OPSEC Partners
Persistent Systems
Product Version Certified: enQuire Virtual Directory 3.8.1 on Windows
Certified For Use With: Check Point VPN-1 and Connectra
Product Description: enQuire is a LDAP v3 compliant virtual directory server that enables high performance LDAP v3 access to data federated and joined across multiple data stores over the network. It provides access to data with high availability and reliability using cache with built-in persistence and fail over support.
enQuire offers complete LDAP v3 security and access control mechanism along with non-intrusive objectclass masking and hierarchy translation. It also assists SSL and supports strong authentication mechanisms such as Kerberos. These features can be further leveraged to enforce organizational policies at the VPN-1 level.
Company Description: Persistent Systems is the leader in Outsourced Software Product Development, offering services across the life cycle of the product - from R&D to Development, Testing, Support and Professional Services, thus allowing you to focus on your core competencies, while achieving time-to-market and cost advantage.
Persistent’s expertise in Identity Management spans across the areas of Security, Data Infrastructure Management, Legal Compliance, Core Infrastructure Integration and Enterprise Directory Consolidation. Over 170 Global Software companies are part of its highly satisfied clientele with more than 1000 + product releases over the past 17 years. Backed by 10 years of IdM domain expertise, Persistent has introduced IdentityAware, a service offering which constitutes mature and field tested components:
- enQuire™ Virtual Directory, an LDAP v3 compliant Virtual Directory built from multiple data stores on the network.
- enList™ provides Read/Write SQL access to LDAP-enabled directory servers.
- enSure™ Synchronization Server, which provides bi-directional synchronization between multiple data stores on the network.
Key Features and Benefits
Features:
- Federation: enQuire provides federation of identities across multiple data stores. enQuire enables building directory information trees which makes it ideal for setting up corporate directories and resolve issues related to multiple identity islands.
- Identity Join: enQuire’s join engine provides a join of identity/profile values across multiple data stores. The join capability when coupled with data transformations provides useful data manipulation capabilities.
- Strong Authentication Support: Offers extensive backend authentication mechanisms and provides SASL support. Moreover, Pass-through authentication allows administrators to leverage their security infrastructure access rules.
- Access Control and Permissions: The authentication process coupled with access and permission enforcement enables fine grain control.
- Scalability and Performance: Caters to large number of concurrent connections.
- High Availability and Consistency: Supports master slave configuration. This enables deployment of multiple enQuire servers providing fail over support and 24x7 availability.
- Secure Data Access: SSL support to access data securely.
- Data Connectors: enQuire supports connectivity to multiple data stores (relational and non standardized data) that contribute to data access operations.
Benefits:
- Leverage Existing Infrastructure: Apply business policies even for user accounts present in multiple databases, directories, flat files and other data stores.
- Address Authentication Needs: Enable Check Point to authenticate against existing data stores. Apply access control rules to define who gets what.
- Simplify Management: Use enQuire’s Join engine to consolidate fragmented identity data, which can be consumed by Check Point.
OPSEC Integration
enQuire Virtual Directory Sever provides VPN-1 and Connectra, on-the-fly LDAP v3 access to data present in databases, directories, flat files and other custom data stores. It also provides authentication and authorization capabilities along with consolidation of fragmented identities present in multiple data stores. Using enQuire, VPN-1 and Connectra administrators can leverage identity data present in unsupported data stores to set organizational policies.
Additional Information
