SlideShare a Scribd company logo
1 of 27
SSO Application User Dashboard




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory | www.empowerID.com   1
Service Provider Initiated SSO




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   2
Identity Provider Initiated SSO




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   3
The 5 Federated SSO Scenarios

  1. Corporate Login to Cloud Application

  2. Cloud Login to Internal Application

  3. Corporate Login to Internal Application

  4. Corporate Login to Partner Application

  5. Identity as a Service (IdaaS) Hub



 Copyright © 2013. empowerID is a trademark of The Dot Net Factory, LLC. | www.empowerid.com   4
Corporate Login to Cloud Application




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   5
SSO Login Page




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   6
SSO Application Catalog




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   7
Cloud Login to Internal Application




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   8
SSO Login Page




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   9
Supports Custom Branding




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory | www.empowerID.com   10
Corporate Login to Internal Application




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   11
Corporate Login to Partner Application




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   12
Identity as a Service (IdaaS) Hub




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   13
Mobile HTML5 User Interface




 Copyright © 2013. empowerID is a trademark of The Dot Net Factory, LLC. | www.empowerid.com   14
Second Factor Login & Password Reset




 Copyright © 2013. empowerID is a trademark of The Dot Net Factory, LLC. | www.empowerid.com   15
SSO Manager: Key Features

  » Multi-Protocol Support: support for SAML protocol,
    WS-Federation, WS-Trust, OAuth, OpenID, LDAP,
    and RADIUS
  » Federation Roles: Identity Provider (IdP) and Service
    Provider (SP)
  » Security Token Service: a Web Service (WS) Trust-
    based token service, enabling policy-driven trust
    brokering and secure identity propagation between
    Web services.
  » Identity Mapping and Attribute Retrieval: translate or
    map identities in Metadirectory based on attributes in
    incoming SAML assertions. Attribute retrieval for
    inclusion in SAML assertions from Metadirectory and
    live system access
 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   16
SSO Manager: Key Features

  » Polyarchical RBAC
         • Permissions model designed for complex organizations
           and multi-tenancy
  » Extranet Directory:
         • Eliminates the need to provision external users in the
           corporate directory
  » Workflow Studio Federation Development
    Environment:
         • Workflow Studio templates to generate and manipulate
           claims and identity information during the login processing
           pipeline – for SAML, WS-Trust, and SharePoint systems



 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   17
SSO Manager: Key Features

  » Adaptive Authentication:
         • Login Workflow – policy gate during the login process that
           provides a flexible plugin point for registration and identity
           proofing processes
         • Authentication Level Enforcement – require different
           authentication levels per Service Provider application
         • Device Registration – force users to register and verify
           ownership of PCs and mobile devices
  » SharePoint Claims Provider:
         • SSO for SharePoint
         • Strong Authentication for SharePoint
         • Role-Based Access Control for SharePoint


 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   18
Claim Information Provider




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   19
Adaptive Authentication




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   20
Adaptive Authentication – Login Workflow




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   21
Adaptive Authentication – Login Workflow




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   22
Adaptive Authentication – Level 2 Workflow




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   23
Adaptive Authentication – Level 3 Workflow




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   24
Adaptive Authentication – Level 5 Workflow




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   25
Forgot Password Workflow




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   26
Forgot Username Workflow




 Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com   27

More Related Content

What's hot

Okta Directory Integration for Microsoft Office365 - from Atidan
Okta Directory Integration for Microsoft Office365 - from AtidanOkta Directory Integration for Microsoft Office365 - from Atidan
Okta Directory Integration for Microsoft Office365 - from Atidan
David J Rosenthal
 

What's hot (19)

#3 Wso2 masterclassitalia - wso2 Identity Server: must-have per gestire le id...
#3 Wso2 masterclassitalia - wso2 Identity Server: must-have per gestire le id...#3 Wso2 masterclassitalia - wso2 Identity Server: must-have per gestire le id...
#3 Wso2 masterclassitalia - wso2 Identity Server: must-have per gestire le id...
 
Evolveum: All you need to know about identity & access management
Evolveum: All you need to know about identity & access managementEvolveum: All you need to know about identity & access management
Evolveum: All you need to know about identity & access management
 
3 Building Blocks For Managing Cloud Applications Webinar
3 Building Blocks For Managing Cloud Applications Webinar3 Building Blocks For Managing Cloud Applications Webinar
3 Building Blocks For Managing Cloud Applications Webinar
 
JoTechies - Cloud identity
JoTechies - Cloud identityJoTechies - Cloud identity
JoTechies - Cloud identity
 
WSO2Con USA 2017: Multi-tenanted, Role-based Identity & Access Management sol...
WSO2Con USA 2017: Multi-tenanted, Role-based Identity & Access Management sol...WSO2Con USA 2017: Multi-tenanted, Role-based Identity & Access Management sol...
WSO2Con USA 2017: Multi-tenanted, Role-based Identity & Access Management sol...
 
Ad fs
Ad fsAd fs
Ad fs
 
Microsoft Cloud Identity and Access Management Poster - Atidan
Microsoft Cloud Identity and Access Management Poster - AtidanMicrosoft Cloud Identity and Access Management Poster - Atidan
Microsoft Cloud Identity and Access Management Poster - Atidan
 
IDM Reconciliation
IDM ReconciliationIDM Reconciliation
IDM Reconciliation
 
Identiverse 2021 enterprise identity: What foundations
Identiverse 2021 enterprise identity: What foundationsIdentiverse 2021 enterprise identity: What foundations
Identiverse 2021 enterprise identity: What foundations
 
Granite state #spug The #microsoftGraph and #SPFx on steroids with #AzureFunc...
Granite state #spug The #microsoftGraph and #SPFx on steroids with #AzureFunc...Granite state #spug The #microsoftGraph and #SPFx on steroids with #AzureFunc...
Granite state #spug The #microsoftGraph and #SPFx on steroids with #AzureFunc...
 
Short Overview
Short OverviewShort Overview
Short Overview
 
Identity Manager & AirWatch Cloud Mobile App - Infographic
Identity Manager & AirWatch Cloud Mobile App - InfographicIdentity Manager & AirWatch Cloud Mobile App - Infographic
Identity Manager & AirWatch Cloud Mobile App - Infographic
 
Okta Directory Integration for Microsoft Office365 - from Atidan
Okta Directory Integration for Microsoft Office365 - from AtidanOkta Directory Integration for Microsoft Office365 - from Atidan
Okta Directory Integration for Microsoft Office365 - from Atidan
 
Identity and Access Management
Identity and Access ManagementIdentity and Access Management
Identity and Access Management
 
Office 365 Identity Management options
Office 365 Identity Management options Office 365 Identity Management options
Office 365 Identity Management options
 
Avoiding the Hidden Costs of Active Directory Federation Services (AD FS)
Avoiding the Hidden Costs of Active Directory Federation Services (AD FS)Avoiding the Hidden Costs of Active Directory Federation Services (AD FS)
Avoiding the Hidden Costs of Active Directory Federation Services (AD FS)
 
Salesforce Backup, Restore & Archiving- Adam Best, Senior Program Architect
Salesforce Backup, Restore & Archiving- Adam Best, Senior Program ArchitectSalesforce Backup, Restore & Archiving- Adam Best, Senior Program Architect
Salesforce Backup, Restore & Archiving- Adam Best, Senior Program Architect
 
Identity is key - Robin Gorris
Identity is key - Robin GorrisIdentity is key - Robin Gorris
Identity is key - Robin Gorris
 
Case Study: McKesson
Case Study: McKessonCase Study: McKesson
Case Study: McKesson
 

Similar to SSO Manager

CA Security - Deloitte IAM Summit - Vasu
CA Security - Deloitte IAM Summit  - VasuCA Security - Deloitte IAM Summit  - Vasu
CA Security - Deloitte IAM Summit - Vasu
Vasu Surabhi
 
Authentication with OAuth and Connected Apps
Authentication with OAuth and Connected AppsAuthentication with OAuth and Connected Apps
Authentication with OAuth and Connected Apps
Salesforce Developers
 

Similar to SSO Manager (20)

Oauth and SharePoint 2013 Provider Hosted apps
Oauth and SharePoint 2013 Provider Hosted appsOauth and SharePoint 2013 Provider Hosted apps
Oauth and SharePoint 2013 Provider Hosted apps
 
[WSO2Con USA 2018] Identity APIs is the New Black
[WSO2Con USA 2018] Identity APIs is the New Black[WSO2Con USA 2018] Identity APIs is the New Black
[WSO2Con USA 2018] Identity APIs is the New Black
 
TDNF Seminar
TDNF SeminarTDNF Seminar
TDNF Seminar
 
CA Security - Deloitte IAM Summit - Vasu
CA Security - Deloitte IAM Summit  - VasuCA Security - Deloitte IAM Summit  - Vasu
CA Security - Deloitte IAM Summit - Vasu
 
CIS13: Identity at Scale
CIS13: Identity at ScaleCIS13: Identity at Scale
CIS13: Identity at Scale
 
API, Integration, and SOA Convergence
API, Integration, and SOA ConvergenceAPI, Integration, and SOA Convergence
API, Integration, and SOA Convergence
 
CIS 2015 Extreme OpenID Connect - John Bradley
CIS 2015 Extreme OpenID Connect - John BradleyCIS 2015 Extreme OpenID Connect - John Bradley
CIS 2015 Extreme OpenID Connect - John Bradley
 
Con8823 access management for the internet of things-final
Con8823   access management for the internet of things-finalCon8823   access management for the internet of things-final
Con8823 access management for the internet of things-final
 
CIS13: Bootcamp: PingOne as a Simple Identity Service
CIS13: Bootcamp: PingOne as a Simple Identity ServiceCIS13: Bootcamp: PingOne as a Simple Identity Service
CIS13: Bootcamp: PingOne as a Simple Identity Service
 
[WSO2Con EU 2018] Identity APIs is the New Black
[WSO2Con EU 2018] Identity APIs is the New Black[WSO2Con EU 2018] Identity APIs is the New Black
[WSO2Con EU 2018] Identity APIs is the New Black
 
Identity Management with the ForgeRock Identity Platform - So What’s New?
Identity Management with the ForgeRock Identity Platform - So What’s New?Identity Management with the ForgeRock Identity Platform - So What’s New?
Identity Management with the ForgeRock Identity Platform - So What’s New?
 
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
 
Mobilize your workforce with secure identity services
Mobilize your workforce with secure identity servicesMobilize your workforce with secure identity services
Mobilize your workforce with secure identity services
 
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
 
Who’s Knocking? Identity for APIs, Web and Mobile
Who’s Knocking? Identity for APIs, Web and MobileWho’s Knocking? Identity for APIs, Web and Mobile
Who’s Knocking? Identity for APIs, Web and Mobile
 
Authentication with OAuth and Connected Apps
Authentication with OAuth and Connected AppsAuthentication with OAuth and Connected Apps
Authentication with OAuth and Connected Apps
 
Credit Cooperative Society Software
Credit Cooperative Society SoftwareCredit Cooperative Society Software
Credit Cooperative Society Software
 
Tivi - Tunnistautuminen - 2020
Tivi - Tunnistautuminen - 2020Tivi - Tunnistautuminen - 2020
Tivi - Tunnistautuminen - 2020
 
Managing Identity by Giving Up Control - Scott Morrison, SVP & Distinguished ...
Managing Identity by Giving Up Control - Scott Morrison, SVP & Distinguished ...Managing Identity by Giving Up Control - Scott Morrison, SVP & Distinguished ...
Managing Identity by Giving Up Control - Scott Morrison, SVP & Distinguished ...
 
CIS13: Introduction to OAuth 2.0
CIS13: Introduction to OAuth 2.0CIS13: Introduction to OAuth 2.0
CIS13: Introduction to OAuth 2.0
 

More from EmpowerID (11)

Products
ProductsProducts
Products
 
Exchange Manager
Exchange ManagerExchange Manager
Exchange Manager
 
Workflow Studio
Workflow StudioWorkflow Studio
Workflow Studio
 
Workflow Services
Workflow ServicesWorkflow Services
Workflow Services
 
User Experience
User ExperienceUser Experience
User Experience
 
Federation Services
Federation ServicesFederation Services
Federation Services
 
Authorization Services
Authorization ServicesAuthorization Services
Authorization Services
 
Role-Based Access Control
Role-Based Access ControlRole-Based Access Control
Role-Based Access Control
 
Solutions
SolutionsSolutions
Solutions
 
Group Manager
Group ManagerGroup Manager
Group Manager
 
Password Manager
Password ManagerPassword Manager
Password Manager
 

Recently uploaded

Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Victor Rentea
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Victor Rentea
 

Recently uploaded (20)

Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..Understanding the FAA Part 107 License ..
Understanding the FAA Part 107 License ..
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 

SSO Manager

  • 1. SSO Application User Dashboard Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory | www.empowerID.com 1
  • 2. Service Provider Initiated SSO Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 2
  • 3. Identity Provider Initiated SSO Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 3
  • 4. The 5 Federated SSO Scenarios 1. Corporate Login to Cloud Application 2. Cloud Login to Internal Application 3. Corporate Login to Internal Application 4. Corporate Login to Partner Application 5. Identity as a Service (IdaaS) Hub Copyright © 2013. empowerID is a trademark of The Dot Net Factory, LLC. | www.empowerid.com 4
  • 5. Corporate Login to Cloud Application Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 5
  • 6. SSO Login Page Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 6
  • 7. SSO Application Catalog Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 7
  • 8. Cloud Login to Internal Application Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 8
  • 9. SSO Login Page Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 9
  • 10. Supports Custom Branding Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory | www.empowerID.com 10
  • 11. Corporate Login to Internal Application Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 11
  • 12. Corporate Login to Partner Application Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 12
  • 13. Identity as a Service (IdaaS) Hub Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 13
  • 14. Mobile HTML5 User Interface Copyright © 2013. empowerID is a trademark of The Dot Net Factory, LLC. | www.empowerid.com 14
  • 15. Second Factor Login & Password Reset Copyright © 2013. empowerID is a trademark of The Dot Net Factory, LLC. | www.empowerid.com 15
  • 16. SSO Manager: Key Features » Multi-Protocol Support: support for SAML protocol, WS-Federation, WS-Trust, OAuth, OpenID, LDAP, and RADIUS » Federation Roles: Identity Provider (IdP) and Service Provider (SP) » Security Token Service: a Web Service (WS) Trust- based token service, enabling policy-driven trust brokering and secure identity propagation between Web services. » Identity Mapping and Attribute Retrieval: translate or map identities in Metadirectory based on attributes in incoming SAML assertions. Attribute retrieval for inclusion in SAML assertions from Metadirectory and live system access Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 16
  • 17. SSO Manager: Key Features » Polyarchical RBAC • Permissions model designed for complex organizations and multi-tenancy » Extranet Directory: • Eliminates the need to provision external users in the corporate directory » Workflow Studio Federation Development Environment: • Workflow Studio templates to generate and manipulate claims and identity information during the login processing pipeline – for SAML, WS-Trust, and SharePoint systems Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 17
  • 18. SSO Manager: Key Features » Adaptive Authentication: • Login Workflow – policy gate during the login process that provides a flexible plugin point for registration and identity proofing processes • Authentication Level Enforcement – require different authentication levels per Service Provider application • Device Registration – force users to register and verify ownership of PCs and mobile devices » SharePoint Claims Provider: • SSO for SharePoint • Strong Authentication for SharePoint • Role-Based Access Control for SharePoint Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 18
  • 19. Claim Information Provider Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 19
  • 20. Adaptive Authentication Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 20
  • 21. Adaptive Authentication – Login Workflow Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 21
  • 22. Adaptive Authentication – Login Workflow Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 22
  • 23. Adaptive Authentication – Level 2 Workflow Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 23
  • 24. Adaptive Authentication – Level 3 Workflow Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 24
  • 25. Adaptive Authentication – Level 5 Workflow Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 25
  • 26. Forgot Password Workflow Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 26
  • 27. Forgot Username Workflow Copyright © 2013. EmpowerID is a trademark of The Dot Net Factory, LLC. | www.empowerID.com 27