Enhancements in version 8.0.00
For the 8.0.00 version, the following changes have been made to BMC Atrium Single Sign-On:
SAMLv2 feature
The benefits of Security Assertion Markup Language (SAML) v2 include platform neutrality, loose coupling of directories, improved online experience, and improved risk transference. The SAMLv2 feature allows secure web domains to exchange user authentication and authorization data. With SAMLv2, an online service provider can contact a separate online identity provider to authenticate users who are trying to access secure content.
Kerberos feature
The benefits of the Kerberos feature include transparent authentication and ease of user access. The Kerberos authentication feature allows you to run the BMC Atrium Single Sign-On server using the Windows SSO authentication module. Windows SSO uses the Kerberos functionality of Active Directory (AD).
In this usage of AD, a Service Ticket for the BMC Atrium Single Sign-On service is requested from the AD server and then presented to the BMC Atrium Single Sign-On server. The BMC Atrium Single Sign-On server uses the Service Ticket to authenticate the user. This process happens transparently to the user. When a user wants access to a BMC product, they enter a URL for the product and access is granted without prompts.
Bulk Federation feature
The benefits of the Bulk Federation feature includes efficiency of creating user accounts and cost -effectiveness for large organizations. Federation is the linking of a service provider account with a corresponding identity provider account. Federation is usually done to each user account individually by visiting both providers and linking them. Bulk federation allows an organization to federate a large number of user accounts in bulk rather than individually. Bulk federation is particularly useful when a large number of accounts are being created by an organization.
High Availability feature
The benefits of the High Availability feature includes improved performance and availability as well as cost-effectiveness. BMC Atrium Single Sign-On High Availability (HA) is implemented as a redundant system with session failover. In this model, when one node dies, the SSO load is transitioned to the remaining servers with minimal interruption. When multiple BMC Atrium Single Sign-On servers are installed and configured to operate as a cluster, a system failure is absorbed by the remaining cluster nodes.