by The Smoking Monkey

Nice little customer success story for Identity Manager. Enjoy!
Italy’s University of Verona provides wide-ranging educational opportunities including undergraduate, postgraduate, and doctoral degrees and coursework, as well as specialty training and doctoral research. The university’s eight primary areas of study are economics, law, humanities, languages and literature, medicine, sports science, education science, and mathematical, physical, and natural sciences. The institution conducts intensive scientific research in each of these areas.
Read More.
by The Smoking Monkey

Register for this free Webinar to learn more about the latest identity administration advancements for Identity Manager and Role Manager, including:
* One-click enablement of compliant provisioning
* Integrated role assignment
* Preventative, real-time segregation of duties (SoD) policy enforcement
Topic: Sun Webcast Series – Identity Manager and Role Manager Product Update
Date: Wednesday, January 20, 2010
Time: 10:00 am PT / 1:00 pm ET / 19.00 CET (check my timezone)
Duration: 1 hour
Speaker: Sun Product Manager Mat Hamlin
by The Smoking Monkey
On the customer front — Express Scripts has deployed Sun’s Identity Management Portfolio to implement a centralized identity management solution that automates provisioning for more than 100 systems based on an employee’s job function or operational role. The solution has created a centralized identity directory that maps multiple corporate identities on disparate systems that are each associated with a single employee.
Here’s a link to the customer success story
You can also read more identity customer success stories here.
by The Smoking Monkey

Last week I had the opportunity to record an IDM Buzz Podcast with Michael Cote of Redmonk and Jamie Nelson, Sun’s Director of Engineering for OpenSSO.
In this episode we discuss the latest OpenSSO Express 9 launch and our new Fine-Grained Authorization (FGA) capabilities. We also explain why we chose a Resource Oriented Architecture when designing our FGA solution and did some therapy with Cote to help him deal with his exposure to a shaved, punk rock cat (we’re hoping his health care covers the session).
Listen Now
Also, if you missed our webinar last week on the OpenSSO Fine-Grained Authorization capabilities check out the replay here. Enjoy!
by The Smoking Monkey
For those that missed it, below is the webinar we recorded yesterday on OpenSSO’s new Fine-Grained Entitlement Enforcement capabilities. Enjoy! You can also read the press release here.
by The Smoking Monkey

There’s a couple of nice technical articles available that demonstrate how to integrate EJBCA and OpenSSO. EJBCA is an enterprise class PKI Certificate Authority built on J2EE technology. It is a robust, high performance, platform independent, flexible, and component based CA to be used stand-alone or integrated in other J2EE applications. EJBCA provides users with digital certificates for strong authentication and digital signatures. OpenSSO uses these credentials to provide single sign-on and authorization. Check out the articles.
Using OpenSSO To Protect Java EE Applications: Setting Up X.509 Client Authentication
Integrating EJBCA and OpenSSO (pdf)
by The Smoking Monkey

As we near the end of the year, Kuppinger Cole and Sun Microsystems will take an in-depth look at how you can externalize authorization using next-generation technology that scales! Analyst Felix Gaehtgens will review the market and provide insight into what’s ahead, and Sun Chief Identity Strategist Daniel Raskin will share exciting news about how customers can use OpenSSO to implement a repeatable, scalable process for externalizing authorization.
Register Now for this free Webinar to learn more about:
* What’s happening in the market regarding externalized authorization
* Key trends and priorities
* Actions you should think about for 2010 and beyond
* Fine-grained entitlement enforcement in OpenSSO Express 9
While other vendors offer fine-grained entitlement enforcement as a standalone solution, Sun’s OpenSSO is the only solution to deliver access management, federation, secure Web services and now fine-grained entitlement enforcement — all in a single application.
Date: Wednesday, December 16, 2009
Time: 10:00 am PDT / 1:00 pm EDT / 19.00 CET (check my timezone)
Duration: 1 hour
Speaker: Kuppinger Cole Analyst Felix Gaehtgens and Sun Chief Identity Strategist Daniel Raskin
by The Smoking Monkey
Last week I recorded a new Identity Buzz Podcast with K. Scott Morrison, Layer 7 CTO & Chief Architect. We discussed the Sun OpenSSO Enterprise / Layer 7 SecureSpan Gateway integration. The combined Sun / Layer 7 solution offers a powerful one-two punch when trying to conquer web services security.
Essentially, the solution allows you to deploy SecureSpan as a policy enforcement point and OpenSSO as a Policy Decision Point when abstracting and centralizing authentication and authorization for your company’s web services. The SecureSpan Gateway is a nice complement to OpenSSO because it inserts an abstraction layer between the web service requesters and web service endpoints in order to govern and secure their transactions. Rather than having to deploy a local agent to protect every web service you can implement a gateway that acts as a broker to all your services.
To learn more about this integration listen to our latest Identity Buzz Podcast on the topic.
Listen Now
You can also subscribe to the feed and get episodes automatically. Here’s the iTunes friendly link and the Feedburner feed. There is also a nice article describing the integration on the Sun Developer Network titled “Delegating XML Gateway Runtime Authorization to OpenSSO.” Enjoy!

by The Smoking Monkey
Sun prides itself on the breadth and depth of it’s Sun Identity Management Suite partner integrations. We work hard to make sure that customers can integrate our products with all kinds of popular 3rd party solutions. This not only helps extend the breadth of capabilities you can deploy with your Sun Identity Management infrastructure, but also lowers the development cost of integrating our offerings with partner offerings to create a best-of-breed solution. We have hundreds of partnerships with strategic consulting providers, delivery specialty partners and ISV partners. Below are a set of new solution briefs we made available for a few of our popular ISV partners. Enjoy!

Risk-based and multifactor authentication provides supplementary identity protection for applications secured by Sun OpenSSO Enterprise. Delivered on-premise or as Arcot-hosted service. ArcotID software credential provides transparent two-factor protection.
Solution Brief

BrinQa offers a comprehensive Governance, Risk & Compliance platform that provides the flexibility of a web application and the robustness of a solid framework. The products offer Fortune 2000 companies a complete solution that brings the separate functions of G-R-C together for a holistic view of Information Risk. In addition, our out-of-the-box applications target the most critical business needs in the ITGRC market today.
Solution Brief

Cyber-Ark’s Privileged Identity Management (PIM) Suite is an enterprise-class, full life-cycle solution for securing, managing, automatically changing and monitoring all activities associated with privileged accounts. This includes the Root account on UNIX/Linux, Administrator in Windows, Cisco Enable, Oracle systems/sys, MSSQL SA, SAP Application Server and many more such as Emergency or ‘Firecall’ IDs.
Solution Brief

Intellitactics solutions provide cost-effective choices for all organizations. Whether the focus is — Compliance, Proactive threat management to protect information assets, Defending the enterprise against ingenious attacks or malicious insiders. These solutions enable every organization to reap the benefits of actionable visibility to IT risk relevant information and risk events.
Solution Brief

Passlogix offers enterprise single sign-on combined with Sun Identity Manager and Sun OpenSSO Enterprise to allow system administrators to directly distribute user credentials (usernames and passwords) for all enterprise applications (Web and non-Web).
Solution Brief
by The Smoking Monkey
I’m happy to announce that Sun Role Manager 5 and Sun Directory Server Enterprise Edition 7 are now shipping!
Sun Role Manager 5.0 is the latest release of Sun’s Enterprise Role Management and Access Governance solution. In this release, Sun is extending it’s leadership in the market by driving innovation that will allow companies to move beyond answering the simple question of “who has access to what?,” and make available the information necessary to intelligently govern the definition, assignment, and enforcement of access within an organization.
Sun Directory Server Enterprise Edition 7.0 allows companies to grow faster and easier. The new release focuses on two key areas – improving performance and lowering total cost of ownership. This release boasts a 3x performance improvement over the previous version of the product. In addition, this release provides hardware optimization with up to 60% improvement in authentications and modifications. This allows customers to accelerate their applications without changing a line of code.
If you would like a recap of what’s new, check out our press release and updated Role Manager and Directory Server EE product pages below.
1) Read Sun Role Manager 5 / Directory Server 7 Press Release
2) Visit the Sun Role Manager Product Page
3) Visit the Sun Directory Server Enterprise Edition Product Page
Also, you can watch a recap of our launch webinar by just clicking on the video below.