IBM Tivoli Software TAM E-SSO Version 8.1 September 24, 2011 Analisa Barretto 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 Introduction This is a quick overview of Tivoli Access Manager for Enterprise Single Sign on 8.1 Agenda: 1. Why TAM E-SSO? 2. What is TAM E-SSO? 3. Architectural elements of TAM E-SSO 4. Demo 2 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 Why TAM E-SSO? Challenges Poor user productivity Weak user password security Employees locked out interrupting work and revenue Increasing help-desk costs Difficulty in securing applications. Inefficient auditing and Reporting Desired Simplify end user experience by eliminating the need to remember/manage passwords Enhance security by eliminating weak passwords Reduce help desk costs by lowering the number of password reset calls Extensive integration with strong authentication form factors Centralized auditing and reporting for visibility into user access And yes, IBM has this… Its called TAM E-SSO 3 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 What is TAM E-SSO Tivoli Access Manager for Enterprise Single Sign-On provides its single sign-on functionality by introducing a layer that authenticates a user once and then automatically detects and handles subsequent requests for user credentials. TAM E-SSO enables automation of the sign-on process, control over access to business assets, and visibility into user activity in order to drive value for our clients. Tightly integrates with Tivoli Identity Manager to provision and remove credentials Signs on to Tivoli Access Manager to enable fine-grained authorization and entitlements to web applications . 4 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 TAM E-SSO Solution Overview Windows Apps Web Apps TTY and Mainframe Apps Java Apps 5 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 Product Overview 6 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 TAM E-SSO Capabilities 7 Strong Authentication Enterprise SSO Workflow Automation Session Management • Building badge integration For Win/Citrix/TS/thin client platforms Shared Desktops • Roaming Desktops Active RFID Application launch, drive mapping, single sign-off, • Automate any presentation layer event Private Desktops Fingerprint biometric For Web/Desktop/Mainframe/ • USB Smart Cards • Cell phone authentication Automate walk away desktop security • OTP • iTAG TTY apps Browser-based SSO Auto-generation of SSO AccessProfiles Support and Self-Service Centralized Admin Centralized Audit Loss management Web-based AccessAdmin End-point tracking User Self-service Group-based, policy-driven mgmt Centralized SQL reporting 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 Components of TAM E-SSO 8 Component Description IMS Server Integrated management system for central administration AccessAgent Client software that manages user identity, SSO and authentication AccessAdmin Management console to administer the IMS Server, manage users and policies AccessStudio Interface to create AccessProfiles for SSO and automation AccessAssistant Web-based interface for password self-help Web Workplace Web-based interface for SSO to Web applications, by clicking links 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 User Wallet Stores the user’s credentials and related information (user IDs, passwords, certificates, encryption keys) 9 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 TAMESSO User Roles 10 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 Demo Product Documentation: http://publib.boulder.ibm.com/infocenter/tivihelp/v2r1/topic/com.ibm.itamesso.doc/ic-homepage.html 11 4/13/2015 © 2011 IBM Corporation Tivoli Access Manager Enterprise Single Sign-On v8.1 Questions? Product Documentation: http://publib.boulder.ibm.com/infocenter/tivihelp/v2r1/topic/com.ibm.itamesso.doc/ic-homepage.html 12 4/13/2015 © 2011 IBM Corporation