Directory
Identity and Access Mgmt
Identity and Access Management is a simple topic, with very complicated answers, It asks two key questions; Who are you, and what can you access? To describe this in very basic terms, it is the practice of managing users' electronic identities and the methods by which they can access various resources.
As these products have matured and grown, they have extended the core platforms and services to offer stronger forms of authentication, authorization based on risk, and more detailed access definitions. User provisioning based on roles and relationships has become critical, as well as the ability to virtualize identities.
Products that perform Identity and Access Management typically function in four areas; directory services, identity administration, access management, and audit.
Directory services are the key building blocks for most identity management platforms. The source of the data, the distribution of that data into the directories that require it, and who holds authority for maintaining the data in the directory are all aspects that must be managed carefully.
Identity administration can include user and group management, delegated administration, and approval workflows. Not only should it automate the process of forming, deleting or changing a user identity and associated privileges, there may also be a need for a user to delegate certain of their responsibilities to others in an automated fashion.
Access management allows IT professionals to control user access to enterprise resources. While identity administration manages the user identity data, access management is the guard at the door that determines which users may access what information.
Audit both related administrative and access activities. Organizations require the ability to demonstrate that account administration and access controls are performing according to policy.
Be sure to pilot the processes, not just the technology. Many organizations that have begun identity-management efforts say that business-process issues present bigger hurdles than the technology. Document, document, document. In the process of giving access to your resources to individuals, there can be no room for things to fall through the cracks. Not giving someone all the resources they need to do their job is just plain irritating. Removing an exiting employee from everywhere but (insert critical component here) could be disastrous.
Finally, watch out for industry consolidation. As the security product space compresses and big names buy the little ones to get into the market or expand their portfolio or improve their technology or even blatantly squash competition, the product you buy today from the "other company" could be part of "the big company" before you know it.
Other Information about Identity and Access Management
- Gartner Reveals Four Identity & Access Management Predictions for 2009 and Beyond
- Microsoft TechNet Identity and Access Management Learning Resources
EmpowerID
An automated and centralized identity management platform is the only viable means for delivering consistent service and maintaining control over application security. As the only Identity Lifecycle Management solution built on a platform that incorporate ...
DirX
irX Identity offers an extensive identity management solution for enterprises and organizations. It gives the right people the right access to the right resources at the right time and thus leads to productivity, information security, a perceptible reduct ...
CA Identity Manager
What is CA Identity Manager?
As users enter or leave your organization, or when customers and business partners need to interact with your IT systems, CA Identity Manager ensures they have the appropriate levels of access granted to, or removed from, a ...
Windows Identity Foundation
Formerly known as Geneva
CA Role & Compliance Manager
What is CA Role & Compliance Manager?
It is an identity and access management product, founded on advanced pattern recognition technology, that enables you to quickly and accurately develop, maintain and analyze role models. It also provides centralize ...
nmi-edit
The primary goal of the NMI-EDIT Consortium, part of the NSF Middleware Initiative (NMI), is to improve the productivity of the research and education community through development, testing, and dissemination of architectures, software, and practices ...
CA Access Control
What is CA Access Control?
It is a product for businesses that need to control and monitor access to a diverse set of server based resources. Fine-grained entitlements allow you to limit user privileges, including those of superusers, to only those nec ...
Sun Java System Directory Server Enterprise Edition (DS...
Sun Java System Directory Server Enterprise Edition is the only high-performance directory server with essential data services including proxy, virtual directory and data distribution to provide a highly available directory service -- all in one solution. ...
Sun Identity Manager
At a Glance Better Integration of Business Roles: Integrate with Sun Role Manager to enable importing of predefined business roles and automate provisioning and auditing at the business role level. Data Export: Export identity data and events ...
Sun Identity Compliance Manager
Identity Compliance Manager helps companies streamline operations, enhance compliance, and reduce costs by integrating and automating access certification and separation of duties (SoD) policy enforcement across the enterprise and extranet. Identity Compl ...
IBM Tivoli Identity and Access Manager
IBM Tivoli Access Manager for e-business is a hub for authentication and authorization for Web and other applications, centralizes security management and makes it easy and more cost effective to deploy secure applications. Enables flexible SSO to ...
IBM Tivoli Identity Manager
Easily automate lifecycle management of user roles, identities and access rights This user provisioning and role management software is a secure, automated and policy-based solution for managing user roles, identities and access rights that span hetero ...
Sun OpenSSO Enterprise
Sun OpenSSO Enterprise (formerly Sun Access Manager and Sun Federation Manager) is the single solution for Web access management, federation, and Web services security. ...
Sun Role Manager
Sun Role Manager provides comprehensive role lifecycle management and identity compliance capabilities to streamline operations, enhance compliance, and reduce costs. ...
BMC Identity Management Suite
The BMC Identity Management Route to Value provides a comprehensive and proven solution to align business processes to people. This alignment increases the quality and speed of business execution as IT processes and systems become fully aware of the conte ...
CA Federation Manager
What is CA Federation Manager?
CA Federation Manager provides standards-based identity federation capabilities that enable the users of one organization to easily and securely access the data and applications of another.
What security challenges does ...
CA SiteMinder
What is CA SiteMinder?
It is a centralized Web access management system that enables user authentication and single sign-on, authentication management, policy-based authorization, identity federation and auditing of access to Web applications and porta ...
Ca Single Sign-On
What is CA Single Sign-On?
It is a product that consolidates application access into a single login while providing a superior level of application security. The result is increased employee productivity, improved responsiveness to customers, reduced hel ...
Courion's Access Assurance Suite
Courion Access Assurance Products
Courion's access assurance solutions automate business processes and simultaneously drive down cost, increase security, and enhance service quality for our customers.
Courion's Access Assurance Suite, formerly known as ...
AccesStream
This initiative will allow developers worldwide to participate in the progress of AccesStream's innovative enterprise identity access management solution. The goal of the AccesStream project is to deliver an enterprise class solution offering authen ...

