Newsletter Subscription
Subscribe to the PassGo Newsletter
Home | Products | SSO | SSO Overview

SSO Overview

Single Sign-on Features

Global organizations today run their businesses on a wide variety of computing platforms, networks and applications. Employees must be able to access corporate information wherever it resides, and the corporation must ensure that this business critical information is secure at all times. Multiple systems mean multiple user IDs and passwords. SSO gives users a single point of access for business critical information in distributed environments, securely and quickly.

 

PassGo's enterprise-wide single sign-on and password synchronization products include:

     

Authentication Services

To enable the SSO functionality, the Authentication Server verifies a user's credentials with the Authentication Service, a central encrypted directory used by all platforms to control access to the network and applications. Because SSO builds upon existing corporate security, implementation is streamlined. After being authenticated, each user is presented with their graphical desktop, with icons for the applications and resources that the user has access to. From there, it's one-click access to their desired tools and applications.

 

Flexible Administration

PassGo offers flexible administration options on each of the Authentication Service platforms. The Authentication Services running on OS/390 can be administered through SSO's own administration panels or through third party enterprise system management applications. Web browsers can be used to administer the Authentication Servers running on Microsoft Windows NT Server, Windows 2000 or UNIX. Administrators can access HTML pages built dynamically on a Web server using their own workstation. SSO ensures that attempted security intrusions are not only detected and stopped, but recorded as well. All messages are written to a central log that records all access activity throughout the organization. Breaches, failures and other exceptions can also be forwarded as real time messages to a central console.

     

Increase Productivity

The benefits gained from SSO extend well beyond the convenience to end users. Employee productivity is boosted, with less time spent logging into multiple applications, and security is increased as users tend to memorize one password instead of keeping a written list within close proximity. Also, IT resources can be designated to other projects as calls to the help desk to reset forgotten passwords are eliminated.

 

Fully Customizable

Through its Software Developer's Kit (SDK), SSO offers a powerful suite of APIs that application programmers and security vendors can use to invoke other security mechanisms, such as secondary authentication with tickets or tokens, or customize SSO to integrate with other applications. APIs can be used to survey the network to verify users and maintain security, or to log an event.

     

Broad Platform Support

Because SSO is an enterprise client/server application, it must seamlessly support multiple platforms, systems, and applications. SSO supports the broadest range of enterprise configurations possible, and is continually expanding its support for new and emerging technologies.

 

Ease of Deployment

SSO was designed with a phased approach to implementation to help speed deployment and to deliver immediate benefits. PassGo InSync is the foundation of the SSO solution and provides password synchronization across the enterprise. InSync's installation is completely server-based and requires no client code. Once password synchronization is implemented, SSO can easily be deployed through several options, depending on the enterprise environment, giving access to all business critical information with a single log on.

Further information