OpenSSO Enterprise


Daniel Raskin
Senior Product Line Manager
d.raskin@sun.com

                              1
OpenSSO Enterprise




 Buy one solution to solve ALL of your SSO problems
   Web access management, Federation, and Secure Web services
                                                                2
OpenSSO Enterprise Model
                   ●
                       Purchase an OpenSSO
                       Enterprise perpetual license
                       (formerly Access Manager),
                       Sun Identity Management
                       Suite subscription or Java
                       Enterprise System
                       subscription
                   ●
                       Receive Support and
                       indemnification on OpenSSO
                       commercial builds and
                       Express builds.
                   ●   Customers choose whichever
                       builds works best for them!




                                                      3
OpenSSO Enterprise Options
• OpenSSO Express Build
  > A community build that has undergone extensive
    automated testing and moderate manual testing by Sun
    Quality Assurance Engineering Team.
  > Delivered every 3 months
• OpenSSO Commercial Build
  > A community build that has undergone extensive manual
    and automated testing by Sun Quality Assurance
    Engineering Team.
  > Delivered every 12 – 15 months


                                                            4
Solution: OpenSSO Web Access Management
Three Tough Challenges. One Powerful Solution.

•   Centralized server configuration
•   Centralized agent configuration
•   Agent and proxy modes
•   AAA Identity Services
•   Embedded directory server for user store and policy store
•   XACML support for standards-based policy management
•   Consumes and translates 3rd party tokens from all major
    WAM solutions


                                                                5
Solution: OpenSSO Federation
Three Tough Challenges. One Powerful Solution.
• The Fedlet, 8.5MB package that allows service providers to
  create fully configured trust networks based SAML 2 in minutes
• Multi-protocol Federation Hub, easily federate with any company
  regardless of what “federation language” they speak
• Virtual Federation Proxy, incorporate any number of legacy
  authentications with a single instance of OpenSSO
• Supports all major standards including SAML, WS-Federation,
  Liberty ID-FF, WS-Trust, WS-Security, and WS-Policy
• Consumes and translates 3rd party tokens from all major WAM
  solutions


                                                                    6
Solution: OpenSSO Secure Web Services
Three Tough Challenges. One Powerful Solution.
• Only standards-based solution in the world to provide a
  pluggable, end-to-end secure web-services solution
• Out -of-box tooling by Netbeans and Glassfish
• SecurityToken Service that can be deployed as an
  Integrated, or standalone, solution
• Security Token Service that can handle token issuance,
  validation and translation via WS-Trust
• Policy enforcement point plugins for Weblogic, WebSphere,
  Tomcat and JBOSS


                                                              7
Bonus: Entitlement Management
• Ability to protect resources and objects within them
  >   Generic policy engine
  >   Policy Decision Point
  >   Policy Management Point
  >   Identity Web Services to invoke Authorization
  >   Supports Java, C, REST, SOAP and XACML




                                                         8
Sun is Positioned in the Leaders Quadrant




Gartner Magic Quadrant for Web Access Management, Ray Wagner, Earl Perkins, Perry Carpenter, 10 November 2008
  The Magic Quadrant is copyrighted 10 November 2008 by Gartner, Inc. and is reused with permission. The Magic Quadrant is a graphical representation of a marketplace at and for a specific time period. It depicts
  Gartner's analysis of how certain vendors measure against criteria for that marketplace, as defined by Gartner. Gartner does not endorse any vendor, product or service depicted in the Magic Quadrant, and does not
  advise technology users to select only those vendors placed in the “Leaders” quadrant. The Magic Quadrant is intended solely as a research tool, and is not meant to be a specific guide to action Gartner disclaims all
  warranties, express or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose. The Magic Quadrant graphic was published by Gartner, Inc., as part of a larger
  research note and should be evaluated in the context of the entire report. The Gartner report is available upon request from Sun Microsystems.


                                                                                                                                                                                                                                   9
What's Next
• Carrier-Grade Monitoring (Q1 2009)
• More Ease-of-Use Task Flows (Q1 / Q2 2009)
• SaaS Federation Task Flows (Q1 / Q2 2009)
• Entitlement Management (Q2 2009)




                                               10
Carrier-Grade Monitoring (Q1 2009)
• Working with key Telco companies to develop
  carrier-grade monitoring in OpenSSO
• Will provide server level monitoring and
  management across entire OpenSSO Enterprise
  deployment
  > Test agents to ensure they are responding to client
    requests.
  > Real-time of view of OpenSSO Deployment
  > Quickly identify and address problems
• Integrates with 3rd party monitoring and reporting
  tools
                                                          11
More Ease-of-Use Task Flows (Q1 / Q2 2009)
• Protect a Resource Flow
• Create a Realm Flow
• Configure / Deploy and Agent Flow
• Configure an Authentication Store
• Configure an Instance
• Select an Admin for a Realm




                                             12
SaaS Federation Task Flows (Q1 / Q2 2009)

• Provide simple task flows for configuring federated
  SSO with popular SaaS services
• Focus on standards-based services rather than
  proprietary




                                                        13
Entitlement Management (Spring 2009)
• Extend OpenSSO to solve access management,
  federation, secure web services and
  ENTITLEMENT MANAGEMENT.
  >   Policy Engine Benchmark – Millions of policies
  >   Killer Policy Management User interface
  >   Build as reusable composite service for RM and IM
  >   Policy attestation and entitlements warehouse

• 3 +1 = 4 Tough Challenges. One powerful solution.


                                                          14
Entitlement Management (Spring 2009)
Composite, Reusable Service
• Easily embed policy management point and policy
  decision point as a composite, reusable service in
  Identity Manager, Role Manager, 3rd party
  application.
• Allows for a single policy store and common user
  experience
• Invoke EM web services using IDE of choice



                                                       15
OpenSSO: Latest Innovation
• Presto-Change-O Install
  >   Embedded Glassfish
  >   JavaWebstart Installation
  >   Pre-configured
  >   One Click
• http://tinyurl.com/openssonow




                                  16
Free Training Labs
• Five downloadable, self-paced labs
  >   deploy two Apache Tomcat servers
  >   SSL-enable them
  >   install a software load balancer
  >   install OpenSSO into the environment
  >   configure for session failover
• Includes virtual image containing
  OpenSolaris, Glassfish, OpenSSO
  and OpenDS
  > Fast forward or rewind image using ZFS

• Go to OpenSSO.org and click on
  Training

                                             17
OpenSSO Community

                    • In less than 2 years...
                       > 750+ project members at
                         opensso.org
                       > ~15 external committers


                    • Production deployments
                       > www.audi.co.uk
                         250,000 customer profiles
                       > openid.sun.com
                         OpenID for Sun employees
                       > telenet.be
                         Foundation for fine-grained
                         authorization



                                                       18
Thank You.
Daniel Raskin
d.raskin@sun.com



                   19

More Related Content

PPTX
Cygate Lounge 2011 - VCE
PDF
VMworld 2013: Architectural Changes in vCenter Platform
PDF
Presentation v cloud suite 5.1 – what’s new
PPTX
Vblock Infrastructure Platforms
PPT
S102 cics the future is closer abridged
PDF
VCE VBLOCK SYSTEMS
PPT
Vblock Infrastructure Packages — integrated best-of-breed packages from VMwar...
PPTX
Case Study: Developing a Vblock Systems Based Private Cloud Platform with Pup...
Cygate Lounge 2011 - VCE
VMworld 2013: Architectural Changes in vCenter Platform
Presentation v cloud suite 5.1 – what’s new
Vblock Infrastructure Platforms
S102 cics the future is closer abridged
VCE VBLOCK SYSTEMS
Vblock Infrastructure Packages — integrated best-of-breed packages from VMwar...
Case Study: Developing a Vblock Systems Based Private Cloud Platform with Pup...

What's hot (20)

PPTX
Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013
PDF
IBM DataPower Gateway appliances feature & virtual edition comparison
PDF
Dedicated Hosting
PDF
Pune open cloudfoundry keynote niranjan maka share
PDF
VCE Vblock Systems Foundation Exam for VCE Certified Converged Infrastructure...
 
PPTX
Scvmm 2012 Building of Private Clouds and Federation to the Public Cloud
PDF
Build 4 The Cloud By Cisco&VMware1
PDF
Presentation cisco vxi–optimized infrastructure for scaling v mware view wi...
PDF
VMware vSphere5.1 Training
PPTX
SIM204-What's Coming in Virtual Machine Manager 2012?
PDF
VCE_value_brochure
PPT
Why Security Teams should care about VMware
PDF
Datapowercommonusecases 130509114200-phpapp02
PDF
Internet Explorer 8
PDF
VMware ventaja competitiva
PPTX
Backup2013 - Barracuda Networks
PDF
Presentation cloud, the whole offer
PDF
Datasheet: WebSphere DataPower B2B Appliance XB62
PPT
The 7 Essential Features of AIS vCloudOne
PDF
Vmware Seminar Security & Compliance for the cloud with Trend Micro
Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013
IBM DataPower Gateway appliances feature & virtual edition comparison
Dedicated Hosting
Pune open cloudfoundry keynote niranjan maka share
VCE Vblock Systems Foundation Exam for VCE Certified Converged Infrastructure...
 
Scvmm 2012 Building of Private Clouds and Federation to the Public Cloud
Build 4 The Cloud By Cisco&VMware1
Presentation cisco vxi–optimized infrastructure for scaling v mware view wi...
VMware vSphere5.1 Training
SIM204-What's Coming in Virtual Machine Manager 2012?
VCE_value_brochure
Why Security Teams should care about VMware
Datapowercommonusecases 130509114200-phpapp02
Internet Explorer 8
VMware ventaja competitiva
Backup2013 - Barracuda Networks
Presentation cloud, the whole offer
Datasheet: WebSphere DataPower B2B Appliance XB62
The 7 Essential Features of AIS vCloudOne
Vmware Seminar Security & Compliance for the cloud with Trend Micro
Ad

Similar to Open sso enterprise customer pitch (20)

ODP
Open sso enterprise customer pitch
PDF
Open Source Identity Integration with OpenSSO
PDF
OpenSSO Roadmap Aquarium
PDF
Open sso fisl9.0
ODP
Zarafa SummerCamp 2012 - Keynote Peter Ganten
PPT
Vikas Jain Past Work
PDF
Tdp ws trust
PDF
Company Profile U S
PDF
WSO2Con ASIA 2016: Case Study: Identity in the WSO2 Ecosystem
PDF
Telecom security issues (Raoul Chiesa, day 1 )
PDF
Cpp In Soa
PDF
Easier SOA with EasySOA - OW2 Conference 2010 – 23-24 November, Paris
PDF
30ian2009 sun
PDF
Report Gartner Magic Quadrant For Security Web Gateway 2011 En
DOCX
Sso & rman
PDF
Nuxeo World Session: Gagnavarslan and Nuxeo - Building software services on N...
PPTX
SANS Institute Product Review of Oracle Identity Manager
PDF
OpenSSO Tech Overview Aquarium
PDF
Attacking XML Security
Open sso enterprise customer pitch
Open Source Identity Integration with OpenSSO
OpenSSO Roadmap Aquarium
Open sso fisl9.0
Zarafa SummerCamp 2012 - Keynote Peter Ganten
Vikas Jain Past Work
Tdp ws trust
Company Profile U S
WSO2Con ASIA 2016: Case Study: Identity in the WSO2 Ecosystem
Telecom security issues (Raoul Chiesa, day 1 )
Cpp In Soa
Easier SOA with EasySOA - OW2 Conference 2010 – 23-24 November, Paris
30ian2009 sun
Report Gartner Magic Quadrant For Security Web Gateway 2011 En
Sso & rman
Nuxeo World Session: Gagnavarslan and Nuxeo - Building software services on N...
SANS Institute Product Review of Oracle Identity Manager
OpenSSO Tech Overview Aquarium
Attacking XML Security
Ad

More from xKinAnx (20)

PPTX
Engage for success ibm spectrum accelerate 2
PPTX
Accelerate with ibm storage ibm spectrum virtualize hyper swap deep dive
PDF
Software defined storage provisioning using ibm smart cloud
PDF
Ibm spectrum virtualize 101
PDF
Accelerate with ibm storage ibm spectrum virtualize hyper swap deep dive dee...
PDF
04 empalis -ibm_spectrum_protect_-_strategy_and_directions
PPTX
Ibm spectrum scale fundamentals workshop for americas part 1 components archi...
PPTX
Ibm spectrum scale fundamentals workshop for americas part 2 IBM Spectrum Sca...
PPTX
Ibm spectrum scale fundamentals workshop for americas part 3 Information Life...
PPTX
Ibm spectrum scale fundamentals workshop for americas part 4 Replication, Str...
PPTX
Ibm spectrum scale fundamentals workshop for americas part 4 spectrum scale_r...
PPTX
Ibm spectrum scale fundamentals workshop for americas part 5 spectrum scale_c...
PPTX
Ibm spectrum scale fundamentals workshop for americas part 6 spectrumscale el...
PPTX
Ibm spectrum scale fundamentals workshop for americas part 7 spectrumscale el...
PPT
Ibm spectrum scale fundamentals workshop for americas part 8 spectrumscale ba...
PPTX
Ibm spectrum scale fundamentals workshop for americas part 5 ess gnr-usecases...
PDF
Presentation disaster recovery in virtualization and cloud
PDF
Presentation disaster recovery for oracle fusion middleware with the zfs st...
PDF
Presentation differentiated virtualization for enterprise clouds, large and...
PDF
Presentation desktops for the cloud the view rollout
Engage for success ibm spectrum accelerate 2
Accelerate with ibm storage ibm spectrum virtualize hyper swap deep dive
Software defined storage provisioning using ibm smart cloud
Ibm spectrum virtualize 101
Accelerate with ibm storage ibm spectrum virtualize hyper swap deep dive dee...
04 empalis -ibm_spectrum_protect_-_strategy_and_directions
Ibm spectrum scale fundamentals workshop for americas part 1 components archi...
Ibm spectrum scale fundamentals workshop for americas part 2 IBM Spectrum Sca...
Ibm spectrum scale fundamentals workshop for americas part 3 Information Life...
Ibm spectrum scale fundamentals workshop for americas part 4 Replication, Str...
Ibm spectrum scale fundamentals workshop for americas part 4 spectrum scale_r...
Ibm spectrum scale fundamentals workshop for americas part 5 spectrum scale_c...
Ibm spectrum scale fundamentals workshop for americas part 6 spectrumscale el...
Ibm spectrum scale fundamentals workshop for americas part 7 spectrumscale el...
Ibm spectrum scale fundamentals workshop for americas part 8 spectrumscale ba...
Ibm spectrum scale fundamentals workshop for americas part 5 ess gnr-usecases...
Presentation disaster recovery in virtualization and cloud
Presentation disaster recovery for oracle fusion middleware with the zfs st...
Presentation differentiated virtualization for enterprise clouds, large and...
Presentation desktops for the cloud the view rollout

Recently uploaded (20)

PDF
A symptom-driven medical diagnosis support model based on machine learning te...
PDF
Improvisation in detection of pomegranate leaf disease using transfer learni...
PDF
SaaS reusability assessment using machine learning techniques
PPTX
AI-driven Assurance Across Your End-to-end Network With ThousandEyes
PDF
CXOs-Are-you-still-doing-manual-DevOps-in-the-age-of-AI.pdf
PDF
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
PDF
EIS-Webinar-Regulated-Industries-2025-08.pdf
PPTX
Microsoft User Copilot Training Slide Deck
PPTX
agenticai-neweraofintelligence-250529192801-1b5e6870.pptx
PDF
Convolutional neural network based encoder-decoder for efficient real-time ob...
PDF
5-Ways-AI-is-Revolutionizing-Telecom-Quality-Engineering.pdf
PDF
“The Future of Visual AI: Efficient Multimodal Intelligence,” a Keynote Prese...
PDF
Electrocardiogram sequences data analytics and classification using unsupervi...
PDF
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
PDF
NewMind AI Weekly Chronicles – August ’25 Week IV
PDF
The-2025-Engineering-Revolution-AI-Quality-and-DevOps-Convergence.pdf
PPTX
Training Program for knowledge in solar cell and solar industry
PDF
LMS bot: enhanced learning management systems for improved student learning e...
PDF
Early detection and classification of bone marrow changes in lumbar vertebrae...
PPTX
Module 1 Introduction to Web Programming .pptx
A symptom-driven medical diagnosis support model based on machine learning te...
Improvisation in detection of pomegranate leaf disease using transfer learni...
SaaS reusability assessment using machine learning techniques
AI-driven Assurance Across Your End-to-end Network With ThousandEyes
CXOs-Are-you-still-doing-manual-DevOps-in-the-age-of-AI.pdf
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
EIS-Webinar-Regulated-Industries-2025-08.pdf
Microsoft User Copilot Training Slide Deck
agenticai-neweraofintelligence-250529192801-1b5e6870.pptx
Convolutional neural network based encoder-decoder for efficient real-time ob...
5-Ways-AI-is-Revolutionizing-Telecom-Quality-Engineering.pdf
“The Future of Visual AI: Efficient Multimodal Intelligence,” a Keynote Prese...
Electrocardiogram sequences data analytics and classification using unsupervi...
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
NewMind AI Weekly Chronicles – August ’25 Week IV
The-2025-Engineering-Revolution-AI-Quality-and-DevOps-Convergence.pdf
Training Program for knowledge in solar cell and solar industry
LMS bot: enhanced learning management systems for improved student learning e...
Early detection and classification of bone marrow changes in lumbar vertebrae...
Module 1 Introduction to Web Programming .pptx

Open sso enterprise customer pitch

  • 2. OpenSSO Enterprise Buy one solution to solve ALL of your SSO problems Web access management, Federation, and Secure Web services 2
  • 3. OpenSSO Enterprise Model ● Purchase an OpenSSO Enterprise perpetual license (formerly Access Manager), Sun Identity Management Suite subscription or Java Enterprise System subscription ● Receive Support and indemnification on OpenSSO commercial builds and Express builds. ● Customers choose whichever builds works best for them! 3
  • 4. OpenSSO Enterprise Options • OpenSSO Express Build > A community build that has undergone extensive automated testing and moderate manual testing by Sun Quality Assurance Engineering Team. > Delivered every 3 months • OpenSSO Commercial Build > A community build that has undergone extensive manual and automated testing by Sun Quality Assurance Engineering Team. > Delivered every 12 – 15 months 4
  • 5. Solution: OpenSSO Web Access Management Three Tough Challenges. One Powerful Solution. • Centralized server configuration • Centralized agent configuration • Agent and proxy modes • AAA Identity Services • Embedded directory server for user store and policy store • XACML support for standards-based policy management • Consumes and translates 3rd party tokens from all major WAM solutions 5
  • 6. Solution: OpenSSO Federation Three Tough Challenges. One Powerful Solution. • The Fedlet, 8.5MB package that allows service providers to create fully configured trust networks based SAML 2 in minutes • Multi-protocol Federation Hub, easily federate with any company regardless of what “federation language” they speak • Virtual Federation Proxy, incorporate any number of legacy authentications with a single instance of OpenSSO • Supports all major standards including SAML, WS-Federation, Liberty ID-FF, WS-Trust, WS-Security, and WS-Policy • Consumes and translates 3rd party tokens from all major WAM solutions 6
  • 7. Solution: OpenSSO Secure Web Services Three Tough Challenges. One Powerful Solution. • Only standards-based solution in the world to provide a pluggable, end-to-end secure web-services solution • Out -of-box tooling by Netbeans and Glassfish • SecurityToken Service that can be deployed as an Integrated, or standalone, solution • Security Token Service that can handle token issuance, validation and translation via WS-Trust • Policy enforcement point plugins for Weblogic, WebSphere, Tomcat and JBOSS 7
  • 8. Bonus: Entitlement Management • Ability to protect resources and objects within them > Generic policy engine > Policy Decision Point > Policy Management Point > Identity Web Services to invoke Authorization > Supports Java, C, REST, SOAP and XACML 8
  • 9. Sun is Positioned in the Leaders Quadrant Gartner Magic Quadrant for Web Access Management, Ray Wagner, Earl Perkins, Perry Carpenter, 10 November 2008 The Magic Quadrant is copyrighted 10 November 2008 by Gartner, Inc. and is reused with permission. The Magic Quadrant is a graphical representation of a marketplace at and for a specific time period. It depicts Gartner's analysis of how certain vendors measure against criteria for that marketplace, as defined by Gartner. Gartner does not endorse any vendor, product or service depicted in the Magic Quadrant, and does not advise technology users to select only those vendors placed in the “Leaders” quadrant. The Magic Quadrant is intended solely as a research tool, and is not meant to be a specific guide to action Gartner disclaims all warranties, express or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose. The Magic Quadrant graphic was published by Gartner, Inc., as part of a larger research note and should be evaluated in the context of the entire report. The Gartner report is available upon request from Sun Microsystems. 9
  • 10. What's Next • Carrier-Grade Monitoring (Q1 2009) • More Ease-of-Use Task Flows (Q1 / Q2 2009) • SaaS Federation Task Flows (Q1 / Q2 2009) • Entitlement Management (Q2 2009) 10
  • 11. Carrier-Grade Monitoring (Q1 2009) • Working with key Telco companies to develop carrier-grade monitoring in OpenSSO • Will provide server level monitoring and management across entire OpenSSO Enterprise deployment > Test agents to ensure they are responding to client requests. > Real-time of view of OpenSSO Deployment > Quickly identify and address problems • Integrates with 3rd party monitoring and reporting tools 11
  • 12. More Ease-of-Use Task Flows (Q1 / Q2 2009) • Protect a Resource Flow • Create a Realm Flow • Configure / Deploy and Agent Flow • Configure an Authentication Store • Configure an Instance • Select an Admin for a Realm 12
  • 13. SaaS Federation Task Flows (Q1 / Q2 2009) • Provide simple task flows for configuring federated SSO with popular SaaS services • Focus on standards-based services rather than proprietary 13
  • 14. Entitlement Management (Spring 2009) • Extend OpenSSO to solve access management, federation, secure web services and ENTITLEMENT MANAGEMENT. > Policy Engine Benchmark – Millions of policies > Killer Policy Management User interface > Build as reusable composite service for RM and IM > Policy attestation and entitlements warehouse • 3 +1 = 4 Tough Challenges. One powerful solution. 14
  • 15. Entitlement Management (Spring 2009) Composite, Reusable Service • Easily embed policy management point and policy decision point as a composite, reusable service in Identity Manager, Role Manager, 3rd party application. • Allows for a single policy store and common user experience • Invoke EM web services using IDE of choice 15
  • 16. OpenSSO: Latest Innovation • Presto-Change-O Install > Embedded Glassfish > JavaWebstart Installation > Pre-configured > One Click • http://tinyurl.com/openssonow 16
  • 17. Free Training Labs • Five downloadable, self-paced labs > deploy two Apache Tomcat servers > SSL-enable them > install a software load balancer > install OpenSSO into the environment > configure for session failover • Includes virtual image containing OpenSolaris, Glassfish, OpenSSO and OpenDS > Fast forward or rewind image using ZFS • Go to OpenSSO.org and click on Training 17
  • 18. OpenSSO Community • In less than 2 years... > 750+ project members at opensso.org > ~15 external committers • Production deployments > www.audi.co.uk 250,000 customer profiles > openid.sun.com OpenID for Sun employees > telenet.be Foundation for fine-grained authorization 18