SlideShare une entreprise Scribd logo
1  sur  37
Télécharger pour lire hors ligne
Box à Active Directory
with Okta
Agenda
-  Introduction to Okta and Box
-  AD Integration with Okta
-  New Offer from Box and Okta
okta confidential 2
IT is Going Through a Radical Transformation…
okta confidential 3
Applications
Employees,
One Desktop
Users
On Premises Increasingly In The Cloud
Consumerization of IT
& Post-PC devices
Cross-
company
collaboration
…That Transformation Causes New Problems
okta confidential 4
ApplicationsUsers
User
store
okta confidential 5
okta confidential 6
okta confidential 7
okta confidential 8
okta confidential 9
Modern Identity & Access Management
okta confidential 10
•  First true Cloud IAM service
•  Full suite of IAM features (SSO, provisioning, analytics)
•  Bridges existing user stores (AD / LDAP) to the cloud
Modern Identity
Management
Veteran
Team
Strong Customer
Success
A	
  simple	
  vision.	
  
Share,	
  manage,	
  and	
  access	
  your	
  content	
  
from	
  anywhere.	
  
The	
  Market	
  is	
  Transforming	
  
IT	
  Moves	
  to	
  	
  
the	
  Cloud	
  
Consumeriza@on	
  	
  
of	
  IT	
  
Everyone	
  is	
  Sharing	
  
and	
  Collabora@ng	
  
What	
  We	
  Expect	
  From	
  our	
  Apps	
  Now	
  
100%	
  cloud-­‐based	
  for	
  low	
  cost	
  and	
  easy	
  maintenance	
  
✔	
  
✔	
  
✔	
  
✔	
  Works	
  on	
  any	
  mobile	
  device	
  
Fully	
  flexible,	
  but	
  compliant	
  with	
  your	
  IT	
  policies	
  
Secure,	
  trusted,	
  scalable,	
  and	
  always	
  available	
  
The	
  New	
  Enterprise	
  Apps	
  Checklist:	
  
MANUFACTURING	
  
&	
  INDUSTRIAL	
  
INTERNET	
  &	
  	
  
HIGH	
  TECH	
  
ENTERTAINMENT	
  
&	
  MEDIA	
  
SERVICES	
   EDUCATION	
  &	
  
NON-­‐PROFIT	
  
RETAIL	
  
Customers	
  Love	
  Using	
  Box	
  
Our	
  PlaWorm	
  
A	
  Vibrant	
  Ecosystem	
  
300M	
  
Monthly	
  API	
  Calls	
  
220+	
  
Applica@ons	
  
8,000+	
  
App	
  Developers	
  
Box	
  Partners	
  
Users	
   IT	
  
Superior	
  Solu@on	
  for	
  Users	
  and	
  IT	
  
ü  Easy	
  to	
  use	
  
ü  Accessible	
  anywhere	
  
ü  Streamlines	
  sharing	
  
ü  Enterprise	
  grade	
  security	
  	
  
ü  Simple	
  to	
  deploy	
  and	
  maintain	
  
ü  Lower	
  TCO	
  
Agenda
-  Introduction to Okta and Box
-  AD Integration with Okta
-  New Offer from Box and Okta
okta confidential 19
Active Directory Integration - Overview
Remote users authenticate with
AD username and password
1 Local users transparently authenticate
using Integrated Windows Authentication
2
Access policies driven
by AD security groups
3
Remote/Mobile
Employees
Active
Directory
Employees
Okta Agent(s)
Group
Sales
Firewall
okta confidential 20
Active Directory Integration - Benefits
Remote/Mobile
Employees
Active
Directory
Employees
Okta
Agents
Group
Sales
• Simple agent install, no network configuration required
• Multiple agents supported for HA authentication
Easy to Use,
Just Works
• Scheduled or Manual Import of Users
• Automatic De-Activation in Okta of Disabled/Deleted Users
• Delegate Authentication for Okta to AD
Broad
Functionality
• Integration into Windows Desktop Login
Tight Windows
Integration
Remote users authenticate with
AD username and password
1 Local users transparently authenticate
using Integrated Windows Authentication
2
Access policies driven
by AD security groups
3
okta confidential 21
Integrating Active Directory
Download AD Agent,
Install on Windows Machine
1
Configure Agent:
Directory Location,
Credentials, Sync Interval
3
Configure
import rules
4
Internet Firewall Your Network
AD Domain
Controller
Okta Agent
(On Windows Server)
https://yourcompany.okta.com
2
•  Enter Okta URL and credentials
•  HTTPS from company to Okta
•  No firewall configuration necessary
okta confidential 22
Import Options
• Confirm and Activate on Login
okta confidential 23
Ongoing AD User Synchronization
Internet Firewall Your Network
AD Domain
Controller
Okta Agent
(On Windows Server)
https://yourcompany.okta.com
3
Users provisioned, de-provisioned; application
assignments based on security group membership
AD Agent Scans AD for changes and makes
HTTPS request to upload to Okta
1
Okta receives update, processes
user and group changes
2
okta confidential 24
Delegated Authentication to AD
Internet Firewall Your Network
AD Domain
Controller
Okta Agent
(On Windows Server)
https://yourcompany.okta.com
User logs into https://yourcompany.okta.com
using Okta username & AD password
1 Okta communicates to AD Agent via persistent
connection to validate password
2
Agent responds with
success or failure
3 Okta returns Box homepage
(success) or failure message
4
Inside/Outside Network
okta confidential 25
Desktop SSO
Firewall
2
1
AD Domain
Controller
Get To Box with NO Login Page
• User logs on to domain
• Can then access Box with no additional login
Secure: Uses Integrated Windows
Authentication (Kerberos)
Easy to deploy: Leverages light
weight agent running under IIS
Okta IWA
Agent
okta confidential 26
Integrated Multifactor Authentication
•  Security question
•  Smart phone Soft Token
•  Can integrate with 3rd party MFA products
•  Flexible policy
•  Self service configuration
•  Fully integrated as part of the Okta service
•  Phishing
•  Guessed passwords
•  Key loggers
okta confidential 27
Case Study
okta confidential 28
Enterasys - Key Challenges
-  Security
-  BYOD, BYOA, Consumerization
-  “Cloud First” IT strategy
-  Increasing number of cloud apps, rapid move to
the cloud
-  No existing SAML infrastructure for single sign-on
-  Application Adoption Metrics
29
Okta @ Enterasys
30
Enterasys - Key Benefits Realized
-  User Benefits
-  My Applications page
-  Desktop SSO using Integrated Windows Authentication (IWA)
-  One password through AD integration
-  Consistent Access from any device (BYOD)
-  IT Benefits
-  Security
-  Ability to monitor application adoption
-  User deprovisioning
-  AD integration, Groups
31
Agenda
-  Introduction to Okta and Box
-  AD Integration with Okta
-  New Offer from Box and Okta
okta confidential 32
New Offering from Okta and Box
-  Use Okta to Connect Box to Active Directory
-  Secure Access to Box
-  Reduce Administration Costs for Box
-  Do all of this for FREE
okta.com/box
okta confidential 33
Many customers use Okta + Box together today
okta confidential 34
Enterprise
SaaS
Technology
Life
Sciences
Online
Services
Mfg, Legal,
Finance
Why this new offering?
-  Solves a common requirement for Box users
(integrate Box with Active Directory)
-  But now lets you do so for Free
-  Introduces Okta to more enterprises. All of you will
use more cloud apps in the future, and we want to
be the partner you turn to.
-  It’s very easy to expand Okta to cover the rest of
your applications.
okta confidential 35
Call To Action
Get a free Okta account for Box here:
www.okta.com/box
Questions?
Ryan Carlson, Okta
rcarlson@okta.com
Brian Dirking, Box
bdirking@box.com
okta confidential 36
okta confidential 37

Contenu connexe

Tendances

Tendances (20)

Intelligent MSP Presentation.pdf
Intelligent MSP Presentation.pdfIntelligent MSP Presentation.pdf
Intelligent MSP Presentation.pdf
 
Microsoft Defender for Endpoint
Microsoft Defender for EndpointMicrosoft Defender for Endpoint
Microsoft Defender for Endpoint
 
Azure Application Modernization
Azure Application ModernizationAzure Application Modernization
Azure Application Modernization
 
Azure cloud migration simplified
Azure cloud migration simplifiedAzure cloud migration simplified
Azure cloud migration simplified
 
Event Driven Software Architecture Pattern
Event Driven Software Architecture PatternEvent Driven Software Architecture Pattern
Event Driven Software Architecture Pattern
 
An introduction to Defender for Business
An introduction to Defender for BusinessAn introduction to Defender for Business
An introduction to Defender for Business
 
Microsoft 365 Security and Compliance
Microsoft 365 Security and ComplianceMicrosoft 365 Security and Compliance
Microsoft 365 Security and Compliance
 
Cloud Migration Strategy and Best Practices
Cloud Migration Strategy and Best PracticesCloud Migration Strategy and Best Practices
Cloud Migration Strategy and Best Practices
 
Cloud Migration, Application Modernization and Security for Partners
Cloud Migration, Application Modernization and Security for PartnersCloud Migration, Application Modernization and Security for Partners
Cloud Migration, Application Modernization and Security for Partners
 
Microsoft Office 365
Microsoft Office 365Microsoft Office 365
Microsoft Office 365
 
3 Modern Security - Secure identities to reach zero trust with AAD
3   Modern Security - Secure identities to reach zero trust with AAD3   Modern Security - Secure identities to reach zero trust with AAD
3 Modern Security - Secure identities to reach zero trust with AAD
 
Office 365: Migrating Your Business to Office 365!
Office 365: Migrating Your Business to Office 365!Office 365: Migrating Your Business to Office 365!
Office 365: Migrating Your Business to Office 365!
 
Succeeding with Secure Access Service Edge (SASE)
Succeeding with Secure Access Service Edge (SASE)Succeeding with Secure Access Service Edge (SASE)
Succeeding with Secure Access Service Edge (SASE)
 
Cloud Privacy & Security compliance
Cloud Privacy & Security complianceCloud Privacy & Security compliance
Cloud Privacy & Security compliance
 
Mimecast Presentation
Mimecast PresentationMimecast Presentation
Mimecast Presentation
 
Pre-built, Secure Identity Layer for Consumer Websites, B2B Portals and SaaS ...
Pre-built, Secure Identity Layer for Consumer Websites, B2B Portals and SaaS ...Pre-built, Secure Identity Layer for Consumer Websites, B2B Portals and SaaS ...
Pre-built, Secure Identity Layer for Consumer Websites, B2B Portals and SaaS ...
 
MCAS High Level Architecture May 2021
MCAS High Level Architecture May 2021MCAS High Level Architecture May 2021
MCAS High Level Architecture May 2021
 
Domain Driven Data: Apache Kafka® and the Data Mesh
Domain Driven Data: Apache Kafka® and the Data MeshDomain Driven Data: Apache Kafka® and the Data Mesh
Domain Driven Data: Apache Kafka® and the Data Mesh
 
Azure AD Presentation - @ BITPro - Ajay
Azure AD Presentation - @ BITPro - AjayAzure AD Presentation - @ BITPro - Ajay
Azure AD Presentation - @ BITPro - Ajay
 
Overview of Microsoft Enterprise Mobility & Security(EMS)
Overview of Microsoft Enterprise Mobility & Security(EMS)Overview of Microsoft Enterprise Mobility & Security(EMS)
Overview of Microsoft Enterprise Mobility & Security(EMS)
 

En vedette

ServiceNow-Box Integration
ServiceNow-Box IntegrationServiceNow-Box Integration
ServiceNow-Box Integration
Nagendra B
 
Okta Directory Integration for Microsoft Office365 - from Atidan
Okta Directory Integration for Microsoft Office365 - from AtidanOkta Directory Integration for Microsoft Office365 - from Atidan
Okta Directory Integration for Microsoft Office365 - from Atidan
David J Rosenthal
 
Simple cloud reference architecture
Simple cloud reference architectureSimple cloud reference architecture
Simple cloud reference architecture
DaeMyung Kang
 
Rethink cloud security to get ahead of the risk curve by kurt johnson, vice p...
Rethink cloud security to get ahead of the risk curve by kurt johnson, vice p...Rethink cloud security to get ahead of the risk curve by kurt johnson, vice p...
Rethink cloud security to get ahead of the risk curve by kurt johnson, vice p...
Khazret Sapenov
 
Mobile security-reference-architecture
Mobile security-reference-architectureMobile security-reference-architecture
Mobile security-reference-architecture
Vishal Sharma
 
PCI Compliance and Cloud Reference Architecture
PCI Compliance and Cloud Reference ArchitecturePCI Compliance and Cloud Reference Architecture
PCI Compliance and Cloud Reference Architecture
HyTrust
 

En vedette (20)

Company and Market Overview
Company and Market OverviewCompany and Market Overview
Company and Market Overview
 
Avoiding the Hidden Costs of Active Directory Federation Services (AD FS)
Avoiding the Hidden Costs of Active Directory Federation Services (AD FS)Avoiding the Hidden Costs of Active Directory Federation Services (AD FS)
Avoiding the Hidden Costs of Active Directory Federation Services (AD FS)
 
Ppt okta
Ppt oktaPpt okta
Ppt okta
 
How Okta Created a Customer Community To Drive Engagement and Manage Support ...
How Okta Created a Customer Community To Drive Engagement and Manage Support ...How Okta Created a Customer Community To Drive Engagement and Manage Support ...
How Okta Created a Customer Community To Drive Engagement and Manage Support ...
 
ServiceNow-Box Integration
ServiceNow-Box IntegrationServiceNow-Box Integration
ServiceNow-Box Integration
 
Okta Directory Integration for Microsoft Office365 - from Atidan
Okta Directory Integration for Microsoft Office365 - from AtidanOkta Directory Integration for Microsoft Office365 - from Atidan
Okta Directory Integration for Microsoft Office365 - from Atidan
 
Hewlett-Packard: Growing HP's advocate economy, presented by Zealous Wiley
Hewlett-Packard: Growing HP's advocate economy, presented by Zealous WileyHewlett-Packard: Growing HP's advocate economy, presented by Zealous Wiley
Hewlett-Packard: Growing HP's advocate economy, presented by Zealous Wiley
 
Simple cloud reference architecture
Simple cloud reference architectureSimple cloud reference architecture
Simple cloud reference architecture
 
Rethink cloud security to get ahead of the risk curve by kurt johnson, vice p...
Rethink cloud security to get ahead of the risk curve by kurt johnson, vice p...Rethink cloud security to get ahead of the risk curve by kurt johnson, vice p...
Rethink cloud security to get ahead of the risk curve by kurt johnson, vice p...
 
Cloud reference architecture as per nist
Cloud reference architecture as per nistCloud reference architecture as per nist
Cloud reference architecture as per nist
 
Mobile security-reference-architecture
Mobile security-reference-architectureMobile security-reference-architecture
Mobile security-reference-architecture
 
PCI Compliance and Cloud Reference Architecture
PCI Compliance and Cloud Reference ArchitecturePCI Compliance and Cloud Reference Architecture
PCI Compliance and Cloud Reference Architecture
 
Intro to Cloud Computing in the Federal Government
Intro to Cloud Computing in the Federal GovernmentIntro to Cloud Computing in the Federal Government
Intro to Cloud Computing in the Federal Government
 
Feds: You have a BYOD program whether you like it or not
Feds: You have a BYOD program whether you like it or notFeds: You have a BYOD program whether you like it or not
Feds: You have a BYOD program whether you like it or not
 
The Enterprise Reference Architecture and Tools
The Enterprise Reference Architecture and ToolsThe Enterprise Reference Architecture and Tools
The Enterprise Reference Architecture and Tools
 
Reference Architecture for Data Loss Prevention in the Cloud
Reference Architecture for Data Loss Prevention in the CloudReference Architecture for Data Loss Prevention in the Cloud
Reference Architecture for Data Loss Prevention in the Cloud
 
Looking Forward and Looking Back: Lookout's Cybersecurity Predictions
Looking Forward and Looking Back: Lookout's Cybersecurity PredictionsLooking Forward and Looking Back: Lookout's Cybersecurity Predictions
Looking Forward and Looking Back: Lookout's Cybersecurity Predictions
 
Take It to the Cloud: The Evolution of Security Architecture
Take It to the Cloud: The Evolution of Security ArchitectureTake It to the Cloud: The Evolution of Security Architecture
Take It to the Cloud: The Evolution of Security Architecture
 
The F5 DDoS Protection Reference Architecture (Technical White Paper)
The F5 DDoS Protection Reference Architecture (Technical White Paper)The F5 DDoS Protection Reference Architecture (Technical White Paper)
The F5 DDoS Protection Reference Architecture (Technical White Paper)
 
11 European Privacy Regulations That Could Cost You €1 Million in Fines
11 European Privacy Regulations That Could Cost You €1 Million in Fines 11 European Privacy Regulations That Could Cost You €1 Million in Fines
11 European Privacy Regulations That Could Cost You €1 Million in Fines
 

Similaire à Extending Active Directory to Box for Seamless IT Management

3 keys to Digital transformation
3 keys to Digital transformation 3 keys to Digital transformation
3 keys to Digital transformation
Equinix
 
Premier Webcast - Identity Management with Windows Azure AD
Premier Webcast - Identity Management with Windows Azure ADPremier Webcast - Identity Management with Windows Azure AD
Premier Webcast - Identity Management with Windows Azure AD
uberbaum
 
Unified client management session from Microsoft partner boot camp
Unified client management session from Microsoft partner boot campUnified client management session from Microsoft partner boot camp
Unified client management session from Microsoft partner boot camp
Olav Tvedt
 
dtechnClouologyassociatepart2
dtechnClouologyassociatepart2dtechnClouologyassociatepart2
dtechnClouologyassociatepart2
Anne Starr
 

Similaire à Extending Active Directory to Box for Seamless IT Management (20)

Proven Practices for Office 365 Deployment, Security and Management
Proven Practices for Office 365 Deployment, Security and ManagementProven Practices for Office 365 Deployment, Security and Management
Proven Practices for Office 365 Deployment, Security and Management
 
Leveraging Operational Data in the Cloud
 Leveraging Operational Data in the Cloud Leveraging Operational Data in the Cloud
Leveraging Operational Data in the Cloud
 
2018 November - AZUGDK - Azure AD
2018 November - AZUGDK - Azure AD 2018 November - AZUGDK - Azure AD
2018 November - AZUGDK - Azure AD
 
Leveraging Operational Data in the Cloud
Leveraging Operational Data in the CloudLeveraging Operational Data in the Cloud
Leveraging Operational Data in the Cloud
 
3 keys to Digital transformation
3 keys to Digital transformation 3 keys to Digital transformation
3 keys to Digital transformation
 
How News Corp Secured Their Digital Transformation through Identity and Acces...
How News Corp Secured Their Digital Transformation through Identity and Acces...How News Corp Secured Their Digital Transformation through Identity and Acces...
How News Corp Secured Their Digital Transformation through Identity and Acces...
 
Sailpoint vs Okta.pdf
Sailpoint vs Okta.pdfSailpoint vs Okta.pdf
Sailpoint vs Okta.pdf
 
Premier Webcast - Identity Management with Windows Azure AD
Premier Webcast - Identity Management with Windows Azure ADPremier Webcast - Identity Management with Windows Azure AD
Premier Webcast - Identity Management with Windows Azure AD
 
Norton Zone File-Sharing Service
Norton Zone File-Sharing ServiceNorton Zone File-Sharing Service
Norton Zone File-Sharing Service
 
6 Simple Steps to Enterprise Digital Transformation
6 Simple Steps to Enterprise Digital Transformation6 Simple Steps to Enterprise Digital Transformation
6 Simple Steps to Enterprise Digital Transformation
 
Webinar: Securing Remote Workforce on the Microsoft Cloud
Webinar: Securing Remote Workforce on the Microsoft CloudWebinar: Securing Remote Workforce on the Microsoft Cloud
Webinar: Securing Remote Workforce on the Microsoft Cloud
 
BT Cloud Enterprise Service Store - Rob Rowlingson
BT Cloud Enterprise Service Store - Rob RowlingsonBT Cloud Enterprise Service Store - Rob Rowlingson
BT Cloud Enterprise Service Store - Rob Rowlingson
 
Cloud the current future v6
Cloud   the current future v6Cloud   the current future v6
Cloud the current future v6
 
Safenet Authentication Service, SAS
Safenet Authentication Service, SASSafenet Authentication Service, SAS
Safenet Authentication Service, SAS
 
Community IT - Single Sign On
Community IT - Single Sign OnCommunity IT - Single Sign On
Community IT - Single Sign On
 
Unified client management session from Microsoft partner boot camp
Unified client management session from Microsoft partner boot campUnified client management session from Microsoft partner boot camp
Unified client management session from Microsoft partner boot camp
 
Embracing secure, scalable BYOD with Sencha and Centrify
Embracing secure, scalable BYOD with Sencha and CentrifyEmbracing secure, scalable BYOD with Sencha and Centrify
Embracing secure, scalable BYOD with Sencha and Centrify
 
Zero trust for everybody: 3 ways to get there fast
Zero trust for everybody: 3 ways to get there fastZero trust for everybody: 3 ways to get there fast
Zero trust for everybody: 3 ways to get there fast
 
Cloud Security @ TIM - Current Practises and Future Challanges
Cloud Security @ TIM - Current Practises and Future ChallangesCloud Security @ TIM - Current Practises and Future Challanges
Cloud Security @ TIM - Current Practises and Future Challanges
 
dtechnClouologyassociatepart2
dtechnClouologyassociatepart2dtechnClouologyassociatepart2
dtechnClouologyassociatepart2
 

Dernier

Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 

Dernier (20)

AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 

Extending Active Directory to Box for Seamless IT Management

  • 1. Box à Active Directory with Okta
  • 2. Agenda -  Introduction to Okta and Box -  AD Integration with Okta -  New Offer from Box and Okta okta confidential 2
  • 3. IT is Going Through a Radical Transformation… okta confidential 3 Applications Employees, One Desktop Users On Premises Increasingly In The Cloud Consumerization of IT & Post-PC devices Cross- company collaboration
  • 4. …That Transformation Causes New Problems okta confidential 4 ApplicationsUsers User store
  • 10. Modern Identity & Access Management okta confidential 10 •  First true Cloud IAM service •  Full suite of IAM features (SSO, provisioning, analytics) •  Bridges existing user stores (AD / LDAP) to the cloud Modern Identity Management Veteran Team Strong Customer Success
  • 11.
  • 12. A  simple  vision.   Share,  manage,  and  access  your  content   from  anywhere.  
  • 13. The  Market  is  Transforming   IT  Moves  to     the  Cloud   Consumeriza@on     of  IT   Everyone  is  Sharing   and  Collabora@ng  
  • 14. What  We  Expect  From  our  Apps  Now   100%  cloud-­‐based  for  low  cost  and  easy  maintenance   ✔   ✔   ✔   ✔  Works  on  any  mobile  device   Fully  flexible,  but  compliant  with  your  IT  policies   Secure,  trusted,  scalable,  and  always  available   The  New  Enterprise  Apps  Checklist:  
  • 15. MANUFACTURING   &  INDUSTRIAL   INTERNET  &     HIGH  TECH   ENTERTAINMENT   &  MEDIA   SERVICES   EDUCATION  &   NON-­‐PROFIT   RETAIL   Customers  Love  Using  Box  
  • 17. A  Vibrant  Ecosystem   300M   Monthly  API  Calls   220+   Applica@ons   8,000+   App  Developers   Box  Partners  
  • 18. Users   IT   Superior  Solu@on  for  Users  and  IT   ü  Easy  to  use   ü  Accessible  anywhere   ü  Streamlines  sharing   ü  Enterprise  grade  security     ü  Simple  to  deploy  and  maintain   ü  Lower  TCO  
  • 19. Agenda -  Introduction to Okta and Box -  AD Integration with Okta -  New Offer from Box and Okta okta confidential 19
  • 20. Active Directory Integration - Overview Remote users authenticate with AD username and password 1 Local users transparently authenticate using Integrated Windows Authentication 2 Access policies driven by AD security groups 3 Remote/Mobile Employees Active Directory Employees Okta Agent(s) Group Sales Firewall okta confidential 20
  • 21. Active Directory Integration - Benefits Remote/Mobile Employees Active Directory Employees Okta Agents Group Sales • Simple agent install, no network configuration required • Multiple agents supported for HA authentication Easy to Use, Just Works • Scheduled or Manual Import of Users • Automatic De-Activation in Okta of Disabled/Deleted Users • Delegate Authentication for Okta to AD Broad Functionality • Integration into Windows Desktop Login Tight Windows Integration Remote users authenticate with AD username and password 1 Local users transparently authenticate using Integrated Windows Authentication 2 Access policies driven by AD security groups 3 okta confidential 21
  • 22. Integrating Active Directory Download AD Agent, Install on Windows Machine 1 Configure Agent: Directory Location, Credentials, Sync Interval 3 Configure import rules 4 Internet Firewall Your Network AD Domain Controller Okta Agent (On Windows Server) https://yourcompany.okta.com 2 •  Enter Okta URL and credentials •  HTTPS from company to Okta •  No firewall configuration necessary okta confidential 22
  • 23. Import Options • Confirm and Activate on Login okta confidential 23
  • 24. Ongoing AD User Synchronization Internet Firewall Your Network AD Domain Controller Okta Agent (On Windows Server) https://yourcompany.okta.com 3 Users provisioned, de-provisioned; application assignments based on security group membership AD Agent Scans AD for changes and makes HTTPS request to upload to Okta 1 Okta receives update, processes user and group changes 2 okta confidential 24
  • 25. Delegated Authentication to AD Internet Firewall Your Network AD Domain Controller Okta Agent (On Windows Server) https://yourcompany.okta.com User logs into https://yourcompany.okta.com using Okta username & AD password 1 Okta communicates to AD Agent via persistent connection to validate password 2 Agent responds with success or failure 3 Okta returns Box homepage (success) or failure message 4 Inside/Outside Network okta confidential 25
  • 26. Desktop SSO Firewall 2 1 AD Domain Controller Get To Box with NO Login Page • User logs on to domain • Can then access Box with no additional login Secure: Uses Integrated Windows Authentication (Kerberos) Easy to deploy: Leverages light weight agent running under IIS Okta IWA Agent okta confidential 26
  • 27. Integrated Multifactor Authentication •  Security question •  Smart phone Soft Token •  Can integrate with 3rd party MFA products •  Flexible policy •  Self service configuration •  Fully integrated as part of the Okta service •  Phishing •  Guessed passwords •  Key loggers okta confidential 27
  • 29. Enterasys - Key Challenges -  Security -  BYOD, BYOA, Consumerization -  “Cloud First” IT strategy -  Increasing number of cloud apps, rapid move to the cloud -  No existing SAML infrastructure for single sign-on -  Application Adoption Metrics 29
  • 31. Enterasys - Key Benefits Realized -  User Benefits -  My Applications page -  Desktop SSO using Integrated Windows Authentication (IWA) -  One password through AD integration -  Consistent Access from any device (BYOD) -  IT Benefits -  Security -  Ability to monitor application adoption -  User deprovisioning -  AD integration, Groups 31
  • 32. Agenda -  Introduction to Okta and Box -  AD Integration with Okta -  New Offer from Box and Okta okta confidential 32
  • 33. New Offering from Okta and Box -  Use Okta to Connect Box to Active Directory -  Secure Access to Box -  Reduce Administration Costs for Box -  Do all of this for FREE okta.com/box okta confidential 33
  • 34. Many customers use Okta + Box together today okta confidential 34 Enterprise SaaS Technology Life Sciences Online Services Mfg, Legal, Finance
  • 35. Why this new offering? -  Solves a common requirement for Box users (integrate Box with Active Directory) -  But now lets you do so for Free -  Introduces Okta to more enterprises. All of you will use more cloud apps in the future, and we want to be the partner you turn to. -  It’s very easy to expand Okta to cover the rest of your applications. okta confidential 35
  • 36. Call To Action Get a free Okta account for Box here: www.okta.com/box Questions? Ryan Carlson, Okta rcarlson@okta.com Brian Dirking, Box bdirking@box.com okta confidential 36