SlideShare a Scribd company logo
© 2016 ForgeRock. All rights reserved.
Access Management with the
ForgeRock Identity Platform
So What’s New?
Andy Hall, Director of Product Management
Markus Weber, Senior Product Marketing Manager
© 2016 ForgeRock. All rights reserved.
• Fastest-growing open source identity security
software company in the world
• Founded: 2010
• Headquartered in San Francisco with offices
in 6 countries
• Employees: 350+
• Customers: 400+ Enterprises in 30+ countries
• Global Reach: ~50% international revenue
• Hybrid Revenue Model with low Churn: <5%
• Funding to Date (thru Series C): $52M
• Investors: Accel Partners, Foundation Capital
and Meritech Capital Partners
Key Facts Mission Statement
ForgeRock: At a Glance
The forgerock identity
platform currently powers
more than 500 million
identities. It is our goal to
become the market leader
in digital transformation
and security for enterprise
identity worldwide.
© 2016 ForgeRock. All rights reserved.
Shared Services : User Interface, Self-Service, REST API, HTTP, Scripting, Audit and Logging
Federation Synchronization
Authentication & Strong
Authentication
Identity Provisioning
Application & Service
Gateway
Authorization &
UMA Provider
Workflow Engine IoT Identity Gateway
Adaptive Risk Self-Service Password Capture & Replay
UMA Protector
Access Management Identity Management Identity Gateway
Data Store
High Availability
Data Segmentation
LDAP / REST
Directory Services
Open Standards, High Availability, On-Premises, Cloud, Hybrid
The ForgeRock Identity Platform is built from the open source projects OpenAM, OpenIDM, OpenIG and OpenDJ
The ForgeRock Identity Platform
© 2016 ForgeRock. All rights reserved.
What’s New in
Access
Management
© 2016 ForgeRock. All rights reserved.
Access Management
Themes
• Smarter Security
• Privacy and Consent
• Internet of Things
• Scalability and Performance
• Ease of Use
• Developer-friendly
© 2016 ForgeRock. All rights reserved.
Smarter Security
Authentication
• Mobile Authenticator App and
Authentication Module
• iOS and Android
• Strong 2FA based on OATH
standard
• Easy to setup using QR codes
• Integrated with Contextual
Authentication
© 2016 ForgeRock. All rights reserved.
Smarter Security
Authentication
• SAML Authentication Module
• Brings federation into
authentication framework
• Contextual Authentication now
applied to federated identities
© 2016 ForgeRock. All rights reserved.
Smarter Security
Contextual Authorization
• Enhanced Policy Editor
supporting Scriptable
Conditions
• Custom logic integrated into
Policy decisions
• Supports Javascript or Groovy
• REST-calls to external Policy
Information Points (PIP)
Access Management Session
Contextual
Change
System
Detects
New
Location
System detects change
during session and
requests further
authentication
© 2016 ForgeRock. All rights reserved.
Smarter Security
Universal Authorization
• New Resource Types
• Define arbitrary resource
descriptions using patterns
and actions
• Policies can apply to multiple
Resource Types
© 2016 ForgeRock. All rights reserved.
Smarter Security
Common Audit Framework
• Common Audit Framework
• Complete view of activity
across all products
• Extensible architecture
delivering CSV, JDBC, Syslog
• Realm-specific Auditing
• Fine-grained control of logging
ForgeRock
Identity
Platform
Common
System
& Activity
Logs
Access Management
Identity Management
Identity Gateway
Directory Services
© 2016 ForgeRock. All rights reserved.
Privacy and Consent
User Managed Access
• Putting users in control of access
to their data
• Fully compliant UMA
Authorization Server
• REST APIs and User Resource
Pages
• Supporting:
• Resource Set Registration
• Resource Sharing
• Resource Labeling
• Pending Requests
• Audit history
© 2016 ForgeRock. All rights reserved.
Internet of Things
OAuth2 Device Flow
• De-facto standard for pairing
devices with user identities
• Ideal for devices with no input
and limited output capabilities
• Revocation controlled by user
© 2016 ForgeRock. All rights reserved.
Scalability and Elasticity
Stateless Sessions
• New deployment option
• Per-Realm attribute
• JWT-based sessions
• Ideal for Elastic Cloud-based
deployments
• Massive horizontal scalability
ClusterSize
Demand
Elastic Load Balancer
© 2016 ForgeRock. All rights reserved.
Ease of Use
New Administrator and End-User Interfaces
User
• Rich user experience with latest XUI
• Contextual tools to streamline UX
• Extended self-service capabilities
Administrator
• Powerful improvements to
Administration Console
• Easier configuration using XUI
• Realm-centric administration
• Common task wizards e.g. OAuth2
Providers
© 2016 ForgeRock. All rights reserved.
Developer-friendly
ForgeRock Platform Services
• More REST endpoints to extend
developer flexibility
• More Scriptable extension points
• Consistent and Responsive User
Interfaces
• New SOAP-STS
• Standards conformance
• OpenID Certified
© 2016 ForgeRock. All rights reserved.
ForgeRock Access Management
Summary
• Smarter Security
• Privacy and Consent
• Internet of Things
• Scalability and Performance
• Ease of Use
• Developer-friendly
© 2016 ForgeRock. All rights reserved.
Thank You!
Questions?

More Related Content

PPTX
Directory Services with the ForgeRock Identity Platform - So What’s New?
PPTX
OpenAM: An Introduction
PPTX
Identity Management with the ForgeRock Identity Platform - So What’s New?
PPTX
IDP Proxy Concept: Accessing Identity Data Sources Everywhere!
PDF
Digital Trust: How Identity Tackles the Privacy, Security and IoT Challenge
PPTX
Webinar: ForgeRock Identity Platform Preview (Dec 2015)
PPTX
Webinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
PPT
Incredible Edible Identity
Directory Services with the ForgeRock Identity Platform - So What’s New?
OpenAM: An Introduction
Identity Management with the ForgeRock Identity Platform - So What’s New?
IDP Proxy Concept: Accessing Identity Data Sources Everywhere!
Digital Trust: How Identity Tackles the Privacy, Security and IoT Challenge
Webinar: ForgeRock Identity Platform Preview (Dec 2015)
Webinar: Extend The Power of The ForgeRock Identity Platform Through Scripting
Incredible Edible Identity

What's hot (20)

PPT
Open Identity Stack Roadmap
PDF
Pimping the ForgeRock Identity Platform for a Billion Users
PPT
THE FORGEROCK PLATFORM BIG PICTURE
PPTX
NYC Identity Summit Tech Day: ForgeRock DevOps/Cloud Strategy
PPTX
OpenAM - An Introduction
PDF
Federation in Practice
PDF
The Future is Now: What’s New in ForgeRock Access Management
PPTX
OIS Architecture Review
PDF
OpenAM Best Practices - Corelio Media Case Study
PDF
The Future is Now: What’s New in ForgeRock Directory Services
PDF
The Future is Now: What’s New in ForgeRock Identity Management
PPTX
NYC Identity Summit Tech Day: Best Practices for API Security
PPTX
Webinar: OpenIDM 3.1
PPTX
Customer Scale: Stateless Sessions and Managing High-Volume Digital Services
PDF
Implementing eGov
PDF
OpenAM as Flexible Integration Component
PPTX
Webinar: OpenAM 12.0 - New Featurs
PDF
Shoot Me a Token: OpenAM as an OAuth2 Provider
PDF
Identity as a Managed Cloud Service
PDF
SSO with the WSO2 Identity Server
Open Identity Stack Roadmap
Pimping the ForgeRock Identity Platform for a Billion Users
THE FORGEROCK PLATFORM BIG PICTURE
NYC Identity Summit Tech Day: ForgeRock DevOps/Cloud Strategy
OpenAM - An Introduction
Federation in Practice
The Future is Now: What’s New in ForgeRock Access Management
OIS Architecture Review
OpenAM Best Practices - Corelio Media Case Study
The Future is Now: What’s New in ForgeRock Directory Services
The Future is Now: What’s New in ForgeRock Identity Management
NYC Identity Summit Tech Day: Best Practices for API Security
Webinar: OpenIDM 3.1
Customer Scale: Stateless Sessions and Managing High-Volume Digital Services
Implementing eGov
OpenAM as Flexible Integration Component
Webinar: OpenAM 12.0 - New Featurs
Shoot Me a Token: OpenAM as an OAuth2 Provider
Identity as a Managed Cloud Service
SSO with the WSO2 Identity Server
Ad

Similar to Webinar: Access Management with the ForgeRock Identity Platform - So What’s New? (20)

PDF
ForgeRock Platform Release - Summer 2016
PPTX
NYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
PDF
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
PPTX
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
PPTX
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
PDF
The Future is Now: What’s New in ForgeRock Identity Gateway
PDF
Modernizing Identity Access Management Platforms - Dale Kinney & Damian Flannery
PDF
Sydney Identity Unconference Introduction and Highlights
PDF
Wavestone forgerock banking demo
PDF
Pas d'IoT sans Identité!
PPTX
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
PPTX
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
PDF
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
PDF
Beyond username and password it's continuous authorization webinar
PPT
Canberra Executive Breakfast - A Citizen-Centric Approach to Identity
PPTX
Webinar: Identity Wars: The Unified Platform Awakens
PPTX
The Road to Intelligent Authentication Journeys
PPTX
Identity Live London 2017 | Daniel Raskin
PDF
Webinar: Making the Move from Legacy IAM to Modern Digital Identity – On Your...
PPTX
Opening Remarks by Mike Ellis
ForgeRock Platform Release - Summer 2016
NYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
The Future is Now: What’s New in ForgeRock Identity Gateway
Modernizing Identity Access Management Platforms - Dale Kinney & Damian Flannery
Sydney Identity Unconference Introduction and Highlights
Wavestone forgerock banking demo
Pas d'IoT sans Identité!
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
Beyond username and password it's continuous authorization webinar
Canberra Executive Breakfast - A Citizen-Centric Approach to Identity
Webinar: Identity Wars: The Unified Platform Awakens
The Road to Intelligent Authentication Journeys
Identity Live London 2017 | Daniel Raskin
Webinar: Making the Move from Legacy IAM to Modern Digital Identity – On Your...
Opening Remarks by Mike Ellis
Ad

More from ForgeRock (20)

PDF
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
PPTX
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
PDF
Identity Live Sydney: Identity Management - A Strategic Opportunity
PDF
Identity Live Singapore: Transform Your Cybersecurity Capability
PDF
Identity Live Singapore 2018 Keynote Presentation
PDF
Identity Live Sydney 2018 Keynote Presentation
PDF
Identity Live Singapore: Just Ask 'Em
PDF
Identity Live Singapore: Building Trust & Privacy in a Connected Society
PDF
Identity Live Sydney: Intelligent Authentication
PDF
Identity Live Sydney: Building Trust and Privacy in a Connected Society
PDF
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
PPTX
Get the Exact Identity Solution You Need - In the Cloud - Overview
PDF
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
PDF
Opening Keynote (Identity Live Berlin 2018)
PDF
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
PDF
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
PDF
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
PDF
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
PDF
Shift from GDPR readiness to sustained compliance to improve your business an...
PDF
Intelligent Authentication (Identity Live Berlin 2018)
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Identity Live Sydney: Identity Management - A Strategic Opportunity
Identity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote Presentation
Identity Live Singapore: Just Ask 'Em
Identity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Sydney: Intelligent Authentication
Identity Live Sydney: Building Trust and Privacy in a Connected Society
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution You Need - In the Cloud - Overview
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
Opening Keynote (Identity Live Berlin 2018)
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Shift from GDPR readiness to sustained compliance to improve your business an...
Intelligent Authentication (Identity Live Berlin 2018)

Recently uploaded (20)

PDF
Nekopoi APK 2025 free lastest update
PPTX
Odoo POS Development Services by CandidRoot Solutions
PPTX
L1 - Introduction to python Backend.pptx
PDF
Upgrade and Innovation Strategies for SAP ERP Customers
PPTX
ai tools demonstartion for schools and inter college
PDF
Raksha Bandhan Grocery Pricing Trends in India 2025.pdf
PPTX
Lecture 3: Operating Systems Introduction to Computer Hardware Systems
PDF
medical staffing services at VALiNTRY
PDF
Why TechBuilder is the Future of Pickup and Delivery App Development (1).pdf
PDF
Understanding Forklifts - TECH EHS Solution
PDF
Claude Code: Everyone is a 10x Developer - A Comprehensive AI-Powered CLI Tool
PDF
System and Network Administration Chapter 2
PPTX
Transform Your Business with a Software ERP System
PPTX
Introduction to Artificial Intelligence
PPTX
Operating system designcfffgfgggggggvggggggggg
PDF
How to Choose the Right IT Partner for Your Business in Malaysia
PDF
Design an Analysis of Algorithms I-SECS-1021-03
PPTX
CHAPTER 12 - CYBER SECURITY AND FUTURE SKILLS (1) (1).pptx
PDF
Design an Analysis of Algorithms II-SECS-1021-03
PDF
Wondershare Filmora 15 Crack With Activation Key [2025
Nekopoi APK 2025 free lastest update
Odoo POS Development Services by CandidRoot Solutions
L1 - Introduction to python Backend.pptx
Upgrade and Innovation Strategies for SAP ERP Customers
ai tools demonstartion for schools and inter college
Raksha Bandhan Grocery Pricing Trends in India 2025.pdf
Lecture 3: Operating Systems Introduction to Computer Hardware Systems
medical staffing services at VALiNTRY
Why TechBuilder is the Future of Pickup and Delivery App Development (1).pdf
Understanding Forklifts - TECH EHS Solution
Claude Code: Everyone is a 10x Developer - A Comprehensive AI-Powered CLI Tool
System and Network Administration Chapter 2
Transform Your Business with a Software ERP System
Introduction to Artificial Intelligence
Operating system designcfffgfgggggggvggggggggg
How to Choose the Right IT Partner for Your Business in Malaysia
Design an Analysis of Algorithms I-SECS-1021-03
CHAPTER 12 - CYBER SECURITY AND FUTURE SKILLS (1) (1).pptx
Design an Analysis of Algorithms II-SECS-1021-03
Wondershare Filmora 15 Crack With Activation Key [2025

Webinar: Access Management with the ForgeRock Identity Platform - So What’s New?

  • 1. © 2016 ForgeRock. All rights reserved. Access Management with the ForgeRock Identity Platform So What’s New? Andy Hall, Director of Product Management Markus Weber, Senior Product Marketing Manager
  • 2. © 2016 ForgeRock. All rights reserved. • Fastest-growing open source identity security software company in the world • Founded: 2010 • Headquartered in San Francisco with offices in 6 countries • Employees: 350+ • Customers: 400+ Enterprises in 30+ countries • Global Reach: ~50% international revenue • Hybrid Revenue Model with low Churn: <5% • Funding to Date (thru Series C): $52M • Investors: Accel Partners, Foundation Capital and Meritech Capital Partners Key Facts Mission Statement ForgeRock: At a Glance The forgerock identity platform currently powers more than 500 million identities. It is our goal to become the market leader in digital transformation and security for enterprise identity worldwide.
  • 3. © 2016 ForgeRock. All rights reserved. Shared Services : User Interface, Self-Service, REST API, HTTP, Scripting, Audit and Logging Federation Synchronization Authentication & Strong Authentication Identity Provisioning Application & Service Gateway Authorization & UMA Provider Workflow Engine IoT Identity Gateway Adaptive Risk Self-Service Password Capture & Replay UMA Protector Access Management Identity Management Identity Gateway Data Store High Availability Data Segmentation LDAP / REST Directory Services Open Standards, High Availability, On-Premises, Cloud, Hybrid The ForgeRock Identity Platform is built from the open source projects OpenAM, OpenIDM, OpenIG and OpenDJ The ForgeRock Identity Platform
  • 4. © 2016 ForgeRock. All rights reserved. What’s New in Access Management
  • 5. © 2016 ForgeRock. All rights reserved. Access Management Themes • Smarter Security • Privacy and Consent • Internet of Things • Scalability and Performance • Ease of Use • Developer-friendly
  • 6. © 2016 ForgeRock. All rights reserved. Smarter Security Authentication • Mobile Authenticator App and Authentication Module • iOS and Android • Strong 2FA based on OATH standard • Easy to setup using QR codes • Integrated with Contextual Authentication
  • 7. © 2016 ForgeRock. All rights reserved. Smarter Security Authentication • SAML Authentication Module • Brings federation into authentication framework • Contextual Authentication now applied to federated identities
  • 8. © 2016 ForgeRock. All rights reserved. Smarter Security Contextual Authorization • Enhanced Policy Editor supporting Scriptable Conditions • Custom logic integrated into Policy decisions • Supports Javascript or Groovy • REST-calls to external Policy Information Points (PIP) Access Management Session Contextual Change System Detects New Location System detects change during session and requests further authentication
  • 9. © 2016 ForgeRock. All rights reserved. Smarter Security Universal Authorization • New Resource Types • Define arbitrary resource descriptions using patterns and actions • Policies can apply to multiple Resource Types
  • 10. © 2016 ForgeRock. All rights reserved. Smarter Security Common Audit Framework • Common Audit Framework • Complete view of activity across all products • Extensible architecture delivering CSV, JDBC, Syslog • Realm-specific Auditing • Fine-grained control of logging ForgeRock Identity Platform Common System & Activity Logs Access Management Identity Management Identity Gateway Directory Services
  • 11. © 2016 ForgeRock. All rights reserved. Privacy and Consent User Managed Access • Putting users in control of access to their data • Fully compliant UMA Authorization Server • REST APIs and User Resource Pages • Supporting: • Resource Set Registration • Resource Sharing • Resource Labeling • Pending Requests • Audit history
  • 12. © 2016 ForgeRock. All rights reserved. Internet of Things OAuth2 Device Flow • De-facto standard for pairing devices with user identities • Ideal for devices with no input and limited output capabilities • Revocation controlled by user
  • 13. © 2016 ForgeRock. All rights reserved. Scalability and Elasticity Stateless Sessions • New deployment option • Per-Realm attribute • JWT-based sessions • Ideal for Elastic Cloud-based deployments • Massive horizontal scalability ClusterSize Demand Elastic Load Balancer
  • 14. © 2016 ForgeRock. All rights reserved. Ease of Use New Administrator and End-User Interfaces User • Rich user experience with latest XUI • Contextual tools to streamline UX • Extended self-service capabilities Administrator • Powerful improvements to Administration Console • Easier configuration using XUI • Realm-centric administration • Common task wizards e.g. OAuth2 Providers
  • 15. © 2016 ForgeRock. All rights reserved. Developer-friendly ForgeRock Platform Services • More REST endpoints to extend developer flexibility • More Scriptable extension points • Consistent and Responsive User Interfaces • New SOAP-STS • Standards conformance • OpenID Certified
  • 16. © 2016 ForgeRock. All rights reserved. ForgeRock Access Management Summary • Smarter Security • Privacy and Consent • Internet of Things • Scalability and Performance • Ease of Use • Developer-friendly
  • 17. © 2016 ForgeRock. All rights reserved. Thank You! Questions?

Editor's Notes

  • #5: Daniel
  • #6: Smarter Security - Stronger Security, as and when, required Authentication NewMobile Authenticator App and associated Authentication module New SAML2 authentication module Authorization Smarter Authorization as to who can access what, when and under which conditions with scriptable conditions Broader Authorization capabilities now protecting any type of resource Audit Privacy and Consent User Managed Access (UMA) for putting the user in control of their resources Internet of things Standards-based pairing of devices using OAuth device flow UMA to control access to devices and the data they gather Latest Standards Conformance OAuth2 Provider wizards OpenID Connect Provider Mobile Connect Provider UMA Provider OpenID Connect claims scripts OpenID Connect conformance Scalability and Performance Stateless sessions Ease of Use New admin console New end-user interface New self-service features
  • #17: Smarter Security - Stronger Security, as and when, required Authentication NewMobile Authenticator App and associated Authentication module New SAML2 authentication module Authorization Smarter Authorization as to who can access what, when and under which conditions with scriptable conditions Broader Authorization capabilities now protecting any type of resource Audit Privacy and Consent User Managed Access (UMA) for putting the user in control of their resources Internet of things Standards-based pairing of devices using OAuth device flow UMA to control access to devices and the data they gather Latest Standards Conformance OAuth2 Provider wizards OpenID Connect Provider Mobile Connect Provider UMA Provider OpenID Connect claims scripts OpenID Connect conformance Scalability and Performance Stateless sessions Ease of Use New admin console New end-user interface New self-service features