2015 identity summit - openam: friends with benefits

72

Upload: forgerock

Post on 14-Apr-2017

1.893 views

Category:

Software


0 download

TRANSCRIPT

Page 1: 2015 Identity Summit - OpenAM: Friends with benefits
Page 2: 2015 Identity Summit - OpenAM: Friends with benefits
Page 3: 2015 Identity Summit - OpenAM: Friends with benefits

EUROPE’S LEADING ONLINE FASHION PLATFORM

15 countries3 fulfillment centers16+ million active customers2.2+ billion € revenue 2014130+ million visits per month9.000+ employees

Visit us: tech.zalando.com

Page 4: 2015 Identity Summit - OpenAM: Friends with benefits
Page 5: 2015 Identity Summit - OpenAM: Friends with benefits
Page 6: 2015 Identity Summit - OpenAM: Friends with benefits

DataCenter IGütersloh, Germany

DataCenter IIBerlin, Germany

DataCenter IIIBerlin, Germany

APP 1

APP 2

APP 3

APP 4

APP 5

APP 6

APP 1

APP 2

APP 3

APP 4

APP 5

APP 6

APP 1

APP 2

APP 3

APP 4FW FW

GLOBAL TRAFFIC MANAGEMENT

Page 7: 2015 Identity Summit - OpenAM: Friends with benefits
Page 8: 2015 Identity Summit - OpenAM: Friends with benefits
Page 9: 2015 Identity Summit - OpenAM: Friends with benefits
Page 10: 2015 Identity Summit - OpenAM: Friends with benefits

October

900+Apps

800+ Tech employees

Page 11: 2015 Identity Summit - OpenAM: Friends with benefits
Page 12: 2015 Identity Summit - OpenAM: Friends with benefits
Page 13: 2015 Identity Summit - OpenAM: Friends with benefits
Page 14: 2015 Identity Summit - OpenAM: Friends with benefits
Page 15: 2015 Identity Summit - OpenAM: Friends with benefits
Page 16: 2015 Identity Summit - OpenAM: Friends with benefits
Page 17: 2015 Identity Summit - OpenAM: Friends with benefits
Page 18: 2015 Identity Summit - OpenAM: Friends with benefits
Page 19: 2015 Identity Summit - OpenAM: Friends with benefits
Page 20: 2015 Identity Summit - OpenAM: Friends with benefits
Page 21: 2015 Identity Summit - OpenAM: Friends with benefits
Page 22: 2015 Identity Summit - OpenAM: Friends with benefits

Unified IdentityBeing in control of account, data and access regardless of its source

Unified PasswordOne password only to manage all accounts

Unified FlowsAbility to authenticate and authorize reliably for any identity

Unified cohesive architectureKnow you can trust an identity, without being aware of the protocol

Vision

Page 23: 2015 Identity Summit - OpenAM: Friends with benefits

THE PATH TO AWS

One AWS account per teamsecured via SSL and OAuth 2.0

Deployment based on Docker

Usage of REST + OAuth is mandatory

Bye Monolith, hello Microservices

Page 24: 2015 Identity Summit - OpenAM: Friends with benefits
Page 25: 2015 Identity Summit - OpenAM: Friends with benefits
Page 26: 2015 Identity Summit - OpenAM: Friends with benefits

Project Goals

API’s

Page 27: 2015 Identity Summit - OpenAM: Friends with benefits

Project Goals

Services

API’s

Page 28: 2015 Identity Summit - OpenAM: Friends with benefits

Project Goals

Services

API’s

Roles

Employee

Page 29: 2015 Identity Summit - OpenAM: Friends with benefits

Project Goals

Services

API’s

Roles

Partner/Brands

Employee

Page 30: 2015 Identity Summit - OpenAM: Friends with benefits

Project Goals

Services

API’s

Roles

Partner/BrandsCustomers

Employee

Page 31: 2015 Identity Summit - OpenAM: Friends with benefits
Page 32: 2015 Identity Summit - OpenAM: Friends with benefits
Page 33: 2015 Identity Summit - OpenAM: Friends with benefits
Page 34: 2015 Identity Summit - OpenAM: Friends with benefits
Page 35: 2015 Identity Summit - OpenAM: Friends with benefits
Page 36: 2015 Identity Summit - OpenAM: Friends with benefits
Page 37: 2015 Identity Summit - OpenAM: Friends with benefits
Page 38: 2015 Identity Summit - OpenAM: Friends with benefits
Page 39: 2015 Identity Summit - OpenAM: Friends with benefits
Page 40: 2015 Identity Summit - OpenAM: Friends with benefits
Page 41: 2015 Identity Summit - OpenAM: Friends with benefits
Page 42: 2015 Identity Summit - OpenAM: Friends with benefits
Page 43: 2015 Identity Summit - OpenAM: Friends with benefits
Page 44: 2015 Identity Summit - OpenAM: Friends with benefits

Ah no wait, we don’t need magic, We just need a Unicorn!

Page 45: 2015 Identity Summit - OpenAM: Friends with benefits
Page 46: 2015 Identity Summit - OpenAM: Friends with benefits
Page 47: 2015 Identity Summit - OpenAM: Friends with benefits
Page 48: 2015 Identity Summit - OpenAM: Friends with benefits
Page 49: 2015 Identity Summit - OpenAM: Friends with benefits
Page 50: 2015 Identity Summit - OpenAM: Friends with benefits

Shop rebuilt!Microservices now! protected with OAuth2!

Page 51: 2015 Identity Summit - OpenAM: Friends with benefits

But what if…

❖OpenAM needs to be updated?❖… changes its interface❖… or just doesn’t suit us

anymore?

We need an abstraction layer!

OpenAM

Customer facing

application

OpenDJ“Customer”

Page 52: 2015 Identity Summit - OpenAM: Friends with benefits
Page 53: 2015 Identity Summit - OpenAM: Friends with benefits
Page 54: 2015 Identity Summit - OpenAM: Friends with benefits
Page 55: 2015 Identity Summit - OpenAM: Friends with benefits
Page 56: 2015 Identity Summit - OpenAM: Friends with benefits
Page 57: 2015 Identity Summit - OpenAM: Friends with benefits
Page 58: 2015 Identity Summit - OpenAM: Friends with benefits
Page 59: 2015 Identity Summit - OpenAM: Friends with benefits
Page 60: 2015 Identity Summit - OpenAM: Friends with benefits
Page 61: 2015 Identity Summit - OpenAM: Friends with benefits
Page 62: 2015 Identity Summit - OpenAM: Friends with benefits
Page 63: 2015 Identity Summit - OpenAM: Friends with benefits
Page 64: 2015 Identity Summit - OpenAM: Friends with benefits
Page 65: 2015 Identity Summit - OpenAM: Friends with benefits
Page 66: 2015 Identity Summit - OpenAM: Friends with benefits
Page 67: 2015 Identity Summit - OpenAM: Friends with benefits
Page 68: 2015 Identity Summit - OpenAM: Friends with benefits
Page 69: 2015 Identity Summit - OpenAM: Friends with benefits
Page 70: 2015 Identity Summit - OpenAM: Friends with benefits
Page 71: 2015 Identity Summit - OpenAM: Friends with benefits
Page 72: 2015 Identity Summit - OpenAM: Friends with benefits