![]() |
Delivering Quality Results |
|
Products > MQAssure > MQAssure Home > MQAssure Overview
MQAssure™ Overview Solution MQAssure™ is a centrally managed integrated AAAA security platform, consisting of a suite of security products that offers seamless integration to the business systems of organisations assuring foolproof Authentication, Authorisation, Auditing and Administration services to all the stakeholders, towards creating a clear legal security framework for conducting business online. This would be achieved by enabling organizations to deploy digital identities, such as user ID & passwords, and digital certificates (PKI), using smart card and/or USB tokens, and integrate the same tightly with their business applications. Alternatively, it can also leverage the strengths of existing, government driven, citizen ID initiatives as part of the integration approach. It enables organisations to:
Illustrates the architecture of MQAssure™ integrated AAAA security platform
Following are the salient features of MQAssure™ integrated AAAA security platform
MQAssure™ Integrated AAAA Security Platform MQAssure™ Integrated AAAA Security Platform provides a scalable open architecture based framework which integrates various security solutions into a unified platform. The MQAssure™ platform provides the core services upon which the security solutions are integrated. All the components accesses these services through a well defined set of APIs called MQAssure™ Core Interface. The following are the functionalities provided by each of the core services Identity Management Service Centralised identity management is very critical for the implementation of security systems. Islands of identity repositories local to the applications would make the management of identities very difficult. Centralised identity management is also required to implement organisation wide Single Sign-On. The MQAssure™ Identity Management Service provides a centralised identity management solution. This can be integrated with organisational directories and third party identity management solutions. Session Management Service This service performs the management of each session to the MQAssure™ server. This service redirects the communication to authentication service if the session needs to be authenticated, then it checks to see if the credentials have the authorisation to access the requested resource and it also times out the session after a specific period of time defined by the policies. Session manager is also the key to the scalability of the MQAssure™ platform. It performs the connection multiplexing to see that the resources are optimally utilised. Authentication Service This service provides the facility to authenticate the users based on multiple factors as required by the security policies. Session manager divert the resource accesses to the authentication service to authenticate the users. Authorisation Service This service verifies the access permissions for a role against a requested resource. If the user role does not have enough privileges to access the resource, the session manager, terminates the session and redirect the user to the login page. Policy Management Service Policy management service provides a generic framework to define policies for specific security sub system in the framework. Each security sub system is responsible for registering their specific policy Meta data in the XML format to enable the framework to facilitate the management of the same. The policy manager is responsible for updating the clients with relevant policies from time to time. Logging and Alerts Service This service provides the facility to log important events in a centralised manner. The administrator would be ale to audit the events using a user friendly interface to monitor the events. Optionally administrator can configure the system to send alerts to specific email ID or send SMS to a configured number depends on the criticality of the event. Audit and Reporting Service Security audits are periodically required to assess the security events in a system. The audit and reporting service provides the generation of variety of audit reports required by the management for auditing. The service provides the flexibility to generate the report in variety of formats including MS Word and PDF. Configuration Service The unified framework provides extensible facility to register various configuration options in XML format which can be accessed by the administrator through dynamic web pages. Administrator also can view various real-time parameters and track various resources and statistics using a feature rich administration dashboard. MQAssure™ External Adapters External adapters provide functionality to connect to external service sources such as directory services, database services, time services, HSM services, PKI services, LDAP directories etc. These adapters give the flexibility to integrate MQAssure™ with different external environments. MQAssure™ Client Services MQAssure™ client provides the communication channel over SOAP and SSL between the PC and the MQAssure™ server. This eliminates the need for each sub system clients to communicate with the server thus optimising the network band width usage. The subsystem clients would access the services transparently as if it is available locally. Logging services are queued by the MQAssure™ client service and updates the server periodically.
|
|
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Home | About MQ | Products | Customers | Media | Partners | Sign In | Espanol |