Quest Software Inc.
Login | White Papers | Downloads | Buy | Search 

ActiveRoles Server Home > Products > ActiveRoles Server >  Overview Print Page Request a Quote Email Page 
Overview
Features and Benefits
Release Information
Document Library
Webcasts and Events
Software Downloads

Total Control of User Provisioning and Administration for Active Directory and Beyond

ActiveRoles Server


ActiveRoles Server can help you automatically provision, re-provision and more importantly, de-provision users quickly, efficiently and securely in AD and beyond. ActiveRoles Server provides strictly enforced role-based security, automated group management, change approval and easy-to-use Web interfaces for self service, to achieve practical user and group lifecycle management for the Windows enterprise.

--------------------

"We've experienced a number of benefits of the system, not the least of which is faster, easier provisioning. The user-creation process used to take up to 25 minutes, and now can be accomplished in about a minute.”

—Siegfried Jagott, consultant, Siemens Business Services (View All Customer Case Studies)

--------------------

Businesses today grow and change at a frantic pace, making Active Directory (AD) management one of the most time-consuming IT tasks. AD administrators struggle to keep up with requests to create, change or remove user access to various network resources. With the advent of compliance regulations like the Sarbanes-Oxley Act (SOX), and the intense scrutiny they place on access to business-sensitive applications, organizations can no longer rely on numerous manual provisioning processes to maintain compliance.

Add to that the need to tightly delegate control of AD among various administrative groups, provide self-service capabilities to users to lighten the IT burden and involve key people in IT processes through change approval, it’s no wonder that today’s AD administrators need help.


Tight Security with Role Based Administration
ActiveRoles Server offers flexible, granular access controls, with role based delegation to ensure that every administrative action taken is consistent with your organization's security standards. You can audit role definitions, assignments, and permission entries in Active Directory—all from the ActiveRoles Server console. Enterprise wide review of access rights is as simple as running one of the pre-built reports that ship with ActiveRoles Server.

ActiveRoles Server’s unique architecture creates a security boundary around Active Directory, so you can reliably manage AD access rights and guard sensitive information. This is the only way to guarantee compliance with security policies.


Speed User Provisioning with AutoProvision™ Policies ActiveRoles Server automates user provisioning tasks to reduce your administrative workload and get new users up and running faster. Automates reprovisioning and deprovisioning as well, so when a user’s access needs to be changed or removed, updates in Active Directory, Exchange, and Windows are made automatically. Thereby reducing administrative workloads and makes users more productive faster!

Automation of User Provisioning
With the addition of ActiveRoles Quick Connect (optional add-on application to ActiveRoles Server) ActiveRoles Server provides integration with data sources such as HR and ERP systems or Microsoft’s MIIS, Active Directory and other resources can be updated automatically, streamlining data entry. Data entered into one system is automatically reflected in Active Directory, this eliminates costly data entry errors and duplication of effort, saving valuable time.


Lower Administrative Costs with User Self Service With the simple assignment of self-service roles, end users can carry out self-administrative tasks, such as modifying their personal data through a simple to use self-service Web interface. Due to the reliable enforcement of business roles and rules, ActiveRoles Server makes self-administration safe and secure, while allowing IT to manage (but not necessarily participate in) these time-consuming tasks.


Centralized Reporting for all Administrative Operations
Centralized audit logs on all directory-related actions show who performed what actions and who tried to perform actions that were not permitted. By logging all actions in a centralized fashion, ActiveRoles Server allows administrators to quickly identify, troubleshoot, and investigate issues, saving time and increasing administrative efficiency.

Involve Decision-makers within Key IT Processes
By providing rule-based, customizable task approvals, ActiveRoles Server decreases errors and inconsistencies in the processes of directory data management, including provisioning and de-provisioning. Robust approval procedures allow an IT process and oversight to be established and consistent with business requirements, putting efficient responsibility chains to complement the automated management of directory data in place.

Protect Critical Data with Business Rules
By strictly enforcing operating policies and eliminating unregulated access to sensitive resources, ActiveRoles Server ensures the security of your business-critical data. In addition, ActiveRoles Server enables the integration of business processes and provides a detailed audit trail of all directory related changes. This level of control and security is a must for legal or regulatory compliance initiatives.

Provision and Administer More with One Console
UNIX/Linux Users and Groups – ActiveRoles Server extends management control to UNIX and LINUX identities, including users, groups and computers, through Vintela Authentication Services. Query based management views show all of the enabled identities, and business rules ensure and enforce unique user identification and group identification.

Assign access to entitlements including JAVA – Once an Active Directory account is provisioned access to directory-enabled applications can be granted automatically. AutoProvision Policy for Group Membership further allows you automate the assignment of permissions for the Vintela Single Sign-on for Java.

Get a Complete and Extensible Solution
With ActiveRoles Server, you can manage key user assets, including AD accounts, Exchange mailboxes and home directories. It provides a practical approach for managing the user lifecycle, including provisioning, re-provisioning and de-provisioning. You can also customize and extend ActiveRoles Server provisioning, management, security and automation through ActiveRoles Server support for custom scripts. These scripts are subject to the same roles and rules as users so you can be confident that they will be executed properly, by the correct people, and trigged by events you define. In addition to strong scripting support, several optional add-on applications (listed below) can be added to ActiveRoles Server to provide for advanced management capabilities.

Quest ActiveRoles Quick Connect – provides integration to HR/ERP application or  Microsoft Identity Integration Server (MIIS) to completely automate the provisioning process and synchronize system data with Active Directory.

Quest ActiveRoles Exchange Resource Forest Manager – enhances the multi-forest capability of ActiveRoles Server by synchronizing the provisioning between a User Account Forest and the Exchange Resource Forest. Additionally, we provide a single point of management combining user properties from both the Resource Forest and the User Forest.


Getting started








Related Solutions
ActiveRoles Server helps you address your Identity Management and Compliance challenges.

Learn More

ActiveRoles Server - Product Datasheet

Quick Connect - Product Datasheet

Exchange Resource Forest Manager - Product Datasheet


Webcasts
User Provisioning - Gaining the Most Bang for the IT Buck Webcast - View this recorded version at your liesure

White Paper
Understanding the Risks, Benefits and Value of a Provisioning System

What's New

What's New in ActiveRoles Server 6.0

What's New in ActiveRoles Quick Connect 3.1


Case Studies
View All Customer Case Studies for ActiveRoles Server

Download A Trial
Download a Trial of ActiveRoles Server!

Add-On Applications

ActiveRoles Quick Connect - integration to HR/ERP application or Microsoft Identity Integration Server (MIIS)

ActiveRoles Exchange Resource Forest Manager - synchronizing the provisioning between a User Account Forest and the Exchange Resource Forest


Exchange 2007
For information about solutions for Exchange 2007, click here.

        © Quest Software, Inc. All rights