Windows IT Pro is the leading independent community for IT professionals deploying Microsoft Windows server and client applications and technologies.
  
  
  Advanced Search 


October 04, 2007

Permissions Management Gains Urgency

RSS
Subscribe to Windows IT Pro | See More Security Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!
back to blog index

"Entitlement management" is maybe a slightly fancier term for what admins in a Microsoft environment might call permissions management—that is, controlling who gets access to what resources. Microsoft admins are accustomed to controlling access to applications and data by using Group Policy. You could, perhaps, think of Securent's Entitlement Management Solution (EMS) as Group Policy on steroids—it lets you set, control, and audit fine-grained access policies for both Microsoft and non-Microsoft applications and databases from one console and is designed so that business users can set policies for the content they manage. EMS is based on the Organization for the Advancement of Structured Information Standards (OASIS) consortium's Extensible Access Control Markup Language (XACML).

Sekhar Sarukkai, Securent CTO and cofounder, described multiple scenarios in which entitlement management can be key to large enterprises and possibly some smaller businesses too. A medical group might want to give patients the ability to determine which information on their medical records a consulting doctor should be able to see and which data points family members should be able to see. A financial services company with Microsoft SharePoint might want to enforce an enterprisewide policy that prohibits analysts from publishing insider information on their internal SharePoint sites until the data is public.

The EMS agent for Microsoft SQL Server intercepts queries to the database and checks users' permissions before returning results. The results shown might differ depending on who launched the query. For example, one user might not see Social Security numbers, while another user is authorized to view them.

Sarukkai mentioned that using virtual machine (VM) technology for server consolidation and other purposes is a big trend at enterprises. Entitlement management can help companies enforce policies that specify who can set up VMs and what applications and data a virtual desktop can access.

Another big driver for a centrally managed entitlement management solution is the reporting and auditing requirements of state and federal regulations, according to Sarukkai. Auditing one set of policies managed from one console could be easier than auditing multiple sets from various applications and databases.

End of Article



Reader Comments

You must be a registered user or online subscriber to comment on this article. Please log on before posting a comment. Are you a new visitor? Register now





Search Industry Bytes
 
Industry Bytes
JULY 2009
    1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30 31  
or

 Recently in Industry Bytes
A Backup Solution for the Designated SharePoint Admin
Make a Comment
Google Wave Emulates Trends of Changing World
Make a Comment
Does Outlook 2010 Need Fixing?

Last Comment
The perception is that Microsoft invariably chooses a proprietary solution....
(2 Comments)
SharePoint Planning a Necessity
Make a Comment
IT Pros Race Across America
Make a Comment

More blogs about technology,
software, and Windows.

Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro DevProConnections IT Job Hound ITTV
IT Library Technology Resource Directory Connected Home asp.netPRO Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 © 2009 Penton Media, Inc. Terms of Use | Privacy Statement | Reprints and Licensing