As enterprises move apps to the EC2 platform they need identity, access management and federation and a trust fabric to integrate these with behind-the-firewall infrastructure. Last generation’s perimeter-based fortress model for enterprise security is no longer adequate as companies need secure access to cloud-based applications for their employees, partners, and customers outside the firewall. Due to the architectural design of Amazon’s EC2 platform, a new approach to trust, identity and access management is required. The Symplified Trust Cloud is the first solution to provide identity, access and trust management for Amazon EC2 platform.
The Symplified Trust Cloud has been specially engineered to work seamlessly in the Amazon EC2 platform. The Trust Cloud leverages Symplified’s patent-pending SinglePoint technology that provides the most complete IAM solution with breakthrough simplicity and integration capabilities.
- Optimized to take advantage of the advanced networking, monitoring and availability capabilities of the EC2 platform.
- Spin up an entire IAM platform to secure and integrate your Amazon EC2 environment in hours through Symplified Trust Cloud.
Symplified provides dedicated expert support and has partnered with the leader in cloud systems integration, Appirio.
|
| The Symplified Trust Cloud is a turnkey unified IAM solution that provides access management, authentication, user provisioning and administration, single sign-on (SSO), federated SSO, and usage auditing for applications running on the Amazon EC2 platform. Piecemeal approaches to identity and access management suffer from expensive integration and customization. Symplified Trust Cloud provides a complete IAM solution that works seamlessly together or can be deployed modularly. The solution includes Web access management, user provisioning, a cloud-native virtual directory, optional strong authentication and deep auditing. |
Symplified’s Simple Link technology extends on-premises infrastructures like Active Directory, LDAP, databases and Web apps across the firewall. Manage Active Directory users as you do today by having these permissions drive access and authentication to cloud apps on Amazon EC2.
Simple Link, in conjunction with the SinglePoint virtual directory, provides a rich integration fabric to link on-premises infrastructure to the cloud:
- Active Directory, LDAP, RDBMS
- Use Salesforce.com or Google as user stores
- Enable directory hunting to chain multiple user repositories together for authentication, access and personalization context
- Extend employee desktop authentication via Windows Kerberos IWA for SSO to Amazon EC2 and other SaaS apps
|
Many organizations have struggled with the complexity of SAML federation. Symplified has solved the complexity problem for federation-enabling your organization and your apps. The SinglePoint Trust Cloud provides four ways to simplify federated SSO:
- Pre-integrated federation hub. Extends SSO for your users into leading SaaS apps like Salesforce, Google, Concur, Success Factors, Workday and many others. Sign on once to a Symplified-powered portal and enjoy seamless SSO to dozens of apps. No integration effort required.
- SAML Service Provider (SP). Instead of costly modification of your apps to support federation, the Symplified Trust Cloud proxy can be used to accept SAML SSO sessions to your apps. Symplified handles the complexity of validating and decoding the SAML assertions and simply passes authenticated federated users into your Amazon EC2 web app through HTTP headers.
- Federate with any SAML 1.1 and 2.0 app – and more. SinglePoint Trust Cloud uses HTTP-FED to provide federated SSO for applications that do not support SAML. SinglePoint Trust Cloud erases the need for federation software and its associated learning curve, cost and complexity.
- Federate Your Network and Amazon EC2. With the Symplified Trust Cloud you can federate between your on-premises network and Amazon EC2 using the newly released ADFS 2.0 and SAML.
|
To make user audit and compliance reporting for Amazon EC2 apps possible, the Symplified Trust Cloud collects consistent usage logs of all activity on the Amazon EC2 and SaaS apps. For multinational organizations that operate in different geographies, the Symplified Trust Cloud makes it easy to meet national and international data governance requirements. For example, an organization can deploy multiple instances of the Symplified Trust Cloud in different geographies to comply with regulatory mandates that stipulate privacy data must remain within a sovereign country’s borders or a trading bloc’s territory (e.g. the European Union). Trust Cloud also enables companies to avoid having their identity repositories hosted in countries with far reaching law enforcement statutes like the US Patriot Act. |
Symplified has built the Trust Cloud with our service provider partners in mind. Whether you are a SaaS application ISV, a systems integrator or a managed services provider, the Symplified Trust Cloud allows you to offer the cloud to your customers without having to make a massive capital investment. Partnering with Symplified gives you access to unmatched expertise in cloud trust, identity and access management and a platform that you can use on a white-label basis to increase revenues, accelerate SaaS and IaaS deployments and increase customer ‘stickiness’.
Using an SSO solution or a user’s existing credentials (such as a user’s Windows login) can improve the success of SaaS roll outs by 300% - 400%! Unfortunately, many SaaS vendors build one-off security integrations for each customer, requiring maintenance and creating a drag on professional services organizations. Closely integrating with your customers makes your apps stickier, thus helping your subscription renewals.
|
| |
Your customers rely on you as their expert to keep IT running. They demand the latest SaaS apps like Salesforce, Google, Workday, and Concur. These apps must be integrated and secure. With the Symplified Trust Cloud you can offer horizontally complementary or vertical-specific products to grow top-line revenue. Using Symplified Trust Cloud as your IAM and SaaS aggregation platform, you can quickly add SaaS and cloud services to your portfolio. Partnering with Symplified eliminates much of the labor intensive work of implementing IAM and SaaS integration environments. |
| |
IaaS providers face constant margin pressure from commoditization. The margins on bandwidth, compute and virtualization are getting smaller. The solution is to provide value higher up the stack with security and integration services. With The Symplified Trust Cloud you can move up the stack and offer high-value, differentiated IAM capabilities and avoid commoditization. By offering robust IAM security and integration capabilities your services are more ‘enterprise ready’ and suitable for more organizations |
Symplified uses a proven proxy architecture to solve the complex IAM challenges encountered when using Amazon EC2
- Integrates enterprise and cloud identity repositories to enforce security policies.
- Co-located on EC2 and uses a proxy approach
- SinglePoint Trust Cloud buffers direct access to applications and provides an additional layer of security
- Loosely coupled architecture also eliminates dependencies between SinglePoint Trust Cloud and Amazon EC2’s infrastructure
- The Trust Cloud now enables businesses to provision an instance of the Symplified Trust Cloud in any of Amazon’s secure EC2 data centers across the globe.
|
|
| |
|
|
|
|
|