Presentation is loading. Please wait.

Presentation is loading. Please wait.

David Saslav Principal Product Manager Database and Application Server Technologies Oracle Corporation.

Similar presentations


Presentation on theme: "David Saslav Principal Product Manager Database and Application Server Technologies Oracle Corporation."— Presentation transcript:

1

2 David Saslav Principal Product Manager Database and Application Server Technologies Oracle Corporation

3 Oracle and Thor: Identity Management in the Heterogeneous Enterprise

4 The Business Problem  Managing users is complex – Users need to be provisioned for numerous applications – Many types of users: employees, customers, partners, suppliers… – … and hackers – Weak security due to proliferation of accounts, passwords and privileges  Risks from critical business applications and data being online  Legal mandates on protection of sensitive data

5 IT Challenges  Administrative challenges – Expensive and complex  Usability Problems – For both users and administrators  Security vulnerabilities – Fragmented security – Limited oversight

6 Identity Management Benefits  Simplifies Administration and Saves Money – Centralized user management is faster, easier to automate and less error-prone  Improves Security – Better security by preventing fragmented security administration  Enhances End User Experience – Single password and Single Sign-on eliminate wasted time by users – Personalizable end user experience

7 Security Reference Architecture For Distributed Systems Administration & Provisioning Identity / Policy Assertion Services Policy Decision Services Identity Management Infrastructure Identity & Policy Store Protected Resources Authentication Application Authorization Privacy Audit Application Security Services Administration & Provisioning Users

8 Oracle 10 g Security Solution  Oracle Identity Management (OIM) Infrastructure for the enterprise  Overall Platform Security enabled by OIM  Individual Platform Components Have High Security Assurance

9 Access Management External Security Services Oracle Security Architecture Directory Services Provisioning Systems Oracle E-Business Suite Responsibilities Roles …. Oracle Collaboration Suite Secure Mail Interpersonal Rights … OracleAS Portal & Wireless Roles Privilege Groups … Application Component Security OracleAS 10g JAAS, WS Security Java2 Permissions.. Oracle 10g Enterprise users, VPD, Encryption Label Security Oracle 10 g Platform Security Bindings OracleAS 10g JAAS, WS Security Java2 Permissions.. Oracle 10g Enterprise users, VPD, Encryption Label Security OracleAS 10g JAAS, WS Security Java2 Permissions,... Oracle DB 10g Enterprise users VPD, Encryption Label Security, … Oracle Internet Directory OracleAS Certificate Authority Directory Integration & Provisioning OracleAS Single Sign-on Delegated Administration Services Oracle Identity Management Enterprise Security Infrastructure

10 Xellerate Enterprise Provisioning: Connecting Oracle to the Heterogeneous Enterprise

11 Importance of User Access Provisioning  Focus on the CIO Agenda immediate, quantifiable ROI –Rationalize infrastructure –Streamline operations –Reduce administrative costs –Strengthen security –Enhance user experience  Enables implementation of strategic & tactical initiatives  Enabler of the extended enterprise Access Rights Provisioning Enhanced Security Operational Efficiency Business Processes Identity Management Pivotal technology for the enterprise

12 The Provisioning Challenge Enterprise SystemsIT ResourcesUsers IBM Mainframe IBM Client/Server IBM Web

13 Day One Day Two (Deep Provisioning) Effort spent within each Lifecycle stage 65% 35% Day One: Grant and revoke access to small set of commonly used applications Day Two: Expand to support evolving business needs and user provisioning requirements -Transactional integrity -High availability -Wide geographic support Stages of Provisioning Lifecycle Business function performed within each stage

14 Xellerate Features  Ease of Use – Initial installation and configuration – Feature rich JAVA environment definition console Straightforward Integration with target systems No coding required Self documenting Customer selects agent location - remote or local Deep Provisioning Enterprise-class Architecture Transactional integrity  Delegated Administration – User self-service and delegated IT – Administrative task queues  Adaptable Architecture  Lowest Overall TCO Focus on the requirements of the dynamic enterprise

15 Day 2 Provisioning Features  Adaptable Architecture  Separates what is done from how it is done  Evolves with business needs  Provisioning task scheduler  Business Process Management (BPM) support  Utilization of existing business rules  Creation of new provisioning specific business rules  Remote or in place rule execution  Business Process modeling

16 Day 2 Provisioning Features, cont’d.  Extensive Exception Management Capabilities  Customizable messages (error and provision process)  Intelligent error handling  Deep Provisioning –Mission Critical Capabilities  Provisioning Transaction Support  Rollback recovery  Logging  Full reporting and auditing

17 Xellerate Architecture

18 Connecting Oracle to the Heterogeneous Enterprise

19 Oracle Identity Management Benefits  Enables deployment of all Oracle products out of the box – Application Server, Database, Collaboration Suite, E-Business Suite  An enterprise infrastructure that leverages Oracle’s “unbreakable” technology – Reliability, scalability, security, performance  A single point of integration for customer’s existing identity management solutions – Transparent 3 rd party integration for OIM-enabled products  Accommodates a wide variety of partner solutions and customer deployments – Open, standards-based infrastructure enables integration with third-party solutions such as Xellerate from Thor Technologies

20 “The new Xellerate integration will enable our joint customers to provision the entire enterprise from the Oracle10 g platform.” - Bill Maimone, Vice President, Oracle Server Technologies

21 A Q & Q U E S T I O N S A N S W E R S

22 Next Steps….  Recommended sessions – NEXT! 3:15 PM, Moscone Room 123 Implementing Identity Management at Lawrence Livermore National Labs  Recommended demos and/or hands-on labs – Thor Xellerate in Security Pod (Exhibition Hall) – Oracle Identity Management in Oracle Campground  See Your Business in Our Software – Visit the DEMOgrounds for a customized architectural review, see a customized demo with Solutions Factory, or receive a personalized proposal. Visit the DEMOgrounds for more information.  Relevant web sites to visit for more information – http://www.thortech.com/

23

24 Reminder: Please complete the OracleWorld online session survey at any messaging kiosk. Thank you.


Download ppt "David Saslav Principal Product Manager Database and Application Server Technologies Oracle Corporation."

Similar presentations


Ads by Google