End-user access to SAP, web applications and databases is an area fraught with risk for organizations with complex, cross-platform environments. While the Active Directory account of an exiting employee may be de-provisioned quickly, entitlements to SAP, intranets, HR systems, partner portals, and other apps may not be disabled for hours, days - or ever.
In such environments end-users are also frustrated trying to manage multiple accounts and passwords, and help desk resources are drained doing account resets.
Many current solutions require a separate authentication server, which often does not deliver true single sign-on but single sign-on just to the authentication server; the authentication server either has a separate identity store from Active Directory or must be synchronized with Active Directory. These complex architectures are expensive to license and deploy, and represent additional points of failure. These solutions may also rely on non-native, one-size-fits-all authentication clients that are difficult to deploy and configure.
Centrify addresses these challenges with true single sign-on directly to Active Directory for SAP, web applications running on Apache, JBoss, Tomcat, WebLogic and WebSphere, and databases such as DB2. Native authentication modules plug seamlessly into the underlying Centrify agent on the managed application host systems, eliminating the need for separate authentication servers. Centrify's industry-standard solution delivers single sign-on for both intranets and inhouse web apps, as well as federated single sign-on for extranets and B2B applications. With Centrify you can:
Through the same architecture, Centrify also secures the underlying host system, covering the industry's widest range of Linux and UNIX platforms.
Unified Identity Management - Research computing environments are often managed as independent silos, kept far apart from organizational and enterprise systems. Expect IT efficiency efforts and government reporting requirements to push for unified access control, single sign-on and identity management systems that span Windows, Mac and Unix systems. Companies with identity management systems built on Microsoft's Active Directory will want to take a serious look at software products from Centrify
Bio-ITWorld.com
January 2007