SlideShare a Scribd company logo
1 of 15
VIRTUAL IDENTITY SERVER-
LDAP PROXY FIREWALL
Securing and Protecting Active
Directory
Overview
 Many organizations utilize an http web proxy
server, such as Microsoft’s Internet Security
and Acceleration (ISA) Server within their
web server environment.
 Likewise, the Optimal IdM’sVirtual Identity
Server™ (VIS™), deployed as an LDAP proxy
server offers this type of protection and
security for LDAP directories such as Active
Directory.
Figure 1: Microsoft’s Internet Security and
Acceleration (ISA) Server
Figure 2: The Virtual Identity Server Proxy
Features of the VIS
 Application SpecificViews
 Powerful Join & Merge Option
 Comprehensive Audit and Compliance
 Robust Scaling and Caching
 Extensible Solution
 Enhance Microsoft Centric Platform
Application Specific Views
 AD alone does not provide the ability to
controlWHAT is searched like specific LDAP
queries
 VIS only grants the data the application
requires
 Results to a more secure AD and increased
performance for both application and AD
Figure 3: Normal AD View vs. VIS
Filtered View
Powerful Join and Merge Options - Without
Custom Code
TheVirtual Identity Server can:
 Provide a single enterprise view of data across
multiple siloed directories
 Provide a different view of the data on an application
by application basis
 Allow different rights/access to data (i.e. update or
read only) on an application by application basis
 Transform, merge and map data from multiple LDAP
directories to a virtual name or namespace
Comprehensive Audit & Compliance
 VIS can help your organization meet audit
and compliance initiatives such as those
required by Sarbanes Oxley (SOX), Basel II,
European Union Privacy Directive, Capital
Accord HIPAA and Gramm-Leach-Bliley Act.
 Using the built-in web reporting , you can
easily report on who logged in and when, and
what changes they made. Reports can even
be auto-scheduled for email distribution in a
wide variety of formats (PDF, XLS, HTML).
Robust scaling & Caching
 TheVirtual Identity Server scales horizontally
or vertically to meet the needs of enterprise
deployments.
 VIS has built-in connection pooling, and full
support for failover and load balancers.
Extensible solution
 TheVirtual Identity Server can be extended
using any standard .NET programming
language such asVB.NET or C#
 Custom adapters can easily written
leveraging the baseVIS .NET objects that are
visible withinVisual Studio.
Enhanced microsoft centric
platform
 VIS leverages the existing investment in
Microsoft technology, extending it with
increased functionality.
 VIS is developed in .NET technology and is
designed to seamless integrate with your
Microsoft environment.
SUMMARY OF BENEFITS
Active Directory withVIS LDAP Proxy Firewall
 AD is more secure, applications no longer
accessAD directly
 Data leakage protection
 Complete auditing solution
 Built-in failover
 Built-in connection pooling to AD
More Benefits…
 50% reduction of application deployment
time
 Application deployment barriers eliminated
 Kerberos token size limit problem reduced
 Increased AD and application performance
 Leverages and extends the existing
investment in the Microsoft platform
These key features are just
the tip of the iceberg…
Want to learn more about the
Virtual Identity Server?
Visit http://www.optimalidm.com/

More Related Content

Recently uploaded

Future Visions: Predictions to Guide and Time Tech Innovation, Peter Udo Diehl
Future Visions: Predictions to Guide and Time Tech Innovation, Peter Udo DiehlFuture Visions: Predictions to Guide and Time Tech Innovation, Peter Udo Diehl
Future Visions: Predictions to Guide and Time Tech Innovation, Peter Udo Diehl
Peter Udo Diehl
 
Breaking Down the Flutterwave Scandal What You Need to Know.pdf
Breaking Down the Flutterwave Scandal What You Need to Know.pdfBreaking Down the Flutterwave Scandal What You Need to Know.pdf
Breaking Down the Flutterwave Scandal What You Need to Know.pdf
UK Journal
 

Recently uploaded (20)

Enterprise Knowledge Graphs - Data Summit 2024
Enterprise Knowledge Graphs - Data Summit 2024Enterprise Knowledge Graphs - Data Summit 2024
Enterprise Knowledge Graphs - Data Summit 2024
 
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdfLinux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
 
Future Visions: Predictions to Guide and Time Tech Innovation, Peter Udo Diehl
Future Visions: Predictions to Guide and Time Tech Innovation, Peter Udo DiehlFuture Visions: Predictions to Guide and Time Tech Innovation, Peter Udo Diehl
Future Visions: Predictions to Guide and Time Tech Innovation, Peter Udo Diehl
 
The Metaverse: Are We There Yet?
The  Metaverse:    Are   We  There  Yet?The  Metaverse:    Are   We  There  Yet?
The Metaverse: Are We There Yet?
 
WebAssembly is Key to Better LLM Performance
WebAssembly is Key to Better LLM PerformanceWebAssembly is Key to Better LLM Performance
WebAssembly is Key to Better LLM Performance
 
Easier, Faster, and More Powerful – Notes Document Properties Reimagined
Easier, Faster, and More Powerful – Notes Document Properties ReimaginedEasier, Faster, and More Powerful – Notes Document Properties Reimagined
Easier, Faster, and More Powerful – Notes Document Properties Reimagined
 
Unpacking Value Delivery - Agile Oxford Meetup - May 2024.pptx
Unpacking Value Delivery - Agile Oxford Meetup - May 2024.pptxUnpacking Value Delivery - Agile Oxford Meetup - May 2024.pptx
Unpacking Value Delivery - Agile Oxford Meetup - May 2024.pptx
 
ECS 2024 Teams Premium - Pretty Secure
ECS 2024   Teams Premium - Pretty SecureECS 2024   Teams Premium - Pretty Secure
ECS 2024 Teams Premium - Pretty Secure
 
Breaking Down the Flutterwave Scandal What You Need to Know.pdf
Breaking Down the Flutterwave Scandal What You Need to Know.pdfBreaking Down the Flutterwave Scandal What You Need to Know.pdf
Breaking Down the Flutterwave Scandal What You Need to Know.pdf
 
IESVE for Early Stage Design and Planning
IESVE for Early Stage Design and PlanningIESVE for Early Stage Design and Planning
IESVE for Early Stage Design and Planning
 
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdf
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdfIntroduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdf
Introduction to FDO and How It works Applications _ Richard at FIDO Alliance.pdf
 
Salesforce Adoption – Metrics, Methods, and Motivation, Antone Kom
Salesforce Adoption – Metrics, Methods, and Motivation, Antone KomSalesforce Adoption – Metrics, Methods, and Motivation, Antone Kom
Salesforce Adoption – Metrics, Methods, and Motivation, Antone Kom
 
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
 
Intro in Product Management - Коротко про професію продакт менеджера
Intro in Product Management - Коротко про професію продакт менеджераIntro in Product Management - Коротко про професію продакт менеджера
Intro in Product Management - Коротко про професію продакт менеджера
 
What's New in Teams Calling, Meetings and Devices April 2024
What's New in Teams Calling, Meetings and Devices April 2024What's New in Teams Calling, Meetings and Devices April 2024
What's New in Teams Calling, Meetings and Devices April 2024
 
Demystifying gRPC in .Net by John Staveley
Demystifying gRPC in .Net by John StaveleyDemystifying gRPC in .Net by John Staveley
Demystifying gRPC in .Net by John Staveley
 
Where to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdfWhere to Learn More About FDO _ Richard at FIDO Alliance.pdf
Where to Learn More About FDO _ Richard at FIDO Alliance.pdf
 
The Value of Certifying Products for FDO _ Paul at FIDO Alliance.pdf
The Value of Certifying Products for FDO _ Paul at FIDO Alliance.pdfThe Value of Certifying Products for FDO _ Paul at FIDO Alliance.pdf
The Value of Certifying Products for FDO _ Paul at FIDO Alliance.pdf
 
Portal Kombat : extension du réseau de propagande russe
Portal Kombat : extension du réseau de propagande russePortal Kombat : extension du réseau de propagande russe
Portal Kombat : extension du réseau de propagande russe
 
Overview of Hyperledger Foundation
Overview of Hyperledger FoundationOverview of Hyperledger Foundation
Overview of Hyperledger Foundation
 

Featured

Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
Kurio // The Social Media Age(ncy)
 
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them wellGood Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Saba Software
 
Introduction to C Programming Language
Introduction to C Programming LanguageIntroduction to C Programming Language
Introduction to C Programming Language
Simplilearn
 

Featured (20)

How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
 
12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work
 
ChatGPT webinar slides
ChatGPT webinar slidesChatGPT webinar slides
ChatGPT webinar slides
 
More than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike RoutesMore than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike Routes
 
Ride the Storm: Navigating Through Unstable Periods / Katerina Rudko (Belka G...
Ride the Storm: Navigating Through Unstable Periods / Katerina Rudko (Belka G...Ride the Storm: Navigating Through Unstable Periods / Katerina Rudko (Belka G...
Ride the Storm: Navigating Through Unstable Periods / Katerina Rudko (Belka G...
 
Barbie - Brand Strategy Presentation
Barbie - Brand Strategy PresentationBarbie - Brand Strategy Presentation
Barbie - Brand Strategy Presentation
 
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them wellGood Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
Good Stuff Happens in 1:1 Meetings: Why you need them and how to do them well
 
Introduction to C Programming Language
Introduction to C Programming LanguageIntroduction to C Programming Language
Introduction to C Programming Language
 

Virtual Identity Server - LDAP Proxy Firewall: Securing and Protecting Active Directory

  • 1. VIRTUAL IDENTITY SERVER- LDAP PROXY FIREWALL Securing and Protecting Active Directory
  • 2. Overview  Many organizations utilize an http web proxy server, such as Microsoft’s Internet Security and Acceleration (ISA) Server within their web server environment.  Likewise, the Optimal IdM’sVirtual Identity Server™ (VIS™), deployed as an LDAP proxy server offers this type of protection and security for LDAP directories such as Active Directory.
  • 3. Figure 1: Microsoft’s Internet Security and Acceleration (ISA) Server
  • 4. Figure 2: The Virtual Identity Server Proxy
  • 5. Features of the VIS  Application SpecificViews  Powerful Join & Merge Option  Comprehensive Audit and Compliance  Robust Scaling and Caching  Extensible Solution  Enhance Microsoft Centric Platform
  • 6. Application Specific Views  AD alone does not provide the ability to controlWHAT is searched like specific LDAP queries  VIS only grants the data the application requires  Results to a more secure AD and increased performance for both application and AD
  • 7. Figure 3: Normal AD View vs. VIS Filtered View
  • 8. Powerful Join and Merge Options - Without Custom Code TheVirtual Identity Server can:  Provide a single enterprise view of data across multiple siloed directories  Provide a different view of the data on an application by application basis  Allow different rights/access to data (i.e. update or read only) on an application by application basis  Transform, merge and map data from multiple LDAP directories to a virtual name or namespace
  • 9. Comprehensive Audit & Compliance  VIS can help your organization meet audit and compliance initiatives such as those required by Sarbanes Oxley (SOX), Basel II, European Union Privacy Directive, Capital Accord HIPAA and Gramm-Leach-Bliley Act.  Using the built-in web reporting , you can easily report on who logged in and when, and what changes they made. Reports can even be auto-scheduled for email distribution in a wide variety of formats (PDF, XLS, HTML).
  • 10. Robust scaling & Caching  TheVirtual Identity Server scales horizontally or vertically to meet the needs of enterprise deployments.  VIS has built-in connection pooling, and full support for failover and load balancers.
  • 11. Extensible solution  TheVirtual Identity Server can be extended using any standard .NET programming language such asVB.NET or C#  Custom adapters can easily written leveraging the baseVIS .NET objects that are visible withinVisual Studio.
  • 12. Enhanced microsoft centric platform  VIS leverages the existing investment in Microsoft technology, extending it with increased functionality.  VIS is developed in .NET technology and is designed to seamless integrate with your Microsoft environment.
  • 13. SUMMARY OF BENEFITS Active Directory withVIS LDAP Proxy Firewall  AD is more secure, applications no longer accessAD directly  Data leakage protection  Complete auditing solution  Built-in failover  Built-in connection pooling to AD
  • 14. More Benefits…  50% reduction of application deployment time  Application deployment barriers eliminated  Kerberos token size limit problem reduced  Increased AD and application performance  Leverages and extends the existing investment in the Microsoft platform
  • 15. These key features are just the tip of the iceberg… Want to learn more about the Virtual Identity Server? Visit http://www.optimalidm.com/