Hitachi ID Systems, Inc.

Hitachi

Products Partner Integrations
certification

Integrated Partner Products

Partner products provide added value to customers who have deployed core identity management components. Hitachi ID includes pre-built integrations to these valuable products with Hitachi ID Management Suite®.

Hitachi ID recommends the following partner products to complement Hitachi ID Management Suite:

ILM: Microsoft Identity Lifecycle Manager
Meta directories are engines that synchronize data about users between different systems. A meta directory works as follows:

  • Connectors to multiple target systems are configured, to read and write user profile data.
  • Data streams from integrated systems are merged, to construct a master database of user profile information.
  • Where a user's data in the master database differs from that user's profile on a lower-priority target system, the target system is updated to reflect the user's current information.
  • Users may be added to or removed from target systems, based on changes detected on systems of record.

Meta directories simplify user administration by propagating changes from systems of record to managed systems, eliminating manual updates.

Since meta directories do not normally expose a user interface, or interact directly with users, they can be thought of as "plumbing" embedded in an enterprise identity management infrastructure.

An excellent meta directory product is ILM from Microsoft.

Learn more about:

ILM: here

Hitachi ID Management Suite integration: here

Access Manager: EMC/RSA Access Manager
EMC/RSA Access Manager is a Web access management / Web single signon solution. A Web access management (WebAM) / Web single signon (WebSSO) system is middleware used to manage authentication and authorization of users accessing one or more web-enabled applications.

A WebSSO system intercepts initial contact by the user's web browser to a web application and either verifies that the user had already been authenticated (typically tracking authentication state in a cookie) or else redirects the user to an authentication page, where the user may use a password, token, PKI certificate or other method to authenticate himself.

Once a user is authenticated, the WebAM component of the system system controls the user's access to application functions and data. This is done either by filtering what content the user can access (e.g., URL filtering) and by exposing an API that the application can use to make run-time decisions about whether to display certain forms, fields or data elements to the user.

WebSSO / WebAM products typically use an LDAP directory as a back-end repository, to identify all users. They often come tightly integrated with an "identity management" application, which enables delegated and in some cases self-service administration of the contents of that single directory.

Learn more about:

Access Manager: here

Hitachi ID Management Suite integration: here

Sage: Eurekify Sage Enterprise Role Management
Sage ERM is an enterprise role management system. It is used to find clusters of similar users, to assist in the process of role engineering. It can also identify clusters of privileges with shared users, users with out-of-pattern privileges and users whose actual privileges do not match their role assignments.

Learn more about:

Sage: here

Hitachi ID Management Suite integration: here