Abstract:
Privileged user id is a technique which allows user to access different hardware or software without knowing actual password. Through this technique user is given one login/password of TAM-ESSO and when logs on to a machine through TAM-ESSO, TAM-ESSO add all the allowed applications login/password to user account.
Out final year projects main objective is to implement PUids concept to manage SEECS lab users and allow them to access lab login protected machines or software without sharing with them the user id and password.
For example while using WAMP server in SEECS labs students require to login with administrator access rights which cannot be shared with them. Therefore we need such PUids solution that will allow them to admin access for limited time.
In order to solve this problem, we can use single sign on feature which can be achieved using two IBM products named as ITIM (IBM Tivoli Identity Manager) and TAM-ESSO (Tivoli access manager-enterprise single sign on). ITIM (IBM Tivoli Identity Manager) automates and centralizes access right management and provisioning across multiple systems such as applications and operating systems.
1. Allows central control of privileged data
2. Role based access control
3. Automated provisioning of access rights
TAM E-SSO (Tivoli access manager-enterprise single sign on) provides users with single sign on facility to log on to every application on both the company network and the internet. It is intelligent software that works by responding to log on request on behalf of the user directly from their desktop.