| ★ wanayoo — archive 1999 http://www.isoft.com/snare/sso.html | Nouvelle recherche | Portail wanayoo |
|
SnareWorks Home FAQ Data Sheet White Paper Press Releases Register to Write a PSM SnareWorks Ad Slide presentation(warning! Lots of images) |
SnareWorksTM from IntelliSoft Corp., is a comprehensive security framework that combines the strong security features present in the Distributed Computing Environment (DCE), along with Public Key encryption techniques, to provide data protection facilities, scalable access control, remote security management and secure single sign-on (SSSO) for TCP/IP-based applications -- with complete transparency. No application substitution, no library or DLL replacements, and no custom programming are required to implement SnareWorks framework. Using SnareWorks Client/VPN, the same framework can be extended to non-DCE machines with the same degree of transparency. SnareWorks is designed and delivered with the needs of the IT manager and the Corporate Security officer in mind. It comes complete with a rule-based Adaptive Security FrameworkTM (ASF), a graphical authorization and security management environment that enables remote control of all network security aspects in the enterprise. The rules control what applications can be used and what connections are permitted, as well as providing access control to individual network objects. The same rules can be used to secure legacy and third-party applications through the use of dynamically loadable Protocol Support Modules (PSM). This enables SnareWorks to incorporate other distributed environments, such as messaging products, object request brokers (ORBs) and database management systems, into the same security framework as existing Internet-based applications, with the same degree of transparency. Single Network IdentityWith SnareWorks corporations can truly achieve a single network identity for each user across the entire spectrum of applications. SnareWorks Manager component retrieves the user's DCE credentials obtained from a DCE login prior to establishing a SnareWorks security tunnel and transmitting the data. SnareWorks Manager that receives the connection will authenticate and authorize the call based on the user's network identity.Protocol Support Modules are at the heart of SnareWorks's Adaptive Security Framework. The PSM identifies protocol-specific messages and objects as they are unpackaged from the security tunnel. Through a series of predefined entry points, the PSM can be called upon to perform security related actions on the protocol operation or on the protocol object in question. The security rules are expressed using DCE Access Control Lists (ACL). Other authorization frameworks are also available in SnareWorks. In particular HP Praesidium Authorization Server can be used as the repository for access rules. Examples of PSM related activities are connection-level authorization and auditing, object-level access checking, automatic password protection and credentials forwarding. PSMs can also be used to perform signon and credentials mapping on the target host, thus providing users with a framework to implement enterprise-wide secure single sign-on. PSMs can be written by end-users, application developers or security administrators. PSMs are dynamically loadable into SnareWorks Manager at runtime. Multiple Types of AuthenticationThe PSM technology extends SnareWorks to encompass other security features that are common today. For clients requiring additional authentication measures, the PSM can call out to smartcard or token-based cryptosystems prior to transmitting the protocol data. With SnareWorks autologin support, the PSM can perform a user login at the receiving server, and through predefined mappings the PSM can project the user's DCE credentials onto a third-party authorization model.PSMs can be written to call out to smart cards or token-based cryptosystems to perform additional authentication features prior to the connection attempt on the client machine. Similarly, the PSM can perform custom processing on the server side, for example to do chargeback accounting or even keystroke capture. Support for automatic login is also a PSM function. For protocols that have this support, SnareWorks can provide a true single signon environment to the enterprise.
Details, and More DetailsThe SnareWorks data sheet gives you more detail about the workings of SnareWorks.For greater detail, a white paper is available -- SnareWorks: A Transparent Security Framework for TCP/IP and Legacy Applications". The paper, written by Jonathan Chinitz, president of IntelliSoft, and Steve Sonnenberg, Intellisoft vice president, technology, details the design and functioning of SnareWorks. After reading the paper, you should be able to determine how well SnareWorks fits your single sign-on and security needs.
SnareWorks AvailabilitySnareWorks 3.0 is available now from IntelliSoft.Please fill out a contact form if you would like an IntelliSoft representative to contact you to arrange a SnareWorks demo or to receive more information. Thanks for your interest in SnareWorks and IntelliSoft Corp.
|
|
Email the webmaster. Thanks for visiting. Last update October 20, 1999. ©1998 IntelliSoft Corp. |
|