180 likes | 324 Views
. . Agenda. City of Los Angeles Business Case StudyBackgroundWhy iChain?The visionWhat we did [w/Demo]How we did itLessons learnedUnexpected benefitsThe new vision ? where we go from hereQ
E N D
1. Implementing Novell iChain® at the City of Los Angeles Adam Loughran
Senior Systems Engineer, Novell
Robert Gillette
IS Development Manager, City of Los Angeles
Will Taylor
Senior Systems Architect, City of Los Angeles
2. Agenda City of Los Angeles Business Case Study
Background
Why iChain?
The vision
What we did [w/Demo]
How we did it
Lessons learned
Unexpected benefits
The new vision – where we go from here
Q&A
3. L.A. Demographics… City of Los Angeles
Population 3.8 million
2nd Largest City in the US
Mayor, 15 Council members
25,000 City Employees
Supporting 40+ departments, Commissions and Committees
4. Why iChain? The initial decision was driven by the Enterprise Portal Project:
Identity management and Provisioning was a core requirement. There was a need to leverage off current experience with eDirectoryTM.
Needed a common means for authenitication, authorization, access control and Administration.
Appliance design – fast and easy to implement, easier to manage and maintain.
Based on open standards
Cost
5. The Vision... Create a common security gateway that can be used both internally and externally for:
Identity management and provisioning
Pushing services out in a protected manner
Work to enforce security policies in place
Create an Infrastruture for e-Govenment
Employees
Our Government Partners (County, State, etc...)
Business
Citizens
Visitors
6. What we did... Used iChain as the hub for the following services:
Enterprise Portal [Extend Director Standard Edition]
(NetStorage, GroupWise and Dynamic Communities)
IBM Host on Demand
(Remote vs Internal Access)
Citrix
(Host on Demand and Remote Server Administration)
Web Services [UDDI]
(Home Grown Applications)
7. Live from Los Angeles... Secure Remote Access Demo
8. How we did it [Portal]
9. How we did it [Citrix]
10. How we did it [Host on Demand]
11. How we did it [Host on Demand]
12. How we did it [Web Services]
13. Lessons Learned It was important to have the Security Group trained on the product and accept it as the de-facto standard for Web Based Access. A core assignment is to manage the nextwork's perimeter (Firewalls and Physical Security).
It was clear that iChain is a security applicance and should be managed by the Security group
iChain also provides a central point for the reporting of access to internal city resources by remote users
Transition from just Portal identity management to remote access gateway
It was required to make the move from a departmental service to an enterprise service
Education is a key factor for success
14. Unexpected Benefits Some of the benefits we didn't expect
Highly Re-useable (FIRE – From the Bird to the Ground, City Attorney - CNAP)
Fast Track through security review process (cuts weeks off the review process)
Easy Disaster Recovery
It has become a blue print and best practice to others that are struggling with the identity management issue within the organization
15. Unexpected Benefits continued… Dynamic Groups helps manage administration and reduces time to implement changes
Duplication of user ID’s is now being addressed and corrected
Sloppy administration is being replaced by city wide standards and policy based management
Additional cost saving since all users accounts are being scrutinized. We will be able to reduce both our Netware and GroupWise licenses.
16. The new Vision – where we go from here City Wide Services tree. This will include GroupWise®, File and Print Services, Document Management and Application Development Management.
With the Central Directory approach we will be able to populate any directory enabled application.
Service resources will be able to be centrally monitored and deployed.
New services can be quickly deployed.
More emphasis can be placed upon development as the burden of maintenance decrease with centralization.
17. Wrapping Up Q & A
19. This means that no work is lost with either the Novell Nsure UDDI corporate or testing solution.
Enterprises that build their UDDI solutions with Novell Nsure UDDI Server, are not only leveraging the deep experience Novell Identity Management foundation brings to the standard, they are securing their own future by building on an open standard implementation that will grow and scale with their corporate needs.This means that no work is lost with either the Novell Nsure UDDI corporate or testing solution.
Enterprises that build their UDDI solutions with Novell Nsure UDDI Server, are not only leveraging the deep experience Novell Identity Management foundation brings to the standard, they are securing their own future by building on an open standard implementation that will grow and scale with their corporate needs.