SlideShare a Scribd company logo
1 of 19
© 2016 ForgeRock. All rights reserved.
ForgeRock Identity Platform
Identity Management
• Tim Sedlack, Sr Product Manager
• Rob MacDonald, Product Marketing Director
© 2016 ForgeRock. All rights reserved.
ForgeRock: At a Glance
• Fastest-growing open source identity security
software company in the world
• Founded: 2010
• Headquartered in San Francisco with offices
in 6 countries
• Employees: 350+
• Customers: 400+ Enterprises in 30+ countries
• Global Reach: ~50% international revenue
• Hybrid Revenue Model with low Churn: <5%
• Funding to Date (thru Series C): $52M
• Investors: Accel Partners, Foundation Capital
and Meritech Capital Partners
Key Facts Mission Statement
The forgerock identity
platform currently powers
more than 500 million
identities. It is our goal to
become the market leader
in digital transformation
and security for enterprise
identity worldwide.
© 2016 ForgeRock. All rights reserved.
Perimeter-Based Security Identity-Centric Security
Enables Digital Business
Untrusted
Trusted
Inhibits Digital Business
Old Security Model is Broken. Security Must Now Be
Identity-Based.
Enables Digital BusinessInhibits Digital Business
© 2016 ForgeRock. All rights reserved.
Changes are adding Complexity
Employees
Employees &
Partners
Perimeter
Perimeter
Federation
Things
Perimeter-less
Federation
Cloud
SaaS
Mobility
Consumers
Perimeter-less
Federation
Cloud / SaaS
ComplexityofScale
Complexity of Experience
© 2016 ForgeRock. All rights reserved.
Identity Access Management
Customers
(millions)
On-premises
People
Applications
and data
PCs
Endpoints
Workforce
(thousands)
Partners and
Suppliers
Customers
(millions)
On-premises Public
Cloud
Private
Cloud
People
Things
(Tens of
millions)
Applications
and data
PCs PhonesTablets
Smart
Watches
Endpoints
Forrester Report Nov 2015: Market Overview: Customer Identity And Access Management (CIAM) Solutions
Identity Relationship Management
Business Has Changed: Enterprises Now Require
Identity Relationship Management (IRM)
Business Has Changed: Enterprises Now Require
Identity Relationship Management (IRM)
© 2016 ForgeRock. All rights reserved.
Enterprise AppsMobile Apps Things Cloud
Single Architecture | Next Generation | Open | Chip-to-Cloud Deployments | IRM
Identity ManagementAccess Management Directory Services Identity Gateway
Platform Strategy
© 2016 ForgeRock. All rights reserved.
Shared Services : User Interface, Self-Service, REST API, HTTP, Scripting, Audit and
Logging
Federation Synchronization
Authentication & Strong
Authentication
Identity Provisioning Application & Service
Gateway
Authorization &
UMA Provider
Workflow Engine IoT Identity Gateway
Adaptive Risk Self-Service Password Capture & Replay
UMA Protector
Access Management Identity Management Identity Gateway
Data Store
High Availability
Data Segmentation
LDAP / REST
Directory Services
Open Standards, High Availability, On-Premises, Cloud, Hybrid
The ForgeRock Identity Platform is built from the open source projects OpenAM, OpenIDM, OpenIG and OpenDJ
The ForgeRock Identity Platform
© 2016 ForgeRock. All rights reserved.
ForgeRock UI FrameworkUI Layer
ForgeRock RESTAccess Layer
Provisioning
Auditing
Workflow
Synchronization
Policy
Scheduler Task Scanner
Password Management
Reconciliation
Services/Routing Layer
Attributes Users Roles Groups Organizations Accounts Things Custom ….Object Layer
Object broker (managed – system – aggregated)Broker Layer
Business Logic Layer
Self-Service UI Admin Console
OpenICF
customchip | thing
External Resources Layer
…
ForgeRock Identity Platform: Identity Management
© 2016 ForgeRock. All rights reserved.
Release Focus
User Administration
Security & Visibility
Platform Experience
Connectivity
© 2016 ForgeRock. All rights reserved.
New UI
• Bootstrap based Responsive UI framework
• Simple to customize and theme
• Device independent – mobile friendly!
• Smaller footprint – less bandwidth
• Segregated Administration and Self-Service model
• Admin UI greatly expanded
• Easy to demo and communicate core concepts
• Improved and visualized workflow management
10
© 2016 ForgeRock. All rights reserved.
Simplified Object Model
• Quick and visual object creation – beyond users
• Design your objects quickly and visually – including schema
• From Simple to complex, related to unrelated
• JSON/File based still supported
• Model your objects in the UI
• Simple icon model
• Relate objects to each other
• Many to one, one to many, many to many, one to one
• Once added, you can manage directly in the UI
11
© 2016 ForgeRock. All rights reserved.
Intrinsic Relationship Model
• Create and model relationships
• Parent-Child, User-Groups, Owner-Devices, etc
• New schema item type: relationship
• Allows for “reverse” relationship dependency
• Relationship Endpoints
12
© 2016 ForgeRock. All rights reserved.
Role Management
• Design, assign and manage roles in an intuitive and visual
manner
• 2 types:
• Provisioning Roles – describes how assignments are used in external
systems
• Authorization Roles - used to specify rights on managed objects in
OpenIDM
13
© 2016 ForgeRock. All rights reserved.
(Multi) Account Linking
• Use case: Link multiple accounts on a single resource to a
single managed identity
• User Account and Admin account
• Agent and Consumer
• Create with the new “Link Qualifier”
• Mapping->Properties
• Static or Dynamic (preferred)
• Static – Production and Dev accounts for each managed user
• Sample – Insurance Agent and Customer
14
© 2016 ForgeRock. All rights reserved.
Self-Service and Password Management
• Customizable Process and UI
• Pluggable processing chain
– reCaptcha, email, KBA out of the
box
• Bootstrap (commons) based UI for
easy customization
• 4 standard functions
• Registration
• Password Reset
• Forgotten User Name
• Profile Management
• Enables you to implement user self-
service to significantly reduce help desk
costs and increase user productivity by
automating password reset and enforcing
an auditable centralized password policy.
• Implements fine control password
management to ensure consistency
across all applications and data stores,
such as Active Directory and HR systems.
• Quickly branded to give customers a
personalized experience
© 2016 ForgeRock. All rights reserved.
Self-Service and Password Management
© 2016 ForgeRock. All rights reserved.
What we didn't cover
• Password/Attribute Hashing v. encrypting
• Commons Auditing
• OpenAM Session Auth Module
• Upgrade/Update Framework
• New Documentation
• IBM DB2 as a repository
© 2016 ForgeRock. All rights reserved.
Next Steps
• New release available NOW on ForgeRock.com
• https://www.forgerock.com/downloads
• Download, install, PLAY!
• Run through all the samples – updated and new
18
© 2016 ForgeRock. All rights reserved.
Thanks!

More Related Content

What's hot

What's hot (20)

Deep dive into Microsoft Purview Data Loss Prevention
Deep dive into Microsoft Purview Data Loss PreventionDeep dive into Microsoft Purview Data Loss Prevention
Deep dive into Microsoft Purview Data Loss Prevention
 
Introduction to OpenID Connect
Introduction to OpenID Connect Introduction to OpenID Connect
Introduction to OpenID Connect
 
Single Sign On - The Basics
Single Sign On - The BasicsSingle Sign On - The Basics
Single Sign On - The Basics
 
Introduction to SAML & OIDC
Introduction to SAML & OIDCIntroduction to SAML & OIDC
Introduction to SAML & OIDC
 
Identity management and single sign on - how much flexibility
Identity management and single sign on - how much flexibilityIdentity management and single sign on - how much flexibility
Identity management and single sign on - how much flexibility
 
OAuth & OpenID Connect Deep Dive
OAuth & OpenID Connect Deep DiveOAuth & OpenID Connect Deep Dive
OAuth & OpenID Connect Deep Dive
 
An introduction to Office 365 Advanced Threat Protection (ATP)
An introduction to Office 365 Advanced Threat Protection (ATP)An introduction to Office 365 Advanced Threat Protection (ATP)
An introduction to Office 365 Advanced Threat Protection (ATP)
 
Single sign on - benefits, challenges and case study : iFour consultancy
Single sign on - benefits, challenges and case study :  iFour consultancySingle sign on - benefits, challenges and case study :  iFour consultancy
Single sign on - benefits, challenges and case study : iFour consultancy
 
3 Modern Security - Secure identities to reach zero trust with AAD
3   Modern Security - Secure identities to reach zero trust with AAD3   Modern Security - Secure identities to reach zero trust with AAD
3 Modern Security - Secure identities to reach zero trust with AAD
 
FIDO & PSD2: Solving the Strong Customer Authentication Challenge in Europe
FIDO & PSD2: Solving the Strong Customer Authentication Challenge in EuropeFIDO & PSD2: Solving the Strong Customer Authentication Challenge in Europe
FIDO & PSD2: Solving the Strong Customer Authentication Challenge in Europe
 
Single sign on using SAML
Single sign on using SAML Single sign on using SAML
Single sign on using SAML
 
SSO introduction
SSO introductionSSO introduction
SSO introduction
 
SailPoint - IdentityNow Identity Governance
SailPoint - IdentityNow Identity GovernanceSailPoint - IdentityNow Identity Governance
SailPoint - IdentityNow Identity Governance
 
Implementing WebAuthn & FAPI supports on Keycloak
Implementing WebAuthn & FAPI supports on KeycloakImplementing WebAuthn & FAPI supports on Keycloak
Implementing WebAuthn & FAPI supports on Keycloak
 
What is SSO? An introduction to Single Sign On
What is SSO? An introduction to Single Sign OnWhat is SSO? An introduction to Single Sign On
What is SSO? An introduction to Single Sign On
 
Identity and Access Management Introduction
Identity and Access Management IntroductionIdentity and Access Management Introduction
Identity and Access Management Introduction
 
Zero Trust Model Presentation
Zero Trust Model PresentationZero Trust Model Presentation
Zero Trust Model Presentation
 
NYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
NYC Identity Summit Tech Day: ForgeRock Identity Platform OverviewNYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
NYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
 
Data Loss Prevention in Office 365
Data Loss Prevention in Office 365Data Loss Prevention in Office 365
Data Loss Prevention in Office 365
 
FIDO2 Specifications Overview
FIDO2 Specifications OverviewFIDO2 Specifications Overview
FIDO2 Specifications Overview
 

Similar to Identity Management with the ForgeRock Identity Platform - So What’s New?

SharePoint Online vs. On-Premise
SharePoint Online vs. On-PremiseSharePoint Online vs. On-Premise
SharePoint Online vs. On-Premise
Evan Hodges
 

Similar to Identity Management with the ForgeRock Identity Platform - So What’s New? (20)

Directory Services with the ForgeRock Identity Platform - So What’s New?
Directory Services with the ForgeRock Identity Platform - So What’s New?Directory Services with the ForgeRock Identity Platform - So What’s New?
Directory Services with the ForgeRock Identity Platform - So What’s New?
 
Webinar: Access Management with the ForgeRock Identity Platform - So What’s N...
Webinar: Access Management with the ForgeRock Identity Platform - So What’s N...Webinar: Access Management with the ForgeRock Identity Platform - So What’s N...
Webinar: Access Management with the ForgeRock Identity Platform - So What’s N...
 
ForgeRock Platform Release - Summer 2016
ForgeRock Platform Release - Summer 2016  ForgeRock Platform Release - Summer 2016
ForgeRock Platform Release - Summer 2016
 
Webinar: ForgeRock Identity Platform Preview (Dec 2015)
Webinar: ForgeRock Identity Platform Preview (Dec 2015)Webinar: ForgeRock Identity Platform Preview (Dec 2015)
Webinar: ForgeRock Identity Platform Preview (Dec 2015)
 
Synergies across APIs and IAM
Synergies across APIs and IAMSynergies across APIs and IAM
Synergies across APIs and IAM
 
20160422 Speedy Framework Enterprise Application Development Platform
20160422 Speedy Framework Enterprise Application Development Platform20160422 Speedy Framework Enterprise Application Development Platform
20160422 Speedy Framework Enterprise Application Development Platform
 
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
 
Webinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
Webinar: Extend The Power of The ForgeRock Identity Platform Through ScriptingWebinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
Webinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
 
Single Sign On 101
Single Sign On 101Single Sign On 101
Single Sign On 101
 
The Future is Now: What’s New in ForgeRock Identity Gateway
The Future is Now: What’s New in ForgeRock Identity GatewayThe Future is Now: What’s New in ForgeRock Identity Gateway
The Future is Now: What’s New in ForgeRock Identity Gateway
 
SharePoint Online vs. On-Premise
SharePoint Online vs. On-PremiseSharePoint Online vs. On-Premise
SharePoint Online vs. On-Premise
 
CIS 2013 Ping Identity Chalktalk
CIS 2013 Ping Identity ChalktalkCIS 2013 Ping Identity Chalktalk
CIS 2013 Ping Identity Chalktalk
 
Integrated Services for Web Applications
Integrated Services for Web ApplicationsIntegrated Services for Web Applications
Integrated Services for Web Applications
 
Mlm software development
Mlm software developmentMlm software development
Mlm software development
 
Sydney Identity Summit: Addressing the New Threat Landscape with Continuous S...
Sydney Identity Summit: Addressing the New Threat Landscape with Continuous S...Sydney Identity Summit: Addressing the New Threat Landscape with Continuous S...
Sydney Identity Summit: Addressing the New Threat Landscape with Continuous S...
 
Optimizing IAM with Single Sign-On From the Cloud to On-Premise
Optimizing IAM with Single Sign-On From the Cloud to On-PremiseOptimizing IAM with Single Sign-On From the Cloud to On-Premise
Optimizing IAM with Single Sign-On From the Cloud to On-Premise
 
Securing your Applications for the Cloud Age
Securing your Applications for the Cloud AgeSecuring your Applications for the Cloud Age
Securing your Applications for the Cloud Age
 
eFolder Expert Series Webinar — Profiting As Your Clients Move to the Cloud F...
eFolder Expert Series Webinar — Profiting As Your Clients Move to the Cloud F...eFolder Expert Series Webinar — Profiting As Your Clients Move to the Cloud F...
eFolder Expert Series Webinar — Profiting As Your Clients Move to the Cloud F...
 
[WSO2Con EU 2017] IAM: Catalyst for Digital Transformation
[WSO2Con EU 2017] IAM: Catalyst for Digital Transformation[WSO2Con EU 2017] IAM: Catalyst for Digital Transformation
[WSO2Con EU 2017] IAM: Catalyst for Digital Transformation
 
Cloud Forge Rock
Cloud Forge RockCloud Forge Rock
Cloud Forge Rock
 

More from ForgeRock

More from ForgeRock (20)

Digital Identities in the Internet of Things - Securely Manage Devices at Scale
Digital Identities in the Internet of Things - Securely Manage Devices at ScaleDigital Identities in the Internet of Things - Securely Manage Devices at Scale
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
 
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Get the Exact Identity Solution You Need - In the Cloud - AWS and BeyondGet the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
 
Identity Live Sydney: Identity Management - A Strategic Opportunity
Identity Live Sydney: Identity Management  - A Strategic OpportunityIdentity Live Sydney: Identity Management  - A Strategic Opportunity
Identity Live Sydney: Identity Management - A Strategic Opportunity
 
Identity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore: Transform Your Cybersecurity CapabilityIdentity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore: Transform Your Cybersecurity Capability
 
Identity Live Singapore 2018 Keynote Presentation
Identity Live Singapore 2018 Keynote PresentationIdentity Live Singapore 2018 Keynote Presentation
Identity Live Singapore 2018 Keynote Presentation
 
Identity Live Sydney 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote PresentationIdentity Live Sydney 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote Presentation
 
Identity Live Singapore: Just Ask 'Em
Identity Live Singapore: Just Ask 'EmIdentity Live Singapore: Just Ask 'Em
Identity Live Singapore: Just Ask 'Em
 
Identity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Singapore: Building Trust & Privacy in a Connected SocietyIdentity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Singapore: Building Trust & Privacy in a Connected Society
 
Identity Live Sydney: Intelligent Authentication
Identity Live Sydney: Intelligent Authentication Identity Live Sydney: Intelligent Authentication
Identity Live Sydney: Intelligent Authentication
 
Identity Live Sydney: Building Trust and Privacy in a Connected Society
Identity Live  Sydney:  Building Trust and Privacy in a Connected SocietyIdentity Live  Sydney:  Building Trust and Privacy in a Connected Society
Identity Live Sydney: Building Trust and Privacy in a Connected Society
 
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution you Need in the Cloud - Deep DiveGet the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
 
Get the Exact Identity Solution You Need - In the Cloud - Overview
Get the Exact Identity Solution You Need - In the Cloud - OverviewGet the Exact Identity Solution You Need - In the Cloud - Overview
Get the Exact Identity Solution You Need - In the Cloud - Overview
 
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
ForgeRock and Trusona - Simplifying the Multi-factor User ExperienceForgeRock and Trusona - Simplifying the Multi-factor User Experience
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
 
Opening Keynote (Identity Live Berlin 2018)
Opening Keynote (Identity Live Berlin 2018)Opening Keynote (Identity Live Berlin 2018)
Opening Keynote (Identity Live Berlin 2018)
 
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
 
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
BMW Group - Identity Enables the Next 100 Years..  (Identity Live Berlin 2018)BMW Group - Identity Enables the Next 100 Years..  (Identity Live Berlin 2018)
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
 
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
 
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
 
Shift from GDPR readiness to sustained compliance to improve your business an...
Shift from GDPR readiness to sustained compliance to improve your business an...Shift from GDPR readiness to sustained compliance to improve your business an...
Shift from GDPR readiness to sustained compliance to improve your business an...
 
Intelligent Authentication (Identity Live Berlin 2018)
Intelligent Authentication  (Identity Live Berlin 2018)Intelligent Authentication  (Identity Live Berlin 2018)
Intelligent Authentication (Identity Live Berlin 2018)
 

Recently uploaded

CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICECHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
9953056974 Low Rate Call Girls In Saket, Delhi NCR
 
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
masabamasaba
 
%+27788225528 love spells in Colorado Springs Psychic Readings, Attraction sp...
%+27788225528 love spells in Colorado Springs Psychic Readings, Attraction sp...%+27788225528 love spells in Colorado Springs Psychic Readings, Attraction sp...
%+27788225528 love spells in Colorado Springs Psychic Readings, Attraction sp...
masabamasaba
 
AI Mastery 201: Elevating Your Workflow with Advanced LLM Techniques
AI Mastery 201: Elevating Your Workflow with Advanced LLM TechniquesAI Mastery 201: Elevating Your Workflow with Advanced LLM Techniques
AI Mastery 201: Elevating Your Workflow with Advanced LLM Techniques
VictorSzoltysek
 
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
Health
 

Recently uploaded (20)

CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICECHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
CHEAP Call Girls in Pushp Vihar (-DELHI )🔝 9953056974🔝(=)/CALL GIRLS SERVICE
 
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
%+27788225528 love spells in Atlanta Psychic Readings, Attraction spells,Brin...
 
%in Stilfontein+277-882-255-28 abortion pills for sale in Stilfontein
%in Stilfontein+277-882-255-28 abortion pills for sale in Stilfontein%in Stilfontein+277-882-255-28 abortion pills for sale in Stilfontein
%in Stilfontein+277-882-255-28 abortion pills for sale in Stilfontein
 
Define the academic and professional writing..pdf
Define the academic and professional writing..pdfDefine the academic and professional writing..pdf
Define the academic and professional writing..pdf
 
Chinsurah Escorts ☎️8617697112 Starting From 5K to 15K High Profile Escorts ...
Chinsurah Escorts ☎️8617697112  Starting From 5K to 15K High Profile Escorts ...Chinsurah Escorts ☎️8617697112  Starting From 5K to 15K High Profile Escorts ...
Chinsurah Escorts ☎️8617697112 Starting From 5K to 15K High Profile Escorts ...
 
%in kempton park+277-882-255-28 abortion pills for sale in kempton park
%in kempton park+277-882-255-28 abortion pills for sale in kempton park %in kempton park+277-882-255-28 abortion pills for sale in kempton park
%in kempton park+277-882-255-28 abortion pills for sale in kempton park
 
%+27788225528 love spells in Colorado Springs Psychic Readings, Attraction sp...
%+27788225528 love spells in Colorado Springs Psychic Readings, Attraction sp...%+27788225528 love spells in Colorado Springs Psychic Readings, Attraction sp...
%+27788225528 love spells in Colorado Springs Psychic Readings, Attraction sp...
 
AI Mastery 201: Elevating Your Workflow with Advanced LLM Techniques
AI Mastery 201: Elevating Your Workflow with Advanced LLM TechniquesAI Mastery 201: Elevating Your Workflow with Advanced LLM Techniques
AI Mastery 201: Elevating Your Workflow with Advanced LLM Techniques
 
%+27788225528 love spells in Vancouver Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Vancouver Psychic Readings, Attraction spells,Br...%+27788225528 love spells in Vancouver Psychic Readings, Attraction spells,Br...
%+27788225528 love spells in Vancouver Psychic Readings, Attraction spells,Br...
 
Direct Style Effect Systems - The Print[A] Example - A Comprehension Aid
Direct Style Effect Systems -The Print[A] Example- A Comprehension AidDirect Style Effect Systems -The Print[A] Example- A Comprehension Aid
Direct Style Effect Systems - The Print[A] Example - A Comprehension Aid
 
%in Midrand+277-882-255-28 abortion pills for sale in midrand
%in Midrand+277-882-255-28 abortion pills for sale in midrand%in Midrand+277-882-255-28 abortion pills for sale in midrand
%in Midrand+277-882-255-28 abortion pills for sale in midrand
 
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
%in Hazyview+277-882-255-28 abortion pills for sale in Hazyview
 
AI & Machine Learning Presentation Template
AI & Machine Learning Presentation TemplateAI & Machine Learning Presentation Template
AI & Machine Learning Presentation Template
 
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
 
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
Shapes for Sharing between Graph Data Spaces - and Epistemic Querying of RDF-...
 
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
 
Unlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language ModelsUnlocking the Future of AI Agents with Large Language Models
Unlocking the Future of AI Agents with Large Language Models
 
%in Harare+277-882-255-28 abortion pills for sale in Harare
%in Harare+277-882-255-28 abortion pills for sale in Harare%in Harare+277-882-255-28 abortion pills for sale in Harare
%in Harare+277-882-255-28 abortion pills for sale in Harare
 
Software Quality Assurance Interview Questions
Software Quality Assurance Interview QuestionsSoftware Quality Assurance Interview Questions
Software Quality Assurance Interview Questions
 
Payment Gateway Testing Simplified_ A Step-by-Step Guide for Beginners.pdf
Payment Gateway Testing Simplified_ A Step-by-Step Guide for Beginners.pdfPayment Gateway Testing Simplified_ A Step-by-Step Guide for Beginners.pdf
Payment Gateway Testing Simplified_ A Step-by-Step Guide for Beginners.pdf
 

Identity Management with the ForgeRock Identity Platform - So What’s New?

  • 1. © 2016 ForgeRock. All rights reserved. ForgeRock Identity Platform Identity Management • Tim Sedlack, Sr Product Manager • Rob MacDonald, Product Marketing Director
  • 2. © 2016 ForgeRock. All rights reserved. ForgeRock: At a Glance • Fastest-growing open source identity security software company in the world • Founded: 2010 • Headquartered in San Francisco with offices in 6 countries • Employees: 350+ • Customers: 400+ Enterprises in 30+ countries • Global Reach: ~50% international revenue • Hybrid Revenue Model with low Churn: <5% • Funding to Date (thru Series C): $52M • Investors: Accel Partners, Foundation Capital and Meritech Capital Partners Key Facts Mission Statement The forgerock identity platform currently powers more than 500 million identities. It is our goal to become the market leader in digital transformation and security for enterprise identity worldwide.
  • 3. © 2016 ForgeRock. All rights reserved. Perimeter-Based Security Identity-Centric Security Enables Digital Business Untrusted Trusted Inhibits Digital Business Old Security Model is Broken. Security Must Now Be Identity-Based. Enables Digital BusinessInhibits Digital Business
  • 4. © 2016 ForgeRock. All rights reserved. Changes are adding Complexity Employees Employees & Partners Perimeter Perimeter Federation Things Perimeter-less Federation Cloud SaaS Mobility Consumers Perimeter-less Federation Cloud / SaaS ComplexityofScale Complexity of Experience
  • 5. © 2016 ForgeRock. All rights reserved. Identity Access Management Customers (millions) On-premises People Applications and data PCs Endpoints Workforce (thousands) Partners and Suppliers Customers (millions) On-premises Public Cloud Private Cloud People Things (Tens of millions) Applications and data PCs PhonesTablets Smart Watches Endpoints Forrester Report Nov 2015: Market Overview: Customer Identity And Access Management (CIAM) Solutions Identity Relationship Management Business Has Changed: Enterprises Now Require Identity Relationship Management (IRM) Business Has Changed: Enterprises Now Require Identity Relationship Management (IRM)
  • 6. © 2016 ForgeRock. All rights reserved. Enterprise AppsMobile Apps Things Cloud Single Architecture | Next Generation | Open | Chip-to-Cloud Deployments | IRM Identity ManagementAccess Management Directory Services Identity Gateway Platform Strategy
  • 7. © 2016 ForgeRock. All rights reserved. Shared Services : User Interface, Self-Service, REST API, HTTP, Scripting, Audit and Logging Federation Synchronization Authentication & Strong Authentication Identity Provisioning Application & Service Gateway Authorization & UMA Provider Workflow Engine IoT Identity Gateway Adaptive Risk Self-Service Password Capture & Replay UMA Protector Access Management Identity Management Identity Gateway Data Store High Availability Data Segmentation LDAP / REST Directory Services Open Standards, High Availability, On-Premises, Cloud, Hybrid The ForgeRock Identity Platform is built from the open source projects OpenAM, OpenIDM, OpenIG and OpenDJ The ForgeRock Identity Platform
  • 8. © 2016 ForgeRock. All rights reserved. ForgeRock UI FrameworkUI Layer ForgeRock RESTAccess Layer Provisioning Auditing Workflow Synchronization Policy Scheduler Task Scanner Password Management Reconciliation Services/Routing Layer Attributes Users Roles Groups Organizations Accounts Things Custom ….Object Layer Object broker (managed – system – aggregated)Broker Layer Business Logic Layer Self-Service UI Admin Console OpenICF customchip | thing External Resources Layer … ForgeRock Identity Platform: Identity Management
  • 9. © 2016 ForgeRock. All rights reserved. Release Focus User Administration Security & Visibility Platform Experience Connectivity
  • 10. © 2016 ForgeRock. All rights reserved. New UI • Bootstrap based Responsive UI framework • Simple to customize and theme • Device independent – mobile friendly! • Smaller footprint – less bandwidth • Segregated Administration and Self-Service model • Admin UI greatly expanded • Easy to demo and communicate core concepts • Improved and visualized workflow management 10
  • 11. © 2016 ForgeRock. All rights reserved. Simplified Object Model • Quick and visual object creation – beyond users • Design your objects quickly and visually – including schema • From Simple to complex, related to unrelated • JSON/File based still supported • Model your objects in the UI • Simple icon model • Relate objects to each other • Many to one, one to many, many to many, one to one • Once added, you can manage directly in the UI 11
  • 12. © 2016 ForgeRock. All rights reserved. Intrinsic Relationship Model • Create and model relationships • Parent-Child, User-Groups, Owner-Devices, etc • New schema item type: relationship • Allows for “reverse” relationship dependency • Relationship Endpoints 12
  • 13. © 2016 ForgeRock. All rights reserved. Role Management • Design, assign and manage roles in an intuitive and visual manner • 2 types: • Provisioning Roles – describes how assignments are used in external systems • Authorization Roles - used to specify rights on managed objects in OpenIDM 13
  • 14. © 2016 ForgeRock. All rights reserved. (Multi) Account Linking • Use case: Link multiple accounts on a single resource to a single managed identity • User Account and Admin account • Agent and Consumer • Create with the new “Link Qualifier” • Mapping->Properties • Static or Dynamic (preferred) • Static – Production and Dev accounts for each managed user • Sample – Insurance Agent and Customer 14
  • 15. © 2016 ForgeRock. All rights reserved. Self-Service and Password Management • Customizable Process and UI • Pluggable processing chain – reCaptcha, email, KBA out of the box • Bootstrap (commons) based UI for easy customization • 4 standard functions • Registration • Password Reset • Forgotten User Name • Profile Management • Enables you to implement user self- service to significantly reduce help desk costs and increase user productivity by automating password reset and enforcing an auditable centralized password policy. • Implements fine control password management to ensure consistency across all applications and data stores, such as Active Directory and HR systems. • Quickly branded to give customers a personalized experience
  • 16. © 2016 ForgeRock. All rights reserved. Self-Service and Password Management
  • 17. © 2016 ForgeRock. All rights reserved. What we didn't cover • Password/Attribute Hashing v. encrypting • Commons Auditing • OpenAM Session Auth Module • Upgrade/Update Framework • New Documentation • IBM DB2 as a repository
  • 18. © 2016 ForgeRock. All rights reserved. Next Steps • New release available NOW on ForgeRock.com • https://www.forgerock.com/downloads • Download, install, PLAY! • Run through all the samples – updated and new 18
  • 19. © 2016 ForgeRock. All rights reserved. Thanks!

Editor's Notes

  1. Demo – UI walkthrough, Admin console, dashboard,
  2. Demo
  3. Demo
  4. Based on intrinsic relationship model So what’s an Assignment? Extensible (Demo)
  5. Demo
  6. Demo
  7. Demo
  8. Encode any attribute value using salted hash Algorithms supported: MD5 SHA-1 SHA-256 SHA-384 SHA-512 Audit Common across the platform Configured (REST) the same way OpenIDM provides configuration through the Admin Console as well Event Handlers, Filters, Targets, and more Upgrade Managed updates and upgrades! UI or CLI based updates Managed process that Puts OpenIDM into maintenance mode Validates checksums for every file in the update and in the install location Backs up files (to *-old<timestamp>) Reports what changes it’s going to make Allows administrators to proceed or cancel Restarts OpenIDM processes once installation is complete Provides a report on all actions taken Connectors New Connector Bundling Services OpenICF 1.5 New SAP Connector Certification AD Connector is deprecated LDAP connector improved PowerShell improved (for more complicated, specific scenarios) Documentation Brand new guides: Getting Started with OpenIDM – step by step guide to install and evaluation of OpenIDM Includes a special “Getting Started” sample in the Installation and Update Guide Samples Guide Updated Integrators guide Online and PDF versions available DB2 Support Added support for IBM DB2 as a repository Support for Financial customers Can be used with Kerberos Authentication Supports financial customers Version 10.x of DB2 is supported Adds to technologies supported as a Repository for OpenIDM