Monday, November 2, 2009

No More Tokens!!!

Juniper says "Good Bye Tokens" with Oracle Adaptive Access Manager (OAAM)

As the #1 SSL VPN provider with 92% of Fortune 100 and 8 of top 10 commercial banks plus 47 of 50 US State Governments, odds are you have used a Juniper SSL VPN to connect to your employer, partner, or service provider … and odds are you had to use a hardware security token.

While tokens like RSA BSAFE provide an accepted alternative to passwords, they are clunky, costly, and not secure from many potential attacks like man-in-the-middle or man-in-the-browser.

Looking to help customers overcome these challenges, Juniper partnered with Oracle to integrate the Oracle Adaptive Access Manager (OAAM) which not only provides a software alternative to tokens, greatly improving the user experience and dramatically lowering TCO, it also saves hard dollars and protects the organization’s reputation with real-time fraud detection.

More specifically OAAM provides:

  • Strong, multi-factor authentication for secure access control
  • Seamless interoperability with hetergenous App Servers (IBM, BEA, SAP, etc.)
  • Enforces access at the protected resources thru web plug-ins
  • Delegates authentication and authorization decisions to a central authority

Which compliments the existing features and security of Juniper SA SSL VPN such as:

  • Provides secure, encrypted communication channel for all remote users from anywhere and from any device
  • Enforces Oracle’s policy based authentication and authorization policies at perimeter
  • Provide 3 different levels of connectivity, going beyond just web support, including Layer 3 VPN connectivity for fat clients, VoIP, streaming, FTP, and more
  • Performs comprehensive “Host-Checking” to ensure end-point integrity
  • Enables coordinated identity based threat response and prevention with other products

The benefits include:

  • Lower cost and complexity of authenticating users
  • Eliminates non-user friendly, expensive gadgets, tokens or proprietary software downloads
  • Host checker + real-time fraud prevention provides greatest overall access security
  • Low-cost, flexible way for enteprises to extend strong authentication to partners, suppliers, contractors, and non-employees accessing critical applications
  • Native integration eliminates need for OAAM’s UIO option

How does this really save me money? - Good question! Here is how it works:

Lower Hardware Costs

  • Mitigates need to provide SSL on each Web / App Server; fewer servers
  • Single appliance scales to thousands of simultaneous users
  • Carrier-class reliability and HA features

Lower Management Costs

  • Seamlessly leverage and instantly extend I&AM policies to remote users
  • Eliminate need to duplicate policies across servers and networks
  • Plug ‘n play integration – deployment guides and Oracle reference architectures
  • Leverage combined audit and log data for compliance

Lower Business Risk

  • Moves OAM policy enforcement point out to network perimeter, increasing security
  • Coordinated identity-based threat response to attacks
  • Comprehensive identity based access logs

To download the data sheet:
http://www.juniper.net/us/en/local/pdf/solutionbriefs/3510251-en.pdf

For more information on the Juniper Oracle Partnership:
http://www.juniper.net/solutions/information_technology_topics/accelerating_oracle_business/index.html


To learn more about OAAM:
http://www.oracle.com/technology/products/id_mgmt/oaam/index.html


Don’t believe me, ask Juniper:
David Colodny
dcolodny@juniper.net

1 comment:

  1. Brian Mozinski i would like to thank you for this useful information. I bookmarked it and waiting for your next update.

    Top VPN Providers

    ReplyDelete