BiTKOO is committed to making Keystone a turnkey solution that can fit seamlessly in any organization without the need for significant customization. Customers can choose from one or more of the following delivery models:
In cases where customers wish to utilize their existing hardware and hardened OS installations, Keystone can be delivered as a software-only solution.
BiTKOO uses Dell rack-mounted server hardware for the Keystone hardware appliance. The software is pre-installed, the OS is hardened and all services simply work when the appliance boots up. A Keystone engineer typically configures the appliance to fit in the customer’s environment. That entails hooking up the directory abstraction layer to the customer’s directories, HR or provisioning sources, setting up the static IP address(s), DNS, SSL certificate(s), etc. BiTKOO can perform this configuration on-site or remotely. Depending on requirements, customers can choose to cluster appliances.
BiTKOO recommends the non-clustered appliance. Keystone’s high-availability is usually provided by deploying two or more Keystone instances in more than a single geographical location. All of the various Keystone components are fault tolerant. Multi-node deployment is highly recommended. Keystone uses a ‘multi-master’ replication topology whereby every geographical location can operate autonomously and all changes at any location get synchronized with all other locations when it is possible.
Keystone can be delivered on a pre-hardened OS image as a virtual machine file. Both VMWare and Microsoft Virtual Server technologies are supported.
BiTKOO offers Keystone as a service delivered over the Internet. This is suitable for organizations employing outsourced services such as data center services and other ASP’s who do not wish to manage their own hardware resources. In this scenario, the backups and monitoring are handled by BiTKOO. This is also a viable option for a second geographical failover solution for customers who do not have a failover data center, or who wish to keep the infrastructure simple in terms of backup, monitoring and high availability. BiTKOO handles all remote integration work with existing authentication sources using the BiTKOO SecureWithin™ technology. This technology enables BiTKOO to expose internal directory or other components to the Internet in a secured fashion without having to poke holes in the firewall or the need to make any network configuration changes.
For qualifying organizations , BiTKOO also offers the delivery of the source code.