New versions of Sun Role Manager software and Sun Directory Server Enterprise Edition have been announced. Version 5.0 of Sun Role Manager software offers a 360-degree view of assigned user access to data and applications, enabling more intelligent governing of what users have done and do with their access, as well as assignment and enforcement of access within organizations. Version 7.0 of Sun Directory Server Enterprise Edition improves performance by more than three times when compared to its predecessor, Sun reports, and improves authentication and modification performance by 60 percent, allowing customers to accelerate their applications without changing one line of code.
Sun Role Manager 5.0
Considered a major release, Version 5.0's 360 Degree View of Assigned Access provides a unified view of data related to user access that empowers reviewers to make more intelligent decisions concerning users access. With this feature, Sun provides a comprehensive access-related data "mash-up" that includes the user's access, the "who, why, and where" associated with the assignment of said access, whether or not that access is considered to be "highly privileged" or in violation with defined SoD policies, and any activity associated with the user's access. The included "activity" is pulled from the existing SIEM infrastructure and provides the data to answer the question: "what did the user do with their access".
Other key features in this release:
- Closed-loop Remediation: For reviewing user access and removing inappropriately assigned access. Automatically verify that the appropriate remediation action has been taken and alert interested parties in the event that action is not taken.
- Rule Life-cycle Management: Manages the complete life-cycle of role assignment and SoD audit rules. Provides audit-friendly evidence that access is being assigned according to defined policies. Sun also has added support "what-if" scenario testing for determining the impact that changes to rules will have on the access assignment process prior to instituting the change. Additionally, a web-service interface for remotely executing both the rule assignment and SoD rules is included that will simplify the process of integrating with third-party systems that utilize Sun Role Manager as the authoritative source for roles, audit policies, and role assignment rules.
Currently, this software update is available for download. The media kit is expected to be available October 21, 2009.
Along with this announcement, Sun indicated that Sun Role Manager 4.1 has reached its end of life with a last order date of January 1, 2010, and a subsequent last ship date of April 2, 2010.
Sun Directory Server Enterprise Editon 7.0
General features and improvements listed by Sun:
- 3x Performance Improvement: Accelerate applications with 3x improvement in performance
- Virtual Directory: Aggregates identity data from multiple sources to provide a virtual view accessed through LDAP for identity-enabled applications
- Service Manageability: Enables users to reduce cost and improve serviceability
Other capabilities and services provided by the Sun Directory Server Enterprise Edition as identified by Sun:
- Centralized Repository for Identity, Application, and Network Resource Information: Provides a highly scalable, secure, and flexible means of storing and managing identity data - from entry-level to large scale deployments
- Directory Proxy Services: Prevents denial-of-service (DoS) attacks,
controls access based on specific criteria, and intercepts unauthorized operations; Enables failover operations, allowing the directory service to continue when a server is offline; Load balancing protects the directory environment from load-related failures and delivers horizontal scalability on reads/searches
- Unlimited Number of Masters: Provides a highly flexible and scalable
replication environment
- Data Compression: Allows entries to be compressed to save
disk and memory
- Global Directory Service Management: Provides the ability to manage multiple directory servers as a service
- Consolidated Identity View: Allows multiple directory servers with
different schemas to act together to service clients
"Our customers will like the products we are announcing today because they were designed to impact their bottom line," said Daniel Raskin, chief identity strategist, Sun. "Companies are looking for better ways to achieve and maintain compliance, as well as extend their identity management solutions to the extranet. Advanced technologies available in Sun Role Manager software and Directory Server Enterprise Edition will help our customers scale their businesses, while protecting millions of users and hundreds of applications without headaches."
More Information
Sun Role Manager 5.0
Sun Directory Server Enterprise Edition 7.0
DSEE data sheet
[...read more...]