single sign on - benefits, challenges and case study : ifour consultancy
DESCRIPTION
Single sign on - benefits, challenges and case study. Courtesy : www.ifour-consultancy.com and Symbiosis studentsTRANSCRIPT
![Page 1: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/1.jpg)
Single Sign On (SSO)
http://www.ifour-consultancy.com
Benefits, challenges and case study
![Page 2: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/2.jpg)
Definition
• Single sign-on (SSO)is a session/user authentication process that permits a user to enter one username and password in order to access multiple applications. The process authenticates the user for all the applications they have been given rights to and eliminates further prompts when they switch applications during a particular session.
![Page 3: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/3.jpg)
Types of SSO
• Holy Grail• Enterprise SSO• Synchronization SSO• Web SSO
![Page 4: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/4.jpg)
HOLY GRAIL
ACTIVE DIR
UNIX
LINUX
MAC
JAVA
SAP
• One identity gives you a single login. • That single login to single directory gives you seamless access to all the applications.• It is the most efficient ,secure and compliant way to do SSO.
![Page 5: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/5.jpg)
ENTERPRISE
ACTIVE DIR LOGIN AUTOMATION
DB2
ORACLE
• Often also called as login automation.• The end users login once, but behind the scenes the automation tool logs in to all the applications they
need• The user has convenience but the IT staff still has to manage all the systems login, cause actual login still
happens to all the systems.
![Page 6: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/6.jpg)
SYNC
UNIX
LINUX
MAC
JAVA
SAP
ACTIVE DIR Sync Tool
ok
• A Sync Tool synchronizes all the directories and all the passwords across the system.
![Page 7: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/7.jpg)
WEB SSO
ACTIVE DIR
UNIX
LINUX
MAC
JAVA
SAP
INTERNET
• Allows the users which are coming remotely ,in a single login ,instead of multiple logins in multiple sessions.
![Page 8: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/8.jpg)
Components of SSO process
![Page 9: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/9.jpg)
ACTIVE DIR
UNIX
LINUX
MAC
JAVA
SAP
DB2
ORACLE
INTERNET
LOGIN AUTOMATION
HOLY GRAIL
ENTERPRISE
SYNC
WEB SSO
![Page 10: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/10.jpg)
Benefits
• Saves Time and Efforts
![Page 11: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/11.jpg)
Benefits
• Fewer Passwords to Remember
![Page 12: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/12.jpg)
Benefits
• Reduced Phishing
![Page 13: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/13.jpg)
Benefits
• Reduced Operational Cost
![Page 14: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/14.jpg)
Benefits
• Fine Grained Auditing
![Page 15: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/15.jpg)
Benefits
• Effective Compliance
• Speeds Up Development
• Easier to Secure
• Resource Savings
![Page 16: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/16.jpg)
Benefits
• Rich User Experience
![Page 17: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/17.jpg)
Benefits
• Reduced headache of assisting users with password recovery
![Page 18: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/18.jpg)
Who Uses Single Sign On ?
All trademarks, product names, and company names and logos appearing on this presentation are the property of their respective owners.
![Page 19: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/19.jpg)
Drawbacks
• “Keys to the Castle”: As single sign-on provides access to many resources once the user is initially authenticated it increases the negative impact in case the credentials are available to other persons and misused.
• Single point of failure
![Page 20: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/20.jpg)
• Therefore, single sign-on requires an increased focus on the protection of the user credentials, and should ideally be combined with strong authentication methods• Advance + Combined Methods
• smart cards• one-time password tokens• Fingerprint Scanner and Keystroke Dynamics
• Strict policies and standards• Added cost
Drawbacks
SomethingYou Are
SomethingYou Have
SomethingYou Know
![Page 21: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/21.jpg)
Drawbacks
• Single sign-on also makes the authentication systems highly critical; a loss of their availability can result in denial of access to all systems unified under the SSO. SSO can thus be undesirable for systems to which access must be guaranteed at all times, such as security or plant-floor systems.
SSO
![Page 22: Single sign on - benefits, challenges and case study : iFour consultancy](https://reader033.vdocument.in/reader033/viewer/2022061111/54558f08af7959d8748b5ec3/html5/thumbnails/22.jpg)
References• https://security.buffalo.edu/node/899
• https://www.uoguelph.ca/ccs/security/internet/single-sign-sso/benefits
• http://en.wikipedia.org/wiki/Single_sign-on
• http://www.ifour-consultancy.com
• Custom software development company India