End-user access to SAP, web applications and databases is an area fraught with risk for organizations with complex, cross-platform environments. While the Active Directory account of an exiting employee may be de-provisioned quickly, entitlements to SAP, intranets, HR systems, partner portals, and other apps may not be disabled for hours, days - or ever.
In such environments end-users are also frustrated trying to manage multiple accounts and passwords, and help desk resources are drained doing account resets.
Many current solutions require a separate authentication server, which often does not deliver true single sign-on but single sign-on just to the authentication server; the authentication server either has a separate identity store from Active Directory or must be synchronized with Active Directory. These complex architectures are expensive to license and deploy, and represent additional points of failure. These solutions may also rely on non-native, one-size-fits-all authentication clients that are difficult to deploy and configure.
Centrify addresses these challenges with true single sign-on directly to Active Directory for SAP, web applications running on Apache, JBoss, Tomcat, WebLogic and WebSphere, and databases such as DB2. Native authentication modules plug seamlessly into the underlying Centrify agent on the managed application host systems, eliminating the need for separate authentication servers. Centrify's industry-standard solution delivers single sign-on for both intranets and inhouse web apps, as well as federated single sign-on for extranets and B2B applications. With Centrify you can:
Through the same architecture, Centrify also secures the underlying host system, covering the industry's widest range of Linux and UNIX platforms.
Microsoft is pleased to partner with Centrify to help customers extend the use of Active Directory to their heterogeneous systems and applications, and now with Centrify's support for Microsoft ADFS this interoperability has been extended to Web Single Sign-on federated identity management scenarios.
Michael Stephenson
Director, Windows Server Division
Microsoft Corp.