© 2016 ForgeRock. All rights reserved.
© 2016 ForgeRock. All rights reserved.
Joachim Andres
Director, Product Management
The Future is Now: What’s New in
ForgeRock Identity Gateway
Michelle Fallon
Senior Product Marketing Manager
© 2016 ForgeRock. All rights reserved.
Disclaimer
The presentation represents ForgeRock’s current view of its
product development cycle and future directions. It is intended for
information purposes only, and should not be interpreted as a
commitment on the part of ForgeRock. ForgeRock makes no
warranties, expressed or implied, on future functionality and
timeline.
© 2016 ForgeRock. All rights reserved.
2010 Founded
10 Offices worldwide with headquarters in San Francisco
400+ Employees
600+ Enterprise Customers
50% Americas / 50% International commercial revenues
30+ Countries
ForgeRock
The leading, next-generation,
identity security software platform, driving digital business.
© 2016 ForgeRock. All rights reserved.
Users
Identity
© 2016 ForgeRock. All rights reserved.
Users, Devices, Things, and Services
Identity
Identity
Identity
Identity
Identity
Identity
Identity
Identity
Identity
Identity
Identity
Identity
© 2016 ForgeRock. All rights reserved.
Everyone
And
Every Thing
Identity For
Customer Identity Relationship Management
© 2016 ForgeRock. All rights reserved.
ForgeRock Identity Platform
UMA Provider Mobile App Synchronization Auditing
LDAPv3 REST/JSON
Replication Access Control
Schema
Management
Caching
Auditing
Monitoring
Groups
Password Policy
Active
Directory Pass-thru
Reporting
Authentication Authorization Provisioning User Self-Service Authentication OIDC / OAuth2
Federation / SSO User Self-Service Workflow Engine Reconciliation Password Replay SAML2
Adaptive Risk Stateless/Stateful Registration
Aggregated User
View
Message
Transformation
API Security Scripting
Built from Open Source Projects:
UMA Resource
Access Management Identity Management Identity Gateway
Directory Services
CommonRESTAPI
CommonUserInterface
CommonAudit/Logging
CommonScripting
© 2016 ForgeRock. All rights reserved.
Identity Gateway Use Cases
IdentityGateway
Any App
API
DMZ
REST
End Point
Mobile
M2M API
IoT
• Non-intrusive integration of
applications with IAM
• API & microservices security
• Simple integration with legacy
apps for SSO & AuthZ
• Agentless WAM deployments
• Acting as Federation service
provider / relying party
© 2016 ForgeRock. All rights reserved.
Supporting
Service
How Does it Work?
• Reverse proxy acts as
“message translator”
between client apps or
APIs and servers that can’t
talk to each other natively
• Checks the identity of
HTTP traffic as it passes
through, stopping those
without permissions and
letting the rest pass
Client
App
Server
Side
IdentityGateway
1. Request
2. Transformed
Request
4. Transformed
Response
3. Response
Identity
Services
© 2016 ForgeRock. All rights reserved.
IG 5.0: What’s New ?
• Identity Gateway Studio
• User interface to construct configuration artifacts
• For evaluators and developers
• DevOps
• DevOps guide incl. tutorial to deploy Identity Gateway via Docker
• Sample Dockerfiles
• Immutable and mutable (dev, eval) mode
© 2016 ForgeRock. All rights reserved.
IG 5.0: What’s New ? (cont.)
• Improve agentless access management deployments
• OpenAM SSO authentication filter
• Step-Up authentication with PolicyEnforcementFilter (via advices)
• ContextualAuthorization
• Send client IP and User-Agent into policy evaluation process
• Audit handlers for JSON and JMS
• API Descriptors
© 2016 ForgeRock. All rights reserved.
Demo: Identity Gateway Studio
Web
Application
API
http://internal.example.com:8081
/home
Healthcheck
Throttling
Authentication
Authorization
Context
http://ig.example.com/home
Identity
Gateway
Message Capture
Access
Management
OpenID Connect Provider
Authorization Provider
Microservice
© 2016 ForgeRock. All rights reserved.
The ForgeRock Identity Gateway
bridges your applications to the
modern digital identity world.
© 2016 ForgeRock. All rights reserved.
Thank You

More Related Content

PPTX
Doing Authorisation, Consent, and Delegation Right with UMA - Paris Identity ...
PPTX
NYC Identity Summit Tech Day: Best Practices for API Security
PPTX
Build a Trust Platform to Enable a Frictionless Customer Experience
PPTX
ForgeRock Gartner 2016 Security & Risk Management Summit
PDF
Security & Identity for the Internet of Things Webinar
PDF
Sydney Identity Summit: Doing Authorisation, Consent and Delegation Right wit...
PPTX
Keynote : Customer Identity Builds Digital Trust - Paris Identity Summit
PPTX
Analyst Keynote: Putting Customers First Requires Innovation and Identity - P...
Doing Authorisation, Consent, and Delegation Right with UMA - Paris Identity ...
NYC Identity Summit Tech Day: Best Practices for API Security
Build a Trust Platform to Enable a Frictionless Customer Experience
ForgeRock Gartner 2016 Security & Risk Management Summit
Security & Identity for the Internet of Things Webinar
Sydney Identity Summit: Doing Authorisation, Consent and Delegation Right wit...
Keynote : Customer Identity Builds Digital Trust - Paris Identity Summit
Analyst Keynote: Putting Customers First Requires Innovation and Identity - P...

What's hot (20)

PPTX
NYC Identity Summit Business Day: Identity is the Center of Everything (Mike ...
PPT
Canberra Executive Breakfast - A Citizen-Centric Approach to Identity
PPTX
NYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
PPTX
Sydney Identity Summit: The Future's So Bright, I Gotta Wear Shades
PDF
ForgeRock Platform Release - Summer 2016
PDF
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
PPTX
Identity Objects in Mirror Are Closer Than They Appear - Identity Live 2017 -...
PPTX
Doing Authorisation, Consent, and Delegation Right with UMA - London Identity...
PPTX
Customer Identity Builds Digital Trust - London Identity Summit
PPTX
User-Managed Access: Why and How? - Access Control in Digital Contract Contexts
PDF
The Future of Digital Identity in the Age of the Internet of Things
PPTX
Identity Live London 2017 | Daniel Raskin
PPTX
Identity Live London 2017 | Ashley Stevenson
PDF
Sydney Identity Summit: Compound Eye: An Approach To A National Identity Ecos...
PDF
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
PPTX
NYC Identity Summit Business Day: "Identity - The Future's So Bright I Gotta ...
PPTX
Victor Ake and Chris Kawalek - ForgeRock Identity Live 2017 - Dusseldorf
PPT
Incredible Edible Identity
PPTX
Identity Management with the ForgeRock Identity Platform - So What’s New?
PPTX
Identity Live Sydney 2017 - Ashley Stevenson
NYC Identity Summit Business Day: Identity is the Center of Everything (Mike ...
Canberra Executive Breakfast - A Citizen-Centric Approach to Identity
NYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
Sydney Identity Summit: The Future's So Bright, I Gotta Wear Shades
ForgeRock Platform Release - Summer 2016
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
Identity Objects in Mirror Are Closer Than They Appear - Identity Live 2017 -...
Doing Authorisation, Consent, and Delegation Right with UMA - London Identity...
Customer Identity Builds Digital Trust - London Identity Summit
User-Managed Access: Why and How? - Access Control in Digital Contract Contexts
The Future of Digital Identity in the Age of the Internet of Things
Identity Live London 2017 | Daniel Raskin
Identity Live London 2017 | Ashley Stevenson
Sydney Identity Summit: Compound Eye: An Approach To A National Identity Ecos...
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
NYC Identity Summit Business Day: "Identity - The Future's So Bright I Gotta ...
Victor Ake and Chris Kawalek - ForgeRock Identity Live 2017 - Dusseldorf
Incredible Edible Identity
Identity Management with the ForgeRock Identity Platform - So What’s New?
Identity Live Sydney 2017 - Ashley Stevenson
Ad

Viewers also liked (18)

PDF
The Future is Now: What’s New in ForgeRock Directory Services
PDF
The Future is Now: What’s New in ForgeRock Access Management
PDF
The Future is Now: What’s New in ForgeRock Identity Management
PPTX
Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016
PDF
Privileged identity management
 
PDF
Workshop Identity Access Management voor Studenten - University of Twente 201...
PPT
THE FORGEROCK PLATFORM BIG PICTURE
PDF
Integration Summit 16 - Keynote Integration Trends
PPTX
A Backstage Tour of Identity - Paris Identity Summit 2016
PPTX
CrossIdeas Roadshow IAM Governance IBM Marco Venuti
PDF
Lasse Andresen - ForgeRock - Stanford - Feb 7 2011
PPTX
user interface skill presentation
PDF
Portfolio WRM
PDF
Buyers Guide for Governance
PPTX
Identity & Access Governance versus Process Agility
PDF
Advanced persistent threats(APT) - Infographic
PDF
IBM Identity Governance & Intelligence
PPTX
Identity Governance Solutions
The Future is Now: What’s New in ForgeRock Directory Services
The Future is Now: What’s New in ForgeRock Access Management
The Future is Now: What’s New in ForgeRock Identity Management
Keynote: Tech, Trust, and Transformation - Paris Identity Summit 2016
Privileged identity management
 
Workshop Identity Access Management voor Studenten - University of Twente 201...
THE FORGEROCK PLATFORM BIG PICTURE
Integration Summit 16 - Keynote Integration Trends
A Backstage Tour of Identity - Paris Identity Summit 2016
CrossIdeas Roadshow IAM Governance IBM Marco Venuti
Lasse Andresen - ForgeRock - Stanford - Feb 7 2011
user interface skill presentation
Portfolio WRM
Buyers Guide for Governance
Identity & Access Governance versus Process Agility
Advanced persistent threats(APT) - Infographic
IBM Identity Governance & Intelligence
Identity Governance Solutions
Ad

Similar to The Future is Now: What’s New in ForgeRock Identity Gateway (20)

PPTX
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
PPTX
Webinar: Access Management with the ForgeRock Identity Platform - So What’s N...
PPTX
Webinar: ForgeRock Identity Platform Preview (Dec 2015)
PDF
Sydney Identity Unconference Introduction and Highlights
PDF
Modernizing Identity Access Management Platforms - Dale Kinney & Damian Flannery
PPTX
Directory Services with the ForgeRock Identity Platform - So What’s New?
PPTX
OpenIG Webinar: Your Swiss Army Knife for Protecting and Securing Web Apps, A...
PDF
Pas d'IoT sans Identité!
PDF
Security On The Edge - A New Way To Think About Securing the Internet of Things
PDF
Identity Live Singapore: Building Trust & Privacy in a Connected Society
PDF
Sydney Identity Summit: Addressing the New Threat Landscape with Continuous S...
PDF
Webinar: Making the Move from Legacy IAM to Modern Digital Identity – On Your...
PPTX
Webinar: Identity Wars: The Unified Platform Awakens
PPTX
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
PPTX
Opening Remarks by Mike Ellis
PDF
No IoT Without Identity
PPTX
Webinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
PDF
Identity Live Sydney: Building Trust and Privacy in a Connected Society
PDF
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
PDF
Sydney Identity Summit: Using Identity to Build Digital Trust (Mike Ellis Intro)
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
Webinar: Access Management with the ForgeRock Identity Platform - So What’s N...
Webinar: ForgeRock Identity Platform Preview (Dec 2015)
Sydney Identity Unconference Introduction and Highlights
Modernizing Identity Access Management Platforms - Dale Kinney & Damian Flannery
Directory Services with the ForgeRock Identity Platform - So What’s New?
OpenIG Webinar: Your Swiss Army Knife for Protecting and Securing Web Apps, A...
Pas d'IoT sans Identité!
Security On The Edge - A New Way To Think About Securing the Internet of Things
Identity Live Singapore: Building Trust & Privacy in a Connected Society
Sydney Identity Summit: Addressing the New Threat Landscape with Continuous S...
Webinar: Making the Move from Legacy IAM to Modern Digital Identity – On Your...
Webinar: Identity Wars: The Unified Platform Awakens
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
Opening Remarks by Mike Ellis
No IoT Without Identity
Webinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
Identity Live Sydney: Building Trust and Privacy in a Connected Society
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
Sydney Identity Summit: Using Identity to Build Digital Trust (Mike Ellis Intro)

More from ForgeRock (20)

PDF
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
PPTX
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
PDF
Identity Live Sydney: Identity Management - A Strategic Opportunity
PDF
Identity Live Singapore: Transform Your Cybersecurity Capability
PDF
Identity Live Singapore 2018 Keynote Presentation
PDF
Identity Live Sydney 2018 Keynote Presentation
PDF
Identity Live Singapore: Just Ask 'Em
PDF
Identity Live Sydney: Intelligent Authentication
PDF
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
PPTX
Get the Exact Identity Solution You Need - In the Cloud - Overview
PDF
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
PDF
Opening Keynote (Identity Live Berlin 2018)
PDF
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
PDF
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
PDF
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
PDF
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
PDF
Shift from GDPR readiness to sustained compliance to improve your business an...
PDF
Intelligent Authentication (Identity Live Berlin 2018)
PDF
Customer Safeguarding, Fraud and GDPR: Manah Khalil
PDF
Applying Innovative Tools for GDPR Success
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Identity Live Sydney: Identity Management - A Strategic Opportunity
Identity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote Presentation
Identity Live Singapore: Just Ask 'Em
Identity Live Sydney: Intelligent Authentication
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution You Need - In the Cloud - Overview
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
Opening Keynote (Identity Live Berlin 2018)
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Shift from GDPR readiness to sustained compliance to improve your business an...
Intelligent Authentication (Identity Live Berlin 2018)
Customer Safeguarding, Fraud and GDPR: Manah Khalil
Applying Innovative Tools for GDPR Success

Recently uploaded (20)

PDF
5-Ways-AI-is-Revolutionizing-Telecom-Quality-Engineering.pdf
PDF
Enhancing plagiarism detection using data pre-processing and machine learning...
PDF
IT-ITes Industry bjjbnkmkhkhknbmhkhmjhjkhj
PPTX
AI-driven Assurance Across Your End-to-end Network With ThousandEyes
PDF
Transform-Your-Supply-Chain-with-AI-Driven-Quality-Engineering.pdf
PDF
Early detection and classification of bone marrow changes in lumbar vertebrae...
PPTX
Training Program for knowledge in solar cell and solar industry
DOCX
Basics of Cloud Computing - Cloud Ecosystem
PDF
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
PDF
Co-training pseudo-labeling for text classification with support vector machi...
PDF
MENA-ECEONOMIC-CONTEXT-VC MENA-ECEONOMIC
PDF
INTERSPEECH 2025 「Recent Advances and Future Directions in Voice Conversion」
PDF
Aug23rd - Mulesoft Community Workshop - Hyd, India.pdf
PDF
“A New Era of 3D Sensing: Transforming Industries and Creating Opportunities,...
PDF
AI.gov: A Trojan Horse in the Age of Artificial Intelligence
PDF
The-Future-of-Automotive-Quality-is-Here-AI-Driven-Engineering.pdf
PDF
Produktkatalog für HOBO Datenlogger, Wetterstationen, Sensoren, Software und ...
PDF
Rapid Prototyping: A lecture on prototyping techniques for interface design
PPT
Galois Field Theory of Risk: A Perspective, Protocol, and Mathematical Backgr...
PPTX
GROUP4NURSINGINFORMATICSREPORT-2 PRESENTATION
5-Ways-AI-is-Revolutionizing-Telecom-Quality-Engineering.pdf
Enhancing plagiarism detection using data pre-processing and machine learning...
IT-ITes Industry bjjbnkmkhkhknbmhkhmjhjkhj
AI-driven Assurance Across Your End-to-end Network With ThousandEyes
Transform-Your-Supply-Chain-with-AI-Driven-Quality-Engineering.pdf
Early detection and classification of bone marrow changes in lumbar vertebrae...
Training Program for knowledge in solar cell and solar industry
Basics of Cloud Computing - Cloud Ecosystem
Planning-an-Audit-A-How-To-Guide-Checklist-WP.pdf
Co-training pseudo-labeling for text classification with support vector machi...
MENA-ECEONOMIC-CONTEXT-VC MENA-ECEONOMIC
INTERSPEECH 2025 「Recent Advances and Future Directions in Voice Conversion」
Aug23rd - Mulesoft Community Workshop - Hyd, India.pdf
“A New Era of 3D Sensing: Transforming Industries and Creating Opportunities,...
AI.gov: A Trojan Horse in the Age of Artificial Intelligence
The-Future-of-Automotive-Quality-is-Here-AI-Driven-Engineering.pdf
Produktkatalog für HOBO Datenlogger, Wetterstationen, Sensoren, Software und ...
Rapid Prototyping: A lecture on prototyping techniques for interface design
Galois Field Theory of Risk: A Perspective, Protocol, and Mathematical Backgr...
GROUP4NURSINGINFORMATICSREPORT-2 PRESENTATION

The Future is Now: What’s New in ForgeRock Identity Gateway

  • 1. © 2016 ForgeRock. All rights reserved.
  • 2. © 2016 ForgeRock. All rights reserved. Joachim Andres Director, Product Management The Future is Now: What’s New in ForgeRock Identity Gateway Michelle Fallon Senior Product Marketing Manager
  • 3. © 2016 ForgeRock. All rights reserved. Disclaimer The presentation represents ForgeRock’s current view of its product development cycle and future directions. It is intended for information purposes only, and should not be interpreted as a commitment on the part of ForgeRock. ForgeRock makes no warranties, expressed or implied, on future functionality and timeline.
  • 4. © 2016 ForgeRock. All rights reserved. 2010 Founded 10 Offices worldwide with headquarters in San Francisco 400+ Employees 600+ Enterprise Customers 50% Americas / 50% International commercial revenues 30+ Countries ForgeRock The leading, next-generation, identity security software platform, driving digital business.
  • 5. © 2016 ForgeRock. All rights reserved. Users Identity
  • 6. © 2016 ForgeRock. All rights reserved. Users, Devices, Things, and Services Identity Identity Identity Identity Identity Identity Identity Identity Identity Identity Identity Identity
  • 7. © 2016 ForgeRock. All rights reserved. Everyone And Every Thing Identity For Customer Identity Relationship Management
  • 8. © 2016 ForgeRock. All rights reserved. ForgeRock Identity Platform UMA Provider Mobile App Synchronization Auditing LDAPv3 REST/JSON Replication Access Control Schema Management Caching Auditing Monitoring Groups Password Policy Active Directory Pass-thru Reporting Authentication Authorization Provisioning User Self-Service Authentication OIDC / OAuth2 Federation / SSO User Self-Service Workflow Engine Reconciliation Password Replay SAML2 Adaptive Risk Stateless/Stateful Registration Aggregated User View Message Transformation API Security Scripting Built from Open Source Projects: UMA Resource Access Management Identity Management Identity Gateway Directory Services CommonRESTAPI CommonUserInterface CommonAudit/Logging CommonScripting
  • 9. © 2016 ForgeRock. All rights reserved. Identity Gateway Use Cases IdentityGateway Any App API DMZ REST End Point Mobile M2M API IoT • Non-intrusive integration of applications with IAM • API & microservices security • Simple integration with legacy apps for SSO & AuthZ • Agentless WAM deployments • Acting as Federation service provider / relying party
  • 10. © 2016 ForgeRock. All rights reserved. Supporting Service How Does it Work? • Reverse proxy acts as “message translator” between client apps or APIs and servers that can’t talk to each other natively • Checks the identity of HTTP traffic as it passes through, stopping those without permissions and letting the rest pass Client App Server Side IdentityGateway 1. Request 2. Transformed Request 4. Transformed Response 3. Response Identity Services
  • 11. © 2016 ForgeRock. All rights reserved. IG 5.0: What’s New ? • Identity Gateway Studio • User interface to construct configuration artifacts • For evaluators and developers • DevOps • DevOps guide incl. tutorial to deploy Identity Gateway via Docker • Sample Dockerfiles • Immutable and mutable (dev, eval) mode
  • 12. © 2016 ForgeRock. All rights reserved. IG 5.0: What’s New ? (cont.) • Improve agentless access management deployments • OpenAM SSO authentication filter • Step-Up authentication with PolicyEnforcementFilter (via advices) • ContextualAuthorization • Send client IP and User-Agent into policy evaluation process • Audit handlers for JSON and JMS • API Descriptors
  • 13. © 2016 ForgeRock. All rights reserved. Demo: Identity Gateway Studio Web Application API http://internal.example.com:8081 /home Healthcheck Throttling Authentication Authorization Context http://ig.example.com/home Identity Gateway Message Capture Access Management OpenID Connect Provider Authorization Provider Microservice
  • 14. © 2016 ForgeRock. All rights reserved. The ForgeRock Identity Gateway bridges your applications to the modern digital identity world.
  • 15. © 2016 ForgeRock. All rights reserved. Thank You