• No results found

CA Federation Manager

N/A
N/A
Protected

Academic year: 2021

Share "CA Federation Manager"

Copied!
5
0
0

Loading.... (view fulltext now)

Full text

(1)

CA FEDERATION MANAGER PROVIDES STANDARDS-BASED IDENTITY FEDERATION CAPABILITIES THAT ENABLE THE USERS OF ONE ORGANIZATION TO EASILY AND SECURELY ACCESS THE DATA AND APPLICATIONS OF OTHER ORGANIZATIONS AND CLOUD SERVICES. THIS IS DONE WITHOUT THE NEED FOR REDUNDANT USER STORES OR USER ADMINISTRATION PROCESSES. CA FEDERATION MANAGER GIVES YOUR ORGANIZATION THE ABILITY TO ACT AS AN IDENTITY PROVIDER (HOME SITE OF THE USER), A SERVICE PROVIDER (OWNER OF THE TARGET APPLICATION), OR BOTH, THUS SECURELY CONNECTING ORGANIZATIONS THAT ARE PART OF THE SAME ECOSYSTEM.

Overview

Your customers, partners and employees expect easy access to your critical applications, information and services anywhere and at any time. The rapid growth of Web-based application outsourcing, Software as a Service (SaaS), cloud services and other IT-enabled business-to-business partnerships challenges this. A new set of security management challenges arises when attempting to manage security across organizational boundaries. CA Federation Manager is specifically designed to address these new security challenges.

Benefits

CA Federation Manager provides you with secure Internet single sign-on for your external partners, cloud service providers and internal business units.

CA Federation Manager enables you to quickly federate Web applications and portals to:

• More quickly leverage partner-dependent business opportunities

• Improve the user experience through single sign-on (SSO)

• Reduce development and administrative costs • Improve application security

and control of external applications

• Ease the regulatory compliance burden

The CA Advantage

CA Federation Manager offers you a choice of deployment approaches. You can choose to deploy CA Federation Manager in a stand-alone mode for rapid installation, or as an extension to an existing Web access management infrastructure that is using CA SiteMinder®.

CA Federation Manager delivers reliable, scalable and manageable identity federation and enables your organization to act as an identity provider, a service provider, or both, through support of federation standards.

CA Federation Manager

(2)

2 PRODUCT BRIEF: CA FEDERATION MANAGER

CA Federation Manager Provides Internet Single Sign-on

Internet technology and Web usage have matured to the point that Web-based coordination and integration between cloud providers, outsourcing, and other business partners is now readily achievable and affordable. With the advent of widely adopted security and federation-specific standards, it has become easy and economical to connect business and government applications within and across organizational boundaries via the Internet. CA Federation Manager enables your organization to rapidly implement and manage federation partnerships to take advantage of the reduced costs and new business opportunities that come from letting organizations automatically, but securely, access each other's applications.

Key Capabilities

AUTOMATED ADMINISTRATION OF PARTNERSHIPS Designed to make the setup, testing, and management of multiple federation partnerships fast and easy.

BROAD FEDERATION STANDARDS SUPPORT CA Federation Manager provides out-of-the-box support for multiple federation standards, including SAML, to enable you to federate easily with a wide range of external partners and internal business units.

FLEXIBLE DEPLOYMENT OPTIONS CA Federation Manager offers you a choice of deployment approaches. You can choose to deploy CA Federation Manager in a stand-alone mode for rapid installation. In this mode, CA SiteMinder is not required, although CA Federation Manager can easily connect to CA SiteMinder if both Web access management and identity federation are desired. CA Federation Manager can also be deployed as an extension to an existing CA SiteMinder installation if CA SiteMinder is already in use and you choose to add federation capabilities to your Web access management infrastructure.

PARTNER END POINT INCLUDED For every CA Federation Manager partnership licensed, CA includes an unlimited user CA Federation Manager Endpoint that customers can provide to their partners who are not otherwise federation enabled. The endpoint license allows partners of your choosing, often smaller and less technically sophisticated, to use the CA Federation Manager software to federate with you. This will save you time and trouble in supporting your partners who have no federation experience, but need to federate with you.

ENABLES BOTH IDENTITY PROVIDER AND SERVICE PROVIDER FEDERATION ROLES CA Federation Manager enables you to function as either an identity provider (as the user’s home site), a service provider (to receive remotely authenticated users), or both, as appropriate for a given partnership. In addition, it supports the delegation of authentication to existing Web applications on the identity provider side.

SINGLE SIGN-ON AND SINGLE LOGOUT CA Federation Manager provides both single sign-on (SSO) and single logout (SLO/SOAP) functions across federated security domains.

(3)

CA FEDERATION MANAGER — ENABLES SINGLE SIGN-ON FOR THE INTERNET

CA Federation Manager Enhances the User Experience and Reduces

Cost While Improving Security and Easing Regulatory Compliance

The Web is open for business around-the-clock, and CA Federation Manager enables your online presence to be secure, available and accessible to the right users, without security getting in their way.

INCREASE BUSINESS OPPORTUNITIES Federation enables faster, easier, and more secure deployments of partner-based, collaborative applications. CA Federation Manager couples the necessary security controls with single sign-on to accelerate revenue-enhancing business relationships, while still reducing costs and mitigating risks.

INCREASE USER CONVENIENCE Online users expect quick and easy application access

regardless of where the applications they want to access reside. With CA Federation Manager, your ability to enable single sign-on across domains to partner applications speeds and enhances the user experience.

INCREASE SECURITY You can outsource applications, but you cannot outsource the responsibility for keeping organizational and user data secure and private. Federation provides a means to integrate the security implementations of the two organizations so that the security of the session with the user can be maintained across the domains.

MANAGE COSTS CA Federation Manager reduces the cost of managing identities across a network of partners by more broadly leveraging the identity management, user authentication, and access management practices of the organization that best knows the user. No longer does every organization in a partner network need to proof and authenticate the user’s identity and

FIGURE A

(4)

4 PRODUCT BRIEF: CA FEDERATION MANAGER

Also, federated applications can significantly reduce the use of your Service Desk by easing access to outsourced applications.

CA FEDERATION MANAGER STANDARDS AND COMPATIBILITY

The CA Advantage — A Comprehensive, Integrated and Modular

Approach to Managing Security on the Web

CA Federation Manager is a key component of CA’s solutions for Secure Web Business Enablement. CA’s integrated but modular products allow your organization to select the components that target specific areas of immediate need, while providing the organization with a path for integrated growth. The modular approach also enables you to start with the product that meets your most critical need and implement a solution in phases, or implement the whole Secure Web Business Enablement solution at one time, depending on your budget and business goals.

Other products in the Secure Web Business Enablement solution include:

• CA SiteMinder® provides flexible and scalable policy enforcement for Web applications, as well as Web-based single sign-on.

• CA SOA Security Manager provides flexible access management for SOA and Web services based architectures.

• CA Identity Manager provides identity administration and auditing for managing all user Web identities.

Once in place, CA solutions can help you open the door to a multitude of new opportunities. Your organization can rapidly deploy new Web applications and services and bring new users on board quickly and efficiently.

(5)

CA Services and our partners can help you assess your current federation situation, define your goals and implement solutions to gain measurable results. To keep all your CA solutions operating at peak performance, CA Support delivers unparalleled technical and customer support worldwide, and we offer training and certification through CA Education.

CA Education — a preferred source for IT management and best practices training — is an important part of our services offering. We assess your training needs, create the right training plan for you and optimize the program with advanced coursework and industry certifications.

Next Steps

CA Federation Manager enables you to configure, manage, and monitor access to federated Web applications and cloud services. It enables your organization to reduce costs, more quickly seize new business opportunities, and provide greater convenience, choice, and control for your users.

Contact CA today to find out how our approach to identity federation can enhance your ability to take advantage of Internet single sign-on to expand your Web business services — securely and reliably — to all your customers, partners and employees.

To learn more, and see how CA software solutions enable organizations to unify IT and simplify the management of complex computing environments across the enterprise for better business results, visit ca.com/products.

References

Related documents

CA Privileged Identity Manager provides file monitoring and network security capabilities analogous to Tripwire, IPTables and TCP Wrappers, but also provides additional

CA Identity Manager provides integration, which enables you to provision to and manage users for many of CA’s other leading IAM solutions including CA SiteMinder Web Access Manager,

The documentation for Trend Micro Deep Security 7.5 provides a step-by-step approach, with graphics, to installation, configuration, and initial management of your VMware

When the TOE performs tasks related to individual users (such as provisioning or creating new user accounts) the user store will be used by the TOE, which will query, create,

Integrated, End-to-End Identity Management Identity Manager Synchronization Services Password Management User Provisioning Access Manager Federation Access Control Web

Partner A Partner B Identity Store Federation Service Federation Service The Internet Access Management System Protected Applications. Identity Provider

The collaboration between Microsoft and Novell on federation standards means that authorized users can seamlessly access enterprise applications and Web-based services with one set

On the political dimension, the enfranchisement of external citi- zenry resulted in the inclusion of all citizens erasing the distinction between internal and external citizens in