Hitachi ID Management Suite 6.0
Hitachi ID Management Suite 6.0 is a major rewrite of Identity Manager, Hitachi ID Access Certifier, Hitachi ID Org Manager and Hitachi ID Group Manager. Most noticeably, it replaces the CodeBase engine with each customer's choice of Oracle or Microsoft SQL databases. That's just the beginning -- there are lots of enhancements too:
- The access certification process and screens have been totally re-implemented. Certification is more flexible, more user friendly and much faster now.
- Role-based access control features have been re-implemented and extended. There are persistent user/role assignments, calculated role changes and role-aware access certification.
- Segregation of duties (SoD) policies are enforced throughout the request input and approval processes.
- Approved exceptions to SoD policies are recorded and are visible in both change requests and access certification.
- Auto-provisioning has been re-designed. ID-Compare, which worked by comparing every user in two lists, has been replaced with ID-Track, which aggregates detected changes on a per-user basis and allows customers to write business logic in the form "when X changes, do Y."
- Code-less identity synchronization has been added, along with attribute-level priority. This means that customers can easily configure Identity Manager to synchronize data like phone numbers, e-mail addresses, department and location codes, etc. between multiple systems, without having to write any code.
- A new workflow API has been exposed, making it much easier for implementers to write business logic that leverages the current state of users and requests. The API also allows scripts and third party applications alike to submit, modify and approve or reject change requests.
- The entire product is Unicode ready, making it suitable for deployment where user IDs and other user profile information contains Asian-language characters.
- Performance and scalability are extremely good.
For example, auto-discovery can load data about 10,000 users, 10,000 groups, 2 targets, 20,000 login IDs, 800,000 identity attributes, and 1,000,000 group memberships in just 20 minutes. - Numerous usability improvements have been made, both to the end-user and the administrator user interfaces of the software. For example, administrators can test connectivity to targets and can search log entries from the configuration web UI. The main menu for end users has been redesigned.




