Single sign-on
Symantec Siteminder
An authentication solution that centrally manages access to web applications within the enterprise.

Centralized enterprise web authentication
SiteMinder is an authentication solution that centrally manages access to
web applications and services within your enterprise. It systematically
manages users' logins and permissions to increase security while
improving ease of use.
It also supports international standard authentication protocols such as
SAML, OAuth, and OpenID Connect, making it easy to integrate with a
wide range of systems. It works reliably even in large enterprise
environments and provides the flexibility to scale from cloud to on-
premises environments.
Features
Unified auth &
access
-
Single sign-on
management
- Centrally manage user authentication with support for multiple authentication methods.
-
Policy-based access
control
- Policy servers provide fine-grained control over resource access, enforcing policy-based authorisation based on user, access time, location, risk level, and more.
-
Centralised
management
- It provides centralised, unified management of users, groups, roles, and policies, with user self-service capabilities. It also separates user roles to enable efficient and secure privilege management.
-
Support for standard
protocols
- Supports multiple authentication and authorisation standards, including SAML, OAuth, OpenID Connect, and more.
-
Manage sessions

- Manage sessions efficiently by setting session timeouts, session duration, and more.
-
Auditing and reporting

- It stores audit records in a file or RDBMS, supports event-based audit settings, and provides standardised compliance reports.
Architecture
Key features
-
01
Policy Server
- Define and enforce user authentication and authorisation policies.
-
02
Web agents
- Installed on a web server, it forwards user requests to the policy server
and performs authentication and authorisation according to policy.
- Installed on a web server, it forwards user requests to the policy server
-
03
Resource Server
- Host protected web applications and services.
-
04
Federation
- Implement single sign-on by establishing trust relationships between different domains.
-
05
Manage sessions
- Manage sessions efficiently by setting session timeouts, session duration, and more.
-
06
Extend security features
- Integration with Arcot WebFort solution extends strong user authentication (OTP, MFA)
- Integration with Arcot RiskFort solution extends risk-based access control (anomaly,
policy-based, etc.)




