SlideShare ist ein Scribd-Unternehmen logo
1 von 19
Downloaden Sie, um offline zu lesen
OpenSSO Enterprise


Daniel Raskin
Senior Product Line Manager
d.raskin@sun.com

                              1
OpenSSO Enterprise




 Buy one solution to solve ALL of your SSO problems
   Web access management, Federation, and Secure Web services
                                                                2
OpenSSO Enterprise Model
                   ●
                       Purchase an OpenSSO
                       Enterprise perpetual license
                       (formerly Access Manager),
                       Sun Identity Management
                       Suite subscription or Java
                       Enterprise System
                       subscription
                   ●
                       Receive Support and
                       indemnification on OpenSSO
                       commercial builds and
                       Express builds.
                   ●   Customers choose whichever
                       builds works best for them!




                                                      3
OpenSSO Enterprise Options
• OpenSSO Express Build
  > A community build that has undergone extensive
    automated testing and moderate manual testing by Sun
    Quality Assurance Engineering Team.
  > Delivered every 3 months
• OpenSSO Commercial Build
  > A community build that has undergone extensive manual
    and automated testing by Sun Quality Assurance
    Engineering Team.
  > Delivered every 12 – 15 months


                                                            4
Solution: OpenSSO Web Access Management
Three Tough Challenges. One Powerful Solution.

•   Centralized server configuration
•   Centralized agent configuration
•   Agent and proxy modes
•   AAA Identity Services
•   Embedded directory server for user store and policy store
•   XACML support for standards-based policy management
•   Consumes and translates 3rd party tokens from all major
    WAM solutions


                                                                5
Solution: OpenSSO Federation
Three Tough Challenges. One Powerful Solution.
• The Fedlet, 8.5MB package that allows service providers to
  create fully configured trust networks based SAML 2 in minutes
• Multi-protocol Federation Hub, easily federate with any company
  regardless of what “federation language” they speak
• Virtual Federation Proxy, incorporate any number of legacy
  authentications with a single instance of OpenSSO
• Supports all major standards including SAML, WS-Federation,
  Liberty ID-FF, WS-Trust, WS-Security, and WS-Policy
• Consumes and translates 3rd party tokens from all major WAM
  solutions


                                                                    6
Solution: OpenSSO Secure Web Services
Three Tough Challenges. One Powerful Solution.
• Only standards-based solution in the world to provide a
  pluggable, end-to-end secure web-services solution
• Out -of-box tooling by Netbeans and Glassfish
• SecurityToken Service that can be deployed as an
  Integrated, or standalone, solution
• Security Token Service that can handle token issuance,
  validation and translation via WS-Trust
• Policy enforcement point plugins for Weblogic, WebSphere,
  Tomcat and JBOSS


                                                              7
Bonus: Entitlement Management
• Ability to protect resources and objects within them
  >   Generic policy engine
  >   Policy Decision Point
  >   Policy Management Point
  >   Identity Web Services to invoke Authorization
  >   Supports Java, C, REST, SOAP and XACML




                                                         8
Sun is Positioned in the Leaders Quadrant




Gartner Magic Quadrant for Web Access Management, Ray Wagner, Earl Perkins, Perry Carpenter, 10 November 2008
  The Magic Quadrant is copyrighted 10 November 2008 by Gartner, Inc. and is reused with permission. The Magic Quadrant is a graphical representation of a marketplace at and for a specific time period. It depicts
  Gartner's analysis of how certain vendors measure against criteria for that marketplace, as defined by Gartner. Gartner does not endorse any vendor, product or service depicted in the Magic Quadrant, and does not
  advise technology users to select only those vendors placed in the “Leaders” quadrant. The Magic Quadrant is intended solely as a research tool, and is not meant to be a specific guide to action Gartner disclaims all
  warranties, express or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose. The Magic Quadrant graphic was published by Gartner, Inc., as part of a larger
  research note and should be evaluated in the context of the entire report. The Gartner report is available upon request from Sun Microsystems.


                                                                                                                                                                                                                                   9
What's Next
• Carrier-Grade Monitoring (Q1 2009)
• More Ease-of-Use Task Flows (Q1 / Q2 2009)
• SaaS Federation Task Flows (Q1 / Q2 2009)
• Entitlement Management (Q2 2009)




                                               10
Carrier-Grade Monitoring (Q1 2009)
• Working with key Telco companies to develop
  carrier-grade monitoring in OpenSSO
• Will provide server level monitoring and
  management across entire OpenSSO Enterprise
  deployment
  > Test agents to ensure they are responding to client
    requests.
  > Real-time of view of OpenSSO Deployment
  > Quickly identify and address problems
• Integrates with 3rd party monitoring and reporting
  tools
                                                          11
More Ease-of-Use Task Flows (Q1 / Q2 2009)
• Protect a Resource Flow
• Create a Realm Flow
• Configure / Deploy and Agent Flow
• Configure an Authentication Store
• Configure an Instance
• Select an Admin for a Realm




                                             12
SaaS Federation Task Flows (Q1 / Q2 2009)

• Provide simple task flows for configuring federated
  SSO with popular SaaS services
• Focus on standards-based services rather than
  proprietary




                                                        13
Entitlement Management (Spring 2009)
• Extend OpenSSO to solve access management,
  federation, secure web services and
  ENTITLEMENT MANAGEMENT.
  >   Policy Engine Benchmark – Millions of policies
  >   Killer Policy Management User interface
  >   Build as reusable composite service for RM and IM
  >   Policy attestation and entitlements warehouse

• 3 +1 = 4 Tough Challenges. One powerful solution.


                                                          14
Entitlement Management (Spring 2009)
Composite, Reusable Service
• Easily embed policy management point and policy
  decision point as a composite, reusable service in
  Identity Manager, Role Manager, 3rd party
  application.
• Allows for a single policy store and common user
  experience
• Invoke EM web services using IDE of choice



                                                       15
OpenSSO: Latest Innovation
• Presto-Change-O Install
  >   Embedded Glassfish
  >   JavaWebstart Installation
  >   Pre-configured
  >   One Click
• http://tinyurl.com/openssonow




                                  16
Free Training Labs
• Five downloadable, self-paced labs
  >   deploy two Apache Tomcat servers
  >   SSL-enable them
  >   install a software load balancer
  >   install OpenSSO into the environment
  >   configure for session failover
• Includes virtual image containing
  OpenSolaris, Glassfish, OpenSSO
  and OpenDS
  > Fast forward or rewind image using ZFS

• Go to OpenSSO.org and click on
  Training

                                             17
OpenSSO Community

                    • In less than 2 years...
                       > 750+ project members at
                         opensso.org
                       > ~15 external committers


                    • Production deployments
                       > www.audi.co.uk
                         250,000 customer profiles
                       > openid.sun.com
                         OpenID for Sun employees
                       > telenet.be
                         Foundation for fine-grained
                         authorization



                                                       18
Thank You.
Daniel Raskin
d.raskin@sun.com



                   19

Weitere ähnliche Inhalte

Was ist angesagt?

Backup2013 - Barracuda Networks
Backup2013 - Barracuda NetworksBackup2013 - Barracuda Networks
Backup2013 - Barracuda Networks
Kappa Data
 

Was ist angesagt? (20)

Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013
Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013
Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013
 
IBM DataPower Gateway appliances feature & virtual edition comparison
IBM DataPower Gateway appliances feature & virtual edition comparisonIBM DataPower Gateway appliances feature & virtual edition comparison
IBM DataPower Gateway appliances feature & virtual edition comparison
 
Dedicated Hosting
Dedicated HostingDedicated Hosting
Dedicated Hosting
 
Pune open cloudfoundry keynote niranjan maka share
Pune open cloudfoundry keynote niranjan maka share Pune open cloudfoundry keynote niranjan maka share
Pune open cloudfoundry keynote niranjan maka share
 
VCE Vblock Systems Foundation Exam for VCE Certified Converged Infrastructure...
VCE Vblock Systems Foundation Exam for VCE Certified Converged Infrastructure...VCE Vblock Systems Foundation Exam for VCE Certified Converged Infrastructure...
VCE Vblock Systems Foundation Exam for VCE Certified Converged Infrastructure...
 
Scvmm 2012 Building of Private Clouds and Federation to the Public Cloud
Scvmm 2012 Building of Private Clouds and Federation to the Public CloudScvmm 2012 Building of Private Clouds and Federation to the Public Cloud
Scvmm 2012 Building of Private Clouds and Federation to the Public Cloud
 
Build 4 The Cloud By Cisco&VMware1
Build 4 The Cloud By Cisco&VMware1Build 4 The Cloud By Cisco&VMware1
Build 4 The Cloud By Cisco&VMware1
 
Presentation cisco vxi–optimized infrastructure for scaling v mware view wi...
Presentation   cisco vxi–optimized infrastructure for scaling v mware view wi...Presentation   cisco vxi–optimized infrastructure for scaling v mware view wi...
Presentation cisco vxi–optimized infrastructure for scaling v mware view wi...
 
VMware vSphere5.1 Training
VMware vSphere5.1 TrainingVMware vSphere5.1 Training
VMware vSphere5.1 Training
 
SIM204-What's Coming in Virtual Machine Manager 2012?
SIM204-What's Coming in Virtual Machine Manager 2012?SIM204-What's Coming in Virtual Machine Manager 2012?
SIM204-What's Coming in Virtual Machine Manager 2012?
 
VCE_value_brochure
VCE_value_brochureVCE_value_brochure
VCE_value_brochure
 
Why Security Teams should care about VMware
Why Security Teams should care about VMwareWhy Security Teams should care about VMware
Why Security Teams should care about VMware
 
Datapowercommonusecases 130509114200-phpapp02
Datapowercommonusecases 130509114200-phpapp02Datapowercommonusecases 130509114200-phpapp02
Datapowercommonusecases 130509114200-phpapp02
 
Internet Explorer 8
Internet Explorer 8Internet Explorer 8
Internet Explorer 8
 
VMware ventaja competitiva
VMware ventaja competitivaVMware ventaja competitiva
VMware ventaja competitiva
 
Backup2013 - Barracuda Networks
Backup2013 - Barracuda NetworksBackup2013 - Barracuda Networks
Backup2013 - Barracuda Networks
 
Presentation cloud, the whole offer
Presentation   cloud, the whole offerPresentation   cloud, the whole offer
Presentation cloud, the whole offer
 
Datasheet: WebSphere DataPower B2B Appliance XB62
Datasheet: WebSphere DataPower B2B Appliance XB62Datasheet: WebSphere DataPower B2B Appliance XB62
Datasheet: WebSphere DataPower B2B Appliance XB62
 
The 7 Essential Features of AIS vCloudOne
The 7 Essential Features of AIS vCloudOneThe 7 Essential Features of AIS vCloudOne
The 7 Essential Features of AIS vCloudOne
 
Vmware Seminar Security & Compliance for the cloud with Trend Micro
Vmware Seminar Security & Compliance for the cloud with Trend MicroVmware Seminar Security & Compliance for the cloud with Trend Micro
Vmware Seminar Security & Compliance for the cloud with Trend Micro
 

Ähnlich wie Open sso enterprise customer pitch

Open sso enterprise customer pitch
Open sso enterprise customer pitchOpen sso enterprise customer pitch
Open sso enterprise customer pitch
xKinAnx
 
XebiaLabs Demo: Application Release Automation with Deployit
XebiaLabs Demo: Application Release Automation with DeployitXebiaLabs Demo: Application Release Automation with Deployit
XebiaLabs Demo: Application Release Automation with Deployit
XebiaLabs
 
Datasheet.net pluginforrd
Datasheet.net pluginforrdDatasheet.net pluginforrd
Datasheet.net pluginforrd
MidVision
 
Media launcher webcasting datasheet from mediaplatform
Media launcher webcasting datasheet from mediaplatformMedia launcher webcasting datasheet from mediaplatform
Media launcher webcasting datasheet from mediaplatform
holvick
 

Ähnlich wie Open sso enterprise customer pitch (20)

Open sso enterprise customer pitch
Open sso enterprise customer pitchOpen sso enterprise customer pitch
Open sso enterprise customer pitch
 
MultiValue Gets SaaS-y
MultiValue Gets SaaS-yMultiValue Gets SaaS-y
MultiValue Gets SaaS-y
 
The elegant way of implementing microservices with istio
The elegant way of implementing microservices with istioThe elegant way of implementing microservices with istio
The elegant way of implementing microservices with istio
 
12월 16일 Meetup [Deep Dive] Microservice 트래픽 관리를 위한 Istio 알아보기 | 강인호 컨설턴트, 오라클
12월 16일 Meetup [Deep Dive] Microservice 트래픽 관리를 위한 Istio 알아보기 | 강인호 컨설턴트, 오라클12월 16일 Meetup [Deep Dive] Microservice 트래픽 관리를 위한 Istio 알아보기 | 강인호 컨설턴트, 오라클
12월 16일 Meetup [Deep Dive] Microservice 트래픽 관리를 위한 Istio 알아보기 | 강인호 컨설턴트, 오라클
 
Mds cloud saturday 2015 how to heroku
Mds cloud saturday 2015 how to herokuMds cloud saturday 2015 how to heroku
Mds cloud saturday 2015 how to heroku
 
4 Outcomes of an Advanced Repo Manager Strategy
4 Outcomes of an Advanced Repo Manager Strategy4 Outcomes of an Advanced Repo Manager Strategy
4 Outcomes of an Advanced Repo Manager Strategy
 
XebiaLabs Demo: Application Release Automation with Deployit
XebiaLabs Demo: Application Release Automation with DeployitXebiaLabs Demo: Application Release Automation with Deployit
XebiaLabs Demo: Application Release Automation with Deployit
 
OpenSSO Roadmap Aquarium
OpenSSO Roadmap AquariumOpenSSO Roadmap Aquarium
OpenSSO Roadmap Aquarium
 
Oracle Keynote Cloud Expo 11-04-09
Oracle Keynote Cloud Expo 11-04-09Oracle Keynote Cloud Expo 11-04-09
Oracle Keynote Cloud Expo 11-04-09
 
Accelerate Your OpenStack Deployment Presented by SolidFire and Red Hat
Accelerate Your OpenStack Deployment Presented by SolidFire and Red HatAccelerate Your OpenStack Deployment Presented by SolidFire and Red Hat
Accelerate Your OpenStack Deployment Presented by SolidFire and Red Hat
 
Endpoint Agent Part 2: Monitoring SaaS Apps from Anywhere
Endpoint Agent Part 2: Monitoring SaaS Apps from AnywhereEndpoint Agent Part 2: Monitoring SaaS Apps from Anywhere
Endpoint Agent Part 2: Monitoring SaaS Apps from Anywhere
 
How to consolidate Citrix Monitoring in a Single Pane of Glass
How to consolidate Citrix Monitoring in a Single Pane of GlassHow to consolidate Citrix Monitoring in a Single Pane of Glass
How to consolidate Citrix Monitoring in a Single Pane of Glass
 
Datasheet.net pluginforrd
Datasheet.net pluginforrdDatasheet.net pluginforrd
Datasheet.net pluginforrd
 
Oaksys Updated Presentation 2020
Oaksys Updated Presentation 2020Oaksys Updated Presentation 2020
Oaksys Updated Presentation 2020
 
The "One Monitor": Tranform MS SCOM into an End-to-End Monitoring & Diagnosis...
The "One Monitor": Tranform MS SCOM into an End-to-End Monitoring & Diagnosis...The "One Monitor": Tranform MS SCOM into an End-to-End Monitoring & Diagnosis...
The "One Monitor": Tranform MS SCOM into an End-to-End Monitoring & Diagnosis...
 
Build & Deploy Scalable Cloud Applications in Record Time
Build & Deploy Scalable Cloud Applications in Record TimeBuild & Deploy Scalable Cloud Applications in Record Time
Build & Deploy Scalable Cloud Applications in Record Time
 
Elastic Cloud keynote
Elastic Cloud keynoteElastic Cloud keynote
Elastic Cloud keynote
 
Představení Oracle SPARC Miniclusteru
Představení Oracle SPARC MiniclusteruPředstavení Oracle SPARC Miniclusteru
Představení Oracle SPARC Miniclusteru
 
Comm vault Simpana e a nuvem AWS
Comm vault Simpana e a nuvem AWSComm vault Simpana e a nuvem AWS
Comm vault Simpana e a nuvem AWS
 
Media launcher webcasting datasheet from mediaplatform
Media launcher webcasting datasheet from mediaplatformMedia launcher webcasting datasheet from mediaplatform
Media launcher webcasting datasheet from mediaplatform
 

Mehr von xKinAnx

Mehr von xKinAnx (20)

Engage for success ibm spectrum accelerate 2
Engage for success   ibm spectrum accelerate 2Engage for success   ibm spectrum accelerate 2
Engage for success ibm spectrum accelerate 2
 
Accelerate with ibm storage ibm spectrum virtualize hyper swap deep dive
Accelerate with ibm storage  ibm spectrum virtualize hyper swap deep diveAccelerate with ibm storage  ibm spectrum virtualize hyper swap deep dive
Accelerate with ibm storage ibm spectrum virtualize hyper swap deep dive
 
Software defined storage provisioning using ibm smart cloud
Software defined storage provisioning using ibm smart cloudSoftware defined storage provisioning using ibm smart cloud
Software defined storage provisioning using ibm smart cloud
 
Ibm spectrum virtualize 101
Ibm spectrum virtualize 101 Ibm spectrum virtualize 101
Ibm spectrum virtualize 101
 
Accelerate with ibm storage ibm spectrum virtualize hyper swap deep dive dee...
Accelerate with ibm storage  ibm spectrum virtualize hyper swap deep dive dee...Accelerate with ibm storage  ibm spectrum virtualize hyper swap deep dive dee...
Accelerate with ibm storage ibm spectrum virtualize hyper swap deep dive dee...
 
04 empalis -ibm_spectrum_protect_-_strategy_and_directions
04 empalis -ibm_spectrum_protect_-_strategy_and_directions04 empalis -ibm_spectrum_protect_-_strategy_and_directions
04 empalis -ibm_spectrum_protect_-_strategy_and_directions
 
Ibm spectrum scale fundamentals workshop for americas part 1 components archi...
Ibm spectrum scale fundamentals workshop for americas part 1 components archi...Ibm spectrum scale fundamentals workshop for americas part 1 components archi...
Ibm spectrum scale fundamentals workshop for americas part 1 components archi...
 
Ibm spectrum scale fundamentals workshop for americas part 2 IBM Spectrum Sca...
Ibm spectrum scale fundamentals workshop for americas part 2 IBM Spectrum Sca...Ibm spectrum scale fundamentals workshop for americas part 2 IBM Spectrum Sca...
Ibm spectrum scale fundamentals workshop for americas part 2 IBM Spectrum Sca...
 
Ibm spectrum scale fundamentals workshop for americas part 3 Information Life...
Ibm spectrum scale fundamentals workshop for americas part 3 Information Life...Ibm spectrum scale fundamentals workshop for americas part 3 Information Life...
Ibm spectrum scale fundamentals workshop for americas part 3 Information Life...
 
Ibm spectrum scale fundamentals workshop for americas part 4 Replication, Str...
Ibm spectrum scale fundamentals workshop for americas part 4 Replication, Str...Ibm spectrum scale fundamentals workshop for americas part 4 Replication, Str...
Ibm spectrum scale fundamentals workshop for americas part 4 Replication, Str...
 
Ibm spectrum scale fundamentals workshop for americas part 4 spectrum scale_r...
Ibm spectrum scale fundamentals workshop for americas part 4 spectrum scale_r...Ibm spectrum scale fundamentals workshop for americas part 4 spectrum scale_r...
Ibm spectrum scale fundamentals workshop for americas part 4 spectrum scale_r...
 
Ibm spectrum scale fundamentals workshop for americas part 5 spectrum scale_c...
Ibm spectrum scale fundamentals workshop for americas part 5 spectrum scale_c...Ibm spectrum scale fundamentals workshop for americas part 5 spectrum scale_c...
Ibm spectrum scale fundamentals workshop for americas part 5 spectrum scale_c...
 
Ibm spectrum scale fundamentals workshop for americas part 6 spectrumscale el...
Ibm spectrum scale fundamentals workshop for americas part 6 spectrumscale el...Ibm spectrum scale fundamentals workshop for americas part 6 spectrumscale el...
Ibm spectrum scale fundamentals workshop for americas part 6 spectrumscale el...
 
Ibm spectrum scale fundamentals workshop for americas part 7 spectrumscale el...
Ibm spectrum scale fundamentals workshop for americas part 7 spectrumscale el...Ibm spectrum scale fundamentals workshop for americas part 7 spectrumscale el...
Ibm spectrum scale fundamentals workshop for americas part 7 spectrumscale el...
 
Ibm spectrum scale fundamentals workshop for americas part 8 spectrumscale ba...
Ibm spectrum scale fundamentals workshop for americas part 8 spectrumscale ba...Ibm spectrum scale fundamentals workshop for americas part 8 spectrumscale ba...
Ibm spectrum scale fundamentals workshop for americas part 8 spectrumscale ba...
 
Ibm spectrum scale fundamentals workshop for americas part 5 ess gnr-usecases...
Ibm spectrum scale fundamentals workshop for americas part 5 ess gnr-usecases...Ibm spectrum scale fundamentals workshop for americas part 5 ess gnr-usecases...
Ibm spectrum scale fundamentals workshop for americas part 5 ess gnr-usecases...
 
Presentation disaster recovery in virtualization and cloud
Presentation   disaster recovery in virtualization and cloudPresentation   disaster recovery in virtualization and cloud
Presentation disaster recovery in virtualization and cloud
 
Presentation disaster recovery for oracle fusion middleware with the zfs st...
Presentation   disaster recovery for oracle fusion middleware with the zfs st...Presentation   disaster recovery for oracle fusion middleware with the zfs st...
Presentation disaster recovery for oracle fusion middleware with the zfs st...
 
Presentation differentiated virtualization for enterprise clouds, large and...
Presentation   differentiated virtualization for enterprise clouds, large and...Presentation   differentiated virtualization for enterprise clouds, large and...
Presentation differentiated virtualization for enterprise clouds, large and...
 
Presentation desktops for the cloud the view rollout
Presentation   desktops for the cloud the view rolloutPresentation   desktops for the cloud the view rollout
Presentation desktops for the cloud the view rollout
 

Kürzlich hochgeladen

Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
WSO2
 

Kürzlich hochgeladen (20)

Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Apidays Singapore 2024 - Scalable LLM APIs for AI and Generative AI Applicati...
Apidays Singapore 2024 - Scalable LLM APIs for AI and Generative AI Applicati...Apidays Singapore 2024 - Scalable LLM APIs for AI and Generative AI Applicati...
Apidays Singapore 2024 - Scalable LLM APIs for AI and Generative AI Applicati...
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 

Open sso enterprise customer pitch

  • 1. OpenSSO Enterprise Daniel Raskin Senior Product Line Manager d.raskin@sun.com 1
  • 2. OpenSSO Enterprise Buy one solution to solve ALL of your SSO problems Web access management, Federation, and Secure Web services 2
  • 3. OpenSSO Enterprise Model ● Purchase an OpenSSO Enterprise perpetual license (formerly Access Manager), Sun Identity Management Suite subscription or Java Enterprise System subscription ● Receive Support and indemnification on OpenSSO commercial builds and Express builds. ● Customers choose whichever builds works best for them! 3
  • 4. OpenSSO Enterprise Options • OpenSSO Express Build > A community build that has undergone extensive automated testing and moderate manual testing by Sun Quality Assurance Engineering Team. > Delivered every 3 months • OpenSSO Commercial Build > A community build that has undergone extensive manual and automated testing by Sun Quality Assurance Engineering Team. > Delivered every 12 – 15 months 4
  • 5. Solution: OpenSSO Web Access Management Three Tough Challenges. One Powerful Solution. • Centralized server configuration • Centralized agent configuration • Agent and proxy modes • AAA Identity Services • Embedded directory server for user store and policy store • XACML support for standards-based policy management • Consumes and translates 3rd party tokens from all major WAM solutions 5
  • 6. Solution: OpenSSO Federation Three Tough Challenges. One Powerful Solution. • The Fedlet, 8.5MB package that allows service providers to create fully configured trust networks based SAML 2 in minutes • Multi-protocol Federation Hub, easily federate with any company regardless of what “federation language” they speak • Virtual Federation Proxy, incorporate any number of legacy authentications with a single instance of OpenSSO • Supports all major standards including SAML, WS-Federation, Liberty ID-FF, WS-Trust, WS-Security, and WS-Policy • Consumes and translates 3rd party tokens from all major WAM solutions 6
  • 7. Solution: OpenSSO Secure Web Services Three Tough Challenges. One Powerful Solution. • Only standards-based solution in the world to provide a pluggable, end-to-end secure web-services solution • Out -of-box tooling by Netbeans and Glassfish • SecurityToken Service that can be deployed as an Integrated, or standalone, solution • Security Token Service that can handle token issuance, validation and translation via WS-Trust • Policy enforcement point plugins for Weblogic, WebSphere, Tomcat and JBOSS 7
  • 8. Bonus: Entitlement Management • Ability to protect resources and objects within them > Generic policy engine > Policy Decision Point > Policy Management Point > Identity Web Services to invoke Authorization > Supports Java, C, REST, SOAP and XACML 8
  • 9. Sun is Positioned in the Leaders Quadrant Gartner Magic Quadrant for Web Access Management, Ray Wagner, Earl Perkins, Perry Carpenter, 10 November 2008 The Magic Quadrant is copyrighted 10 November 2008 by Gartner, Inc. and is reused with permission. The Magic Quadrant is a graphical representation of a marketplace at and for a specific time period. It depicts Gartner's analysis of how certain vendors measure against criteria for that marketplace, as defined by Gartner. Gartner does not endorse any vendor, product or service depicted in the Magic Quadrant, and does not advise technology users to select only those vendors placed in the “Leaders” quadrant. The Magic Quadrant is intended solely as a research tool, and is not meant to be a specific guide to action Gartner disclaims all warranties, express or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose. The Magic Quadrant graphic was published by Gartner, Inc., as part of a larger research note and should be evaluated in the context of the entire report. The Gartner report is available upon request from Sun Microsystems. 9
  • 10. What's Next • Carrier-Grade Monitoring (Q1 2009) • More Ease-of-Use Task Flows (Q1 / Q2 2009) • SaaS Federation Task Flows (Q1 / Q2 2009) • Entitlement Management (Q2 2009) 10
  • 11. Carrier-Grade Monitoring (Q1 2009) • Working with key Telco companies to develop carrier-grade monitoring in OpenSSO • Will provide server level monitoring and management across entire OpenSSO Enterprise deployment > Test agents to ensure they are responding to client requests. > Real-time of view of OpenSSO Deployment > Quickly identify and address problems • Integrates with 3rd party monitoring and reporting tools 11
  • 12. More Ease-of-Use Task Flows (Q1 / Q2 2009) • Protect a Resource Flow • Create a Realm Flow • Configure / Deploy and Agent Flow • Configure an Authentication Store • Configure an Instance • Select an Admin for a Realm 12
  • 13. SaaS Federation Task Flows (Q1 / Q2 2009) • Provide simple task flows for configuring federated SSO with popular SaaS services • Focus on standards-based services rather than proprietary 13
  • 14. Entitlement Management (Spring 2009) • Extend OpenSSO to solve access management, federation, secure web services and ENTITLEMENT MANAGEMENT. > Policy Engine Benchmark – Millions of policies > Killer Policy Management User interface > Build as reusable composite service for RM and IM > Policy attestation and entitlements warehouse • 3 +1 = 4 Tough Challenges. One powerful solution. 14
  • 15. Entitlement Management (Spring 2009) Composite, Reusable Service • Easily embed policy management point and policy decision point as a composite, reusable service in Identity Manager, Role Manager, 3rd party application. • Allows for a single policy store and common user experience • Invoke EM web services using IDE of choice 15
  • 16. OpenSSO: Latest Innovation • Presto-Change-O Install > Embedded Glassfish > JavaWebstart Installation > Pre-configured > One Click • http://tinyurl.com/openssonow 16
  • 17. Free Training Labs • Five downloadable, self-paced labs > deploy two Apache Tomcat servers > SSL-enable them > install a software load balancer > install OpenSSO into the environment > configure for session failover • Includes virtual image containing OpenSolaris, Glassfish, OpenSSO and OpenDS > Fast forward or rewind image using ZFS • Go to OpenSSO.org and click on Training 17
  • 18. OpenSSO Community • In less than 2 years... > 750+ project members at opensso.org > ~15 external committers • Production deployments > www.audi.co.uk 250,000 customer profiles > openid.sun.com OpenID for Sun employees > telenet.be Foundation for fine-grained authorization 18