Date post: | 15-Jan-2015 |
Category: |
Technology |
Upload: | securitycrunch |
View: | 537 times |
Download: | 0 times |
SecureAuth IEP
May 2011 Greg Hanchin, Trusted Security Advisor – GTRI.com
• SecureAuth Company Overview• About SecureAuth IEP • Demo of Authentication and SSO• Questions
2
Agenda
Company Overview
3
Company• Privately held software company focused on providing
identity enforcement solutions
Continued Sales Momentum• Accelerating revenue – 300%growth• Q4 2010 the best quarter in company history• Competitive wins against RSA, Ping Identity , and more
Customer Expansion• Doubled the number of new customers from prior year• Marquee accounts in North America, EMEA, Asia Pacific and Latin America
Accelerated Channel and Technology partners Growth• Partner network that includes technology and channel partners around the world
Business & Technology Drivers
5
What is SecureAuth IEP?
SecureAuth IEP is a paradigm shift in identity enforcement
•Secures and simplifies access to all cloud, on-premise applications, VPN resources, and mobile devices•Integrates authentication, SSO, and IdM services
6
7
Central IT or SecureAuth IEP Hosted WebServices:
1.Certificate Authority2.Telephony OTP3.Text SMS Messaging
SecureAuth IEP: Technical Architecture
SecureAuth IEP Authentication Services
Comprehensive Authentication Services Increase Security for On-premise and Cloud Applications
– Mutually authenticates both the user and the corresponding resource to prevent phishing and password attacks
– Unique browser based digital certificate eliminates application integration, installation, and management of client software
– Strong authentication native to SSO without third partyintegration
– Mix and match 2-Factor Authentication and SSO runs simultaneously across multiple applications on-premise or in the cloud
– No hardware tokens to be managed, lost or stolen
10
SecureAuth IEP SSO ServicesIntegrated SSO Services increase user productivity and reduce deployment burden on IT
– Extends Desktop log-on to the cloud providing secure, transparent access to Google Apps, Salesforce CRM, ADP, and other applications
– 100% integrated SSO with 2-factor authentication; or configurable as standalone
– “SAML Services in a Box”; automate SAML 1.1, 2.0, OpenID, etc. assertions
– Automatically converts directoryidentities into application identities
11
SecureAuth IdM ServicesBuilt-in IdM Services decrease administrative overhead and reduce help desk costs
– Ensures access anytime from anywhere and reduce calls to your help desk by enabling users to manage/reset their own password
– Supports user self enrollment based on configurable verification methods to meet user and IT requirements
– Fully integrated into Active Directory and other data stores means no data synching or yet another directory to maintain
– Enforces authorization based on your RBAC policies for users and administrators
12
SecureAuth IEP Version 6.0 Raising the Competitive Bar (again!)
• Mobile platform support• Expanded cloud coverage• Multi-tenancy architecture• Enhanced management and
deployment functions
13
2-Factor Authentication for Remote Access from Mobile Platforms• Revolutionizing strong authentication for Android and
iPhones/iPads– 1-touch access to web and cloud applications – Down-loadable SecureAuth application enables simple,
secure set up for strong authentication– Easily deployed stay-resident x.509 certificate– 1-touch certificate revocation
• 2-Factor authentication from the mobile platform back to VPN, on-premise web, and cloud applications– iPhone/iPad, Android, Blackberry, Windows Phone 7, Symbian and more
• End -user self enrollment • Configurable validation options including stay resident• Authenticates the mobile user to the on-premise data store, including Active
Directory• Deliver VPN certs for Juniper and Cisco clients
14
Expanded Cloud Coverage
• Amazon EC2 support to meet market demand– Deploy SecureAuth IEP on Amazon EC2 platform– And/or implement SSO and authentication for Amazon hosted applications
• Intelligent SSO ensures the right level of authentication– Leverages existing Desktop (domain) authentication and/or enforces web –based strong
authentication
• New preconfigured cloud applications make it easier to deploy– SuccessFactors– Concur– ADP– Microsoft Live@edu
15
SecureAuth Multi-tenancy Architecture• Enable unlimited web|VPN|SaaS applications or resources from a single
SecureAuth Appliance• Enterprise Multi-tenant: within an organization to support diverse
requirements of departments/business units, etc.• SaaS Multi-tenant: across organizations to support SaaS model• More scalable
– Multi-tenant infrastructure makes it easy to increase capacity when more horsepower is required (often delaying the purchase of new hardware)
• Better service– Monitor and administer just one platform to deliver
more efficient and effective service and support, including troubleshooting and problem resolution
16
Enhanced Management and Deployment Functions
• Configure don’t code– SAML In a Box eliminates APIs– Enhanced federated identity support– Dial authentication options up or down to meet security
requirements
• Enhanced user experience– Internationalization of user verification interface
17
Competitive Landscape
18
Caution, Caveats
Takes Work
Yes - Supported
No – Not Supported
1100+ CustomersHundreds of Customers and Growing!
19
Mentor Graphics Case Study www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/case_study_c36-558857.html
Case Study
• Dish Network– Remote Access for vendors who install Dishes– Other need arose with their internally hosted web-applications– SSO requirements combined with 2-factor for all vendor and internal
apps.
• Key IT Challenge“Finding a solution that can deliver what we need now and other needs that
we foresee; and still other needs that we don’t foresee.”
20
Strong Partner Network
23
"SecureAuth is an important component of our cloud security strategy and by partnering with them our customers gain access to some of the world's most advanced technology to protect their cloud, web and VPN resources from unauthorized access and the misuse of portable identities,” said Gary Fish, FishNet Security president and CEO. “In one solution, SecureAuth’s identity management and enforcement platform enhances our ability to secure and simplify remote access for our client’s applications on-premise and in the cloud."
Summary (for enterprise)
• Three products for less than the price of one!• Reduces the risk of unauthorized access, phishing
and password attacks, and misuse of portable identities
• Increases user productivity• Rapid deployment; 100% configurable with no
integration• Increases compliance/audit pass rates
SecureAuth IEP: Unprecedented value for on-premise and cloud applications, VPN resources, and mobile devices
24
CORAID: Redefining Storage Economics
Confidential Analyst Presentation - January 2010Questions
26