Upload
oleg-cohen
View
79
Download
0
Embed Size (px)
Citation preview
Page 1 Visit us at http://www.assurebridge.com
Oleg Cohen
AssureBridgeB2B Single Sign-On (SSO) Made Easy
State U. Needs SSO
Integration Assistance
State U.
student/faculty
Page 2 Visit us at http://www.assurebridge.com
AGENDA
Business Problem
What is AssureBridge
Value Proposition
Demo
AssureBridge Difference
Page 3 Visit us at http://www.assurebridge.com
Business Problem –Your students and faculty connect to many externally hosted online services
State U. Needs SSO
Integration Assistance
State U.
student/faculty
Page 4 Visit us at http://www.assurebridge.com
Customer Need
BUSINESS DRIVER:
Allow students/faculty to use a single user name and password
to securely access many hosted online services
CUSTOMER PAINS:
User frustration managing many IDs and passwords
ID and password proliferation increases risk of breach
Costly to comply with prompt account deactivation policies
High costs and security risks of custom SSO solutions
CUSTOMER NEED:
Implement and support SSO connections with multiple online services
Partner 2Partner 2
Your Campus
Network Partner 2Hosted
Service
Page 5 Visit us at http://www.assurebridge.com
AssureBridge Offering – SSO Exchange
Fully-Managed Hosted
Single Sign-On Service
Seamlessly logs Web users into
hosted online services
Connects to campus directory
Passwords never leave the campus network
Provides professional setup, configuration,
troubleshooting, and monitoring
by AssureBridge experts
Page 6 Visit us at http://www.assurebridge.com
Our customers:
Value Proposition – Consistent DeliveryO
UR
ST
RE
NG
TH
S
Fastest
Implementation
Va
lue
Pro
po
sit
ion
Customer Satisfaction
Reliable
Hosting
Expertise
• Painlessly integrate with multiple online services
Page 7 Visit us at http://www.assurebridge.com
Our customers:
Value Proposition – ExpertiseO
UR
ST
RE
NG
TH
S
Fastest
Implementation
Va
lue
Pro
po
sit
ion
Customer Satisfaction
Reliable
Hosting
Expertise
• Painlessly integrate with multiple online services
Are shielded from implementing and maintaining complex Single Sign-on products
Page 8 Visit us at http://www.assurebridge.com
Value Proposition – SupportO
UR
ST
RE
NG
TH
S
Fastest
Implementation
Va
lue
Pro
po
sit
ion
Customer Satisfaction
Reliable
Hosting
Expertise
Our customers:
Are shielded from implementing and maintaining complex Single Sign-on products
• Painlessly integrate with multiple online services
Leverage fault-tolerant infrastructure and expert support to maximize service uptime
Page 9 Visit us at http://www.assurebridge.com
Value Proposition – Cost SavingsO
UR
ST
RE
NG
TH
S
Fastest
Implementation
Va
lue
Pro
po
sit
ion
Customer Satisfaction
Reliable
Hosting
Expertise
Our customers:
No longer required to invest into hiring and retaining expensive and hard-to-find experts
• Painlessly integrate with multiple service partners
Leverage fault-tolerant infrastructure and expert support to maximize service uptime
Benefit from
timely Internet
SSO solution
with lowest
support costs
Page 10 Visit us at http://www.assurebridge.com
AssureBridge Positioning
For educational institutions which manage
multiple Internet SSO connections
SSO Exchange is an affordable
full-service hosted solution
that delivers the most reliable standards-compliant
SSO functionality with the least amount of effort
To enable high level of
student and faculty satisfaction
and maximum safety of user account information
Page 11 Visit us at http://www.assurebridge.com
DEMO*AssureBridge SSO Solution
* Demo Screenshots are coming soon …
Page 12 Visit us at http://www.assurebridge.com
Secure Internet SSO is Highly Complex
Speedy Rent-A-Car Domain (https://www.speedyrental.com)
Reliable Insurance Domain (https://www.reliableinsurance.com)
IDM
Speedy Rentals Secure Partner Site
SAML Identity Provider (IDP)
Reliable Insurance
SAML Service Provider (SP)
Customer
Link to Rent a Car
Step 1a: User logs into Reliable Site Step 1b: User Clicks on Rent-A-Car Site Link
Step 2a: Portal Sends Request to IDP Step 2b: IDP gets attributes, builds SAML Assertion , signs with a Partner A’s Private Key
1
2
3
4
7
8
Custom SSO Plug-in
Application Component
9
5
6
Step 3: IDP Redirects to Browser with a SAML artifact token
Step 4: User Browser redirects artifact token to SAML SP
Step 5: SP requests SAML assertion via a SOAP service
Step 6: IDP returns SAML assertion via a SOAP service
Step 7a: SP validates SAML Assertion Cryptographic signatureStep 7b: SP send s browser secure SAML token with encrypted user attributes
UserStore
UserStore
Step 8: Browser redirect User to Speedy Rental site with secure SAML token in request
Step 9: Decodes the token, extracts user info and binds into Portal session context.
Secure and reliable Internet SSO involves many
complex interactions among multiple
distributed parties. AssureBridge shields your
IT staff from these complexities.
Page 13 Visit us at http://www.assurebridge.com
Key SSO Challenges
Expertise
True experts are hard to find
Knowledge gaps are risky
Time-To-Market
Build, implement, and integrate
Negotiate and coordinate with service providers
Security
Potential legal and audit exposure
Data privacy protection
issues
Operations
SSO issues = student/facultydissatisfaction
SSO issues require complex troubleshooting
Page 14 Visit us at http://www.assurebridge.com
Key SSO Challenges – Expertise
Security
Potential legal and audit exposure
Data privacy protection
issues
Operations
SSO issues = student/facultydissatisfaction
SSO issues require complex troubleshooting
Time-To-Market
Build, implement, and integrate
Negotiate and coordinate with service providers
Expertise
True experts are hard to find
Knowledge gaps are risky
Page 15 Visit us at http://www.assurebridge.com
AssureBridge Solution – Expertise
Time-To-Market
Build, implement, and integrate
Negotiate and coordinate with service providers
Security
Potential legal and audit exposure
Data privacy protection
issues
Operations
SSO issues = student/facultydissatisfaction
SSO issues require complex troubleshooting
Expertise
SSO protocolconfiguration
Campus directory integration
Page 16 Visit us at http://www.assurebridge.com
Key SSO Challenges – Time-To-Market
Security
Potential legal and audit exposure
Data privacy protection
issues
Operations
SSO issues = student/facultydissatisfaction
SSO issues require complex troubleshooting
Time-To-Market
Build, implement, and integrate
Negotiate and coordinate with service providers
Expertise
SSO protocolconfiguration
Campus directoryintegration
Page 17 Visit us at http://www.assurebridge.com
AssureBridge Solution – Time-To-Market
Security
Potential legal and audit exposure
Data privacy protection
issues
Expertise
SSO protocolconfiguration
Campus directoryintegration
Time-To-Market
Rapidprovisioning
Turnkey SSO gateway
Integration test harness
Operations
SSO issues = student/facultydissatisfaction
SSO issues require complex troubleshooting
Page 18 Visit us at http://www.assurebridge.com
Key SSO Challenges – Security
Expertise
SSO protocolconfiguration
Campus directory integration
Time-To-Market
Rapidprovisioning
Turnkey SSO gateway
Integration test harness
Security
Potential legal and audit exposure
Data privacy protection
issues
Operations
SSO issues = student/facultydissatisfaction
SSO issues require complex troubleshooting
Page 19 Visit us at http://www.assurebridge.com
AssureBridge Solution – Security
Operations
SSO issues = relationship problems
SSO issues require complex troubleshooting
Expertise
SSO protocolconfiguration
Campus directory integration
Time-To-Market
Rapidprovisioning
Turnkey SSO gateway
Integration test harness
Security
Leveragesindustry standards
Secure multi-tenant platform
Fully auditable system
Operations
SSO issues = student/facultydissatisfaction
SSO issues require complex troubleshooting
Page 20 Visit us at http://www.assurebridge.com
Key SSO Challenges – Operations
Expertise
SSO protocolconfiguration
Campus directory integration
Time-To-Market
Rapidprovisioning
Turnkey SSO gateway
Integration test harness
Security
Leveragesindustry standards
Secure multi-tenant platform
Fully auditable system
Operations
SSO issues = student/faculty dissatisfaction
SSO issues require complex troubleshooting
Page 21 Visit us at http://www.assurebridge.com
AssureBridge Solution – Operations
Expertise
SSO protocolconfiguration
Campus directory integration
Time-To-Market
Rapidprovisioning
Turnkey SSO gateway
Integration test harness
Security
Leveragesindustry standards
Secure multi-tenant platform
Fully auditable system
Operations
24x7 support
Robust enterprise-class platform
Early warning system
Triage
Page 22 Visit us at http://www.assurebridge.com
Summary
AssureBridge rapidly delivers reliable
SSO empowering you to:
Quickly connect with online services
Support many SSO integrations without draining staff
Provide students/faculty with a rock-solid solution
Avoid an expensive product purchase and installation
Page 23 Visit us at http://www.assurebridge.com
For more information please visit our Web Site at
http://www.assurebridge.com
and contact
Oleg CohenAssureBridge, Inc.
888-409-6995
617-455-7927
Page 24 Visit us at http://www.assurebridge.com
APPENDIX
Page 25 Visit us at http://www.assurebridge.com
How we solve the problemWithout AssureBridge
You Your Online Service
Your Portal
Commercial
SSO Product
($$$)
Service Web
ApplicationIntegration ($$)
SSO Infrastructure
+ Operations ($$)
Page 26 Visit us at http://www.assurebridge.com
How we solve the problemUsing AssureBridge Services
Partner A Partner B
Web Site A
SSO Exchange:
Hosted AssureBridge SSO Services
Robust & Reliable Infrastructure
World-Class Operations
Web Site B
Integration ($)
($)
Page 27 Visit us at http://www.assurebridge.com
DEMOAssureBridge SSO Solution for Speedy Rental
Page 28 Visit us at http://www.assurebridge.com
Business Case
• State U. is a prestigious university
• State U. uses a number of online applications including
ADP, Capital IQ, and Zendesk
• State U. wants its students and faculty to seamlessly
and securely log into these external services
• State U.’s security policy prohibits exchange of
passwords with external entities
• State U. lacks resources and technology to build and
maintain a reliable SSO solution
• State U. decides to leverage AssureBridge SSO
Exchange service and AD Gateway to connect to
external services reliably and affordably
Page 29 Visit us at http://www.assurebridge.com
BEFORE SINGLE SIGN-ON
COMING SOON …
Demo
Page 30 Visit us at http://www.assurebridge.com
SINGLE SIGN-ON EXPERIENCE
COMING SOON …
Demo