Limitless connectivity for hybrid IT landscapes
Thanks to the Microsoft Identity Manager synchronization service, we enable the seamless integration of almost any web-based application, database and various directory services as well as cloud platforms into the IDABUS Identity Solution or the Microsoft Identity Manager 2016 system. We guarantee uniform and transparent management of identities, roles, rules, groups and other objects.
Our status-based synchronization process regularly checks all target systems. Deviations are immediately detected, corrected and logged (target/actual analysis). Our web service and database-based connectors can be configured intuitively and without programming knowledge. This enables rapid integration even in constantly changing system and application landscapes – without any external support.
Our connectors at a glance
Oxford Computer Group (OCG) has developed over 100 management agents for partners and customers. Most of these agents were originally created as part of a specific implementation or requirement. Some management agents are further developed by us and equipped with new functions.
Connectors for cloud applications
The Azure Active Directory Connector offered by Microsoft only has a limited range of functions (all-in) for synchronizing your identity data to Microsoft Azure. The solution developed by OCG includes a considerably extended scope of possible configurations (selective-in). This makes it obsolete to clean up your identity data before deploying Microsoft Azure Active Directory or Office 365. The OCG Cloud Management Agent enables fast and flexible provisioning of identities and their authorizations with Microsoft Identity Manager systems such as MIM 2016 or FIM 2010 for the cloud.
The OCG Cloud Management Agent offers:
- Automated Microsoft Azure cloud provisioning
- Flexibility and control over user authorizations
- Automated Office365 license assignment for users
- Accelerated deployment in Microsoft Azure
- Single Sign-On (SSO) with AD FS 2.0/3.0
The OCG Cloud Management Agent can thus implement the following:
The OCG Cloud Management Agent in conjunction with the Microsoft Identity Manager makes it possible to provision and manage selected identities from one or more identity stores (such as Windows Server Active Directory) in Microsoft Azure Active Directory / Office 365.
Precise
Based on predefined guidelines, you control which users have access to the cloud services. This is a great advantage, especially for companies whose IT infrastructure is too complex for simple synchronization concepts such as DirSync, AAD Sync or AAD Connect.
Automated
Our solution eliminates the need for manual user provisioning via the administration interface in Microsoft Azure Active Directory or Office 365. In conjunction with Microsoft Identity Manager, this management agent uses existing user information and policies to automatically create, provision and continuously update Microsoft Azure Active Directory / Office 365 accounts. This reduces the administrative effort for your company enormously.
Automated license allocation
Over the term of a user account, licenses can be automatically assigned, activated and updated by our Management Agent. This solution is ideal for all companies that want to control additional expenditure. You only pay for the licenses you use.
Single sign-on with AD FS 2.0 / 3.0
Do you want to give your users seamless and secure access to Office 365? To achieve this, Microsoft Identity Manager manages login data and authorizations. For security reasons, access to the cloud requires authentication. We offer your users single sign-on by using AD FS 2.0/3.0 and federating your local Active Directory authentication with your cloud applications.
O365 license terms
Our experience and a variety of customer requirements for the management capabilities of Microsoft Cloud services led to the development of the OCG Cloud Management Agent. OCG can license this management agent for your company and offer supporting services.
The OCG Management Agent supports the following profiles:
- Full Import
- Delta Import
- Export
- Full Sync
- Delta Sync
Important! The Management Agent can be functionally and programmatically extended by OCG at the customer’s request.
For ServiceNow
The OCG ServiceNow Management Agent is an OCG product development that enables the simple and flexible management of ServiceNow objects. The product can only be operated in conjunction with Microsoft Forefront Identity Manager 2010 (FIM) or Microsoft Identity Manager 2016 (MIM), as it is an Extensible Management Agent (XMA2). The OCG Management Agent supports enterprise proxies with alternative credentials and enables the management of ServiceNow objects such as:
- Users
- Groups
- Rollers
- Locations
- The company
- Departments
- Cost centers
- Tasks
The following administrative tasks can be performed for the above-mentioned ServiceNow objects:
- Reading and changing user properties
- Read and change group properties incl. member management
- Reading and changing role properties incl. member management
- Reading and changing location properties
- Reading and changing company properties
- Reading and changing department properties
- Reading and changing cost center properties
- Retrieving and closing tasks
- Creating and deleting users
- Creating and deleting groups
- Creating and deleting locations
- Creation and deletion of companies
- Creation and deletion of departments
- Creation and deletion of cost centers
- Password synchronization
- Read, add and delete group assignments
Available as SOAP and REST version!
Important! The Management Agent can be functionally and programmatically extended by OCG at the customer’s request.
Connectors for local applications
For SAP
SAP 4.7 – NetWeaver 7.2: The SAP User Management Agent is an OCG product development that enables the simple and flexible administration of SAP User Management objects. The SAP User Management Agent can be operated in conjunction with the Microsoft Identity Manager, as it is a stand-alone application.
The Management Agent enables the administration of the following SAP User Management objects:
- Users
- Users in the CUA/ZBV
- Rollers
- Collecting rolls
The following administrative tasks can be performed for the above-mentioned SAP objects:
- Reading users, roles and composite roles
- Creation of users
- Deleting users
- Changing user properties
- Password synchronization
- Read out and change role assignment
- Read out and change composite role assignment
- Read out and change group assignment
- Read and change Org Assignments
Technical details:
Access to the SAP system is via BAPI/RFC using the SAP .Net Connector 3.0 (available in 64 bit for .Net 4.0). The data transferred between the Management Agent and the SAP system can be fully protected with SNC encryption. Data is exchanged with the Identity Management System via SQL or Identity Manager directly integrated as Identity Manager Extensible Management Agent (XMA2).
The SAP User Management Agent offers various logging levels (information, warning, error, debug) in different analysis contexts (event display, debug display) to ensure the traceability of error-free processing or processing analysis in the event of an error.
Important! The Management Agent can be functionally and programmatically extended by OCG at the customer’s request.
For RSA SecurID
The OCG RSA SecureID Management Agent is an OCG product development that enables the simple and flexible management of operating processes for the RSA SecureID Lifecycle Manager within the Microsoft Identity Manager. The OCG RSA SecureID Management Agent can manage multiple data sources per realm, multiple realms per system or multiple RSA SecureID Lifecycle Manager instances. By using the RSA web service as an interface to the Identity Manager, the OCG RSA8 Management Agent is platform-independent and supports both RSA server installations and SecureID appliance solutions. The standardized use of this interface enables the OCG RSA SecureID Management Agent to execute and monitor all functions of the RSA SecureID Lifecycle Manager while ensuring the security context when accessing the data.
The following functions are supported by the OCG RSA SecureID Management Agent:
Monitoring and reporting (import):
- User objects
- Token lists
- Token assignments
- Groups
- Group memberships
Identity Lifecycle (Export):
- Create, modify and delete user objects
Rights and role management (export):
- Token allocation and withdrawal, token exchange
- PIN reset
- On-demand authentication (SMS token) Assignment and revocation
- Add and remove group members
Important! The Management Agent can be functionally and programmatically extended by OCG at the customer’s request.
Connectors for directory services
The Microsoft Azure Active Directory Connector offered by Microsoft only has a limited range of functions (all-in) for synchronizing your identity data to Microsoft Azure. The solution developed by OCG includes a considerably extended scope of possible configurations (selective-in). This makes it obsolete to clean up your identity data before deploying Microsoft Azure Active Directory or Office 365. The OCG Cloud Management Agent enables fast and flexible provisioning of identities and their authorizations with Microsoft Identity Manager systems such as MIM 2016 or FIM 2010 for the cloud.
The OCG Cloud Management Agent offers:
- Automated Microsoft Azure cloud provisioning
- Flexibility and control over user authorizations
- Automated Office365 license assignment for users
- Accelerated deployment in Microsoft Azure
- Single Sign-On (SSO) with AD FS 2.0/3.0
The OCG Cloud Management Agent can thus implement the following:
The OCG Cloud Management Agent in conjunction with the Microsoft Identity Manager makes it possible to provision and manage selected identities from one or more identity stores (such as Windows Server Active Directory) in Microsoft Azure Active Directory / Office 365.
Precise
Based on predefined guidelines, you control which users have access to the cloud services. This is a great advantage, especially for companies whose IT infrastructure is too complex for simple synchronization concepts such as DirSync, AAD Sync or AAD Connect.
Automated
Our solution eliminates the need for manual user provisioning via the administration interface in Microsoft Azure Active Directory or Office 365. In conjunction with Microsoft Identity Manager, this management agent uses existing user information and policies to automatically create, provision and continuously update Microsoft Azure Active Directory / Office 365 accounts. This reduces the administrative effort for your company enormously.
Automated license allocation
Over the term of a user account, licenses can be automatically assigned, activated and updated by our Management Agent. This solution is ideal for all companies that want to control additional expenditure. You only pay for the licenses you use.
Single sign-on with AD FS 2.0 / 3.0
Do you want to give your users seamless and secure access to Office 365? To achieve this, Microsoft Identity Manager manages login data and authorizations. For security reasons, access to the cloud requires authentication. We offer your users single sign-on by using AD FS 2.0/3.0 and federating your local Active Directory authentication with your cloud applications.
O365 license terms
Our experience and a multitude of requirements from our customers regarding the management options of Microsoft Cloud services led to the development of the OCG Cloud Management Agent. OCG can license this management agent for your company and offer supporting services.
The OCG Management Agent supports the following profiles:
- Full Import
- Delta Import
- Export
- Full Sync
- Delta Sync
Important! The Management Agent can be functionally and programmatically extended by OCG at the customer’s request.
For Unix SSH
The OCG Unix Management Agent provides simple and flexible management of users and groups using Secure Shell (SSH). Many Unix derivatives are supported, including Linux.
The Management Agent offers the following functions:
- Create, delete and edit users
- Creating and deleting groups
- Adding and removing group memberships
Important! The Management Agent can be functionally and programmatically extended by OCG at the customer’s request.
Connectors for databases
OCG’s Database Management Agent is the result of our innovative product development. It enables effortless, flexible and state-of-the-art management of database objects. This groundbreaking solution sets the standard for efficiency and adaptability in database management.
Please note that this product can only be used in conjunction with Microsoft Identity Manager 2016 (MIM). The Database Management Agent is an Extensible Management Agent (XMA2) of the latest generation.
The choice is yours: either opt for the comprehensive DBSuite, which covers all the database systems mentioned, or purchase the Database Management Agent as a stand-alone product. This allows you to adapt your database management perfectly to your individual requirements.
The Management Agent can be functionally and programmatically expanded by the OCG to include any functions the customer requires.
The OCG Management Agent offers the following functions:
- Access to multiple data sources (tables, queries, stored procedures and functions) via a management agent
- Supports schema recognition (even with different schemas)
- Referencing between all object classes
- Password synchronization
- Flexible assignment of the reference column in main and multivalue tables across multiple data sources
- Delta synchronization with transfer of the modification type
- Execution of a stored procedure before starting the synchronization process
- Execution of a stored procedure after the end of the synchronization process
- Simple configuration via XML file without programming knowledge
- All transfer parameters can be set separately for each data source (table or query)
- Connection possible via user name / password or integrated security
- Export data can either be transferred to a table or stored procedure
The OCG Management Agent supports the following databases:
- Cassandra / DataStax
- Exasol
- Firebird
- HPE Vertica
- Informix
- Ingres
- MS-SQL / SQL Azure
- mySQL / MariaDB / MemSQL
- NuoDB
- Oracle
- PostgreSQL / EnterpriseDB
- SAP HANA
- Teradata
- Virtuoso
The OCG Management Agent supports the following profiles:
- Full Import
- Delta Import
- Export
- Full Sync
- Delta Sync
Advantages of the OCG Connectivity Framework
- Own development department in Germany
- Well over 100 management agents for partners, competitors and customers
- Adaptation or expansion of existing products
- Modular design for the fastest possible deployment
- Quality-assured and performance-optimized
For a direct connection
Do you have any questions or would you like us to advise you? We will help you find the best solution for your specific requirements.
- Andreas Zemla
- +49 8122 89 20 89-0
- connectivity@ocg.de