Photo

Keystone Overview

Authorization management tools are emerging, which provide authorization policy administration, decision-making and enforcement at runtime, external to applications.

– Gartner, Inc. “Authorization Management: Where Access and Application Meet”
by Earl Perkins, November 2007

Keystone provides a holistic approach to Identity and Access Management (IAM). The solution is the most complete, easy to install-configure-and use, fine-grained entitlement/authorization management solution on the market. It provides a comprehensive set of security services, unifying authentication and authorization sources throughout an enterprise.

Keystone is highly scalable & flexible and simplifies the administration and management of security policy. It is built to support complex and in-depth audit and security compliance requirements by approaching authorization management across applications and down to the level of granularity the business requirements dictate. Through a “plug-in” architecture, Keystone integrates with any existing application (Custom, COTS, JSP, ASP.NET, LDAP Enabled, Closed/Proprietary) and any existing IAM infrastructure (LDAP, AD, ILM, WAM, Provisioning, Role Mgmt, Identity Administration, Identity Governance) from any vendor, dramatically improving the maturity of IAM deployments. With Keystone in place an organization maximizes its current investments and removes the gap between coarse-grained security practices and rich, dynamic, contextual, fine-grained access control.

High Level Diagram

IMG