To compete successfully, your business must be accessible to employees, customers and partners, regardless of location or time of day. Novell® Access Manager solves this challenge, helping you maximize users' access—without limiting security or control. It integrates seamless security from Novell, which lowers risk and facilitates more agile customer and partner relationships.
Novell Access Manager 3 strengthens trust in business relationships. It simplifies and safeguards online asset-sharing, giving you a new way to control access to Web-based and traditional business applications. Trusted users gain secure authentication and access to portals, Web-based content and enterprise applications. And IT administrators gain centralized policy-based management of authentication and access privileges for Web-based environments and enterprise applications. What's more, Novell Access Manager supports a broad range of platforms and directory services. In fact, it's flexible enough to work in even the most complex multi vendor computing environments.
Give your IT personnel the tools they need to easily establish secure, hassle-free access to Web-based and corporate server-based applications. Access is granted based on the user's role within a company or association to it.
Passwords can be a problem, not because of what they are but where they are—stuck all over monitors, keyboards or other all-too-obvious places in the office. In fact, passwords are sometimes a major security liability, usually when people need to keep track of several just to do their jobs. Fortunately, Novell Access Manager enables single sign-on, which means your employees and partners only have to remember one login for authorized access to all corporate Web-based applications.
Using Novell Access Manager, you can enable your applications for federation without modifying content or installing additional software on the Web server. This allows your employees to immediately federate their identities across the firewall.
Novell Access Manager makes administration easy. You can use it to centralize access control for all digital resources, and it eliminates the need for multiple software tools at various locations. One access solution fits all applications and information assets. In addition, Novell Access Manager includes support for major federation standards including SAML and Liberty Alliance.
Novell Access Manager can generate reports to show you all the details of any network events—such as who authenticated to a particular resource and when the resource was accessed—making compliance easy to monitor. For an internal assessment or an external audit, Access Manager provides the reports you need to comply with Sarbanes-Oxley, HIPAA, European Union privacy laws and other government regulations.
Novell Access Manager comprises several tightly integrated components, each with an important role to play in controlling access to network content, applications and services. These components are fully compliant with Liberty Alliance, WS-Security and the Security Assertions Markup Language (both SAML 1.1 and SAML 2.0). They include:
This component provides user authentication services for all Novell Access Manager components, according to Access Manager policy declarations. It communicates with the Identity Store(s), which can be either Novell eDirectory™, Sun ONE* Directory Server or Microsoft Active Directory*, and it generates user roles to facilitate authorization decisions.
Identity Server also enables federated provisioning, which automatically creates user accounts on a federation request. This is an especially useful feature for enabling access to legacy systems, which may require that identity information be placed in a specific directory in a certain format. In such cases, Novell Access Manager automatically provisions these accounts without requiring the user or administrator to manually add them to the legacy system's directory.
Because Novell Access Manager implements Liberty Alliance Identity Federation specifications, it makes possible the secure federation of user identities with other Liberty Alliance-compliant identity providers. This means that a successful authentication at a single Liberty Alliance-compliant identity provider (whether it's an Access Manager Identity Server or not) can provide authentication assurances at other Liberty Alliance-compliant identity providers.
Policy EngineThe Policy Engine guides and controls all Novell Access Manager components. From a central location, it provides role-based policies to all product services. The roles generated by the Policy Engine can be used by all components to make effective policy decisions and strengthen enforcement.
Access GatewayAs the HTTP proxy component of Novell Access Manager, the Access Gateway transforms identity provider authentication and services into standard Web headers, form-fill responses and basic authentication responses. With this compatibility, Access Manager enables many existing Web applications to support the new identity standards without change.
Secure Sockets Layer Virtual Private Network (SSL VPN)Novell Access Manager features Secure Sockets Layer Virtual Private Network (SSL VPN), a Linux-based service that provides secure access to non HTTP-based applications. This service shares session information with Access Gateway, enabling single sign-on and extending role-based authorization to back-end applications. The SSLVPN supports client-integrity checking to ensure that required corporate software—such as firewalls and virus scanners—is enabled before access is granted.
Java Application AgentsIn Novell Access Manager, the IBM WebSphere*, BEA WebLogic* and JBoss agents provide policy-controlled authorization and access to servlets and Enterprise JavaBeans (EJBs). These agents use Java Authentication and Authorization Service (JAAS), Java Authorization Contract for Containers (JACC) and internal Web-server APIs for authentication. Together, they deliver precise, policy-controlled authorization and access to servlets and EJBs.
Management InterfaceThis easy-to-use interface configures and manages all product components and policies in Novell Access Manager. It also presents the status of all devices and policies to all administrators, making warning or alert conditions visible across the enterprise. Through this interface, users administer each of the components listed above, plus applicable devices and policies.
![]() |
|
![]() |
|