode
20
21. Upgrade from DSEE 6.x/7.0 to OUD
DSEE 6.x/7.0 to OUD
DSEE6.x/7.0 &
DSEE 11gR1 OUD topology
OUD
Directory
DSEE 11gR1 Server 1
DSEE 6.x/7.0 OUD
DS Master 1 DS Master 3 Replication
Server 1
OUD
DSEE 6.x/7.0 DSEE 11gR1 Replication
DS Master 2 Server 2
DS Master 4 OUD
Directory
Server 2
• Install an OUD topology
• Initialize OUD topology by exporting data from ODSEE 11gR1 and importing in
OUD
21
22. Upgrade from DSEE 6.x/7.0 to OUD
DSEE 6.x/7.0 to OUD
DSEE6.x/7.0 &
DSEE 11gR1 OUD topology
OUD
Directory
DSEE 11gR1 Server 1
DSEE 6.x/7.0 OUD OUD
DS Master 1 DS Master 3 Replication Replication
Gateway Server 1
OUD OUD
DSEE 6.x/7.0 DSEE 11gR1 Replication Replication
Gateway Server 2
DS Master 2 DS Master 4 OUD
Directory
Server 2
• Install Replication Gateway
22
23. Comparing OUD to Existing Oracle Directories
Oracle Directory
Oracle Virtual Oracle Internet
Server Enterprise
Directory Directory
Edition
• Not a substitute for
• Embedded Berkley • OUD provides better
OVD
DB vs. external performance 5x write
• Works with OVD
Oracle DB and 3x read
• Horizontal partition • OUD provides elastic
vs. monolithic scale
• Will certify with all • OUD provides better
technologies requiring administration ODSM
OID
23