+ All Categories
Home > Documents > Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Date post: 26-Jan-2015
Category:
Upload: hasinig
View: 128 times
Download: 7 times
Share this document with a friend
Description:
This is the set of slides used in WSO2Con 2013 - tutorial session on the topic: "Enterprise Security and Identity Management Use Cases with WSO2 Identity Server", along with demos for each of these use cases.
20
Enterprise Security & Identity Management with WSO2 Identity Server Prabath Siriwardena Hasini Gunasinghe
Transcript
Page 1: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Enterprise Security & Identity Management with WSO2 Identity Server

Prabath Siriwardena Hasini Gunasinghe

Page 2: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Enterprise Security & Identity Management Use Cases

Page 3: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use cases taken from Healthcare IT domain

Page 4: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 1

Managing identity and entitlements of the users securely & efficiently.

Page 5: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 1 with WSO2 IS

User & role management Active

DirectoryClaim

management

Profile management

Self service

Exposing over standard APIs

JDBC

LDAP

Custom user

stores

Page 6: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 2

Create, maintain and terminate user accounts along with user identities across multiple systems including cloud applications.

Page 7: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Internal apps

Provisioning system

Other cloud apps/services

LDAP

Use Case 2 with WSO2 IS

Page 8: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 3

When there are multiple applications which require authentication, users should be able to login at one place and still have seamless access to all the other applications.

Page 9: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 3 with WSO2 IS

Page 10: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 4Authorizing users to perform patient management operations based on fine grained rules :

• Add – Allowed only for users in admin role

• Update – Allowed only for doctors of medicare.com during working hours

• View one – Allowed for doctors and nurses of medicare.com

• View all – Allowed only for doctors of medicare.com

• Delete – Allowed only for users in admin role

Page 11: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 4 with WSO2 Products

Page 12: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 5

A doctor from MediHealth – which is a partner of MediCare should be able to view records of a patient under his/her consultancy.

Page 13: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 5 with WSO2 Products

Secure Token Service of

MediHealth

MediHealth

MediCare

MediHealthcredential

store

Patient’s Records:Name:Age:Medications:

Secured Proxy

1

23

4

Page 14: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 6

Enable internal users as well as general public to authenticate to the collaborative portal based on Liferay using a common authentication mechanism.

Page 15: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Use Case 6 with WSO2 IS

3

3

1

2

1 – provide OpenID URL2 – discover OpenID provider3 – provide credentials and authenticate

Page 16: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Exercises

Question 1:

• Doctors of MediCare needs to retrieve their channeling appointment details in their mobile phones from a backend REST service.

Page 17: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Exercises

Question 2:

• Doctors in a research role of MediCare needs to import electronic medical records of patients into a web based analysis application from the backend system.

Page 18: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Exercises

Question 3:

• External researcher who authenticates to the collaborative portal using OpenID needs to access a BE service which requires a SAML token with certain identity information, in order to obtain anonymized electronic health records.

Page 19: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Exercises

Question 4:

• MediCare expands globally with many branches – each maintaining their own user store and Identity Provider. How a doctor from SL branch can access the patient management portal of the india branch?

Page 20: Enterprise Security and Identity Management Use Cases with WSO2 Identity Server

Thank you


Recommended