USE CASE

F5 and AWS: Increase Security with Single Sign-on

INCLUDED IN THIS USE CASE

BIG-IP

BIG-IP Virtual Editions

BIG-IP Access Policy Manager

BEST FOR

Security Operations

The Challenge

A big part of security operations is protecting access to your apps and the data within them. Unauthorized app access was the #1 security incident for the top five industries in 20141. Your users also expect seamless access to any resource from any user location on any device. One way to balance security and convenience is to simplify the login process. After all, login fatigue is a common reason for weak credentials and passwords, leading to compromised security. But what about applications that rely on multiple authentication systems—one for on-premises apps, another for cloud-based apps, and yet another for SaaS apps?

The Solution

BIG-IP Access Policy Manager (APM) enables single sign-on (SSO) for your apps, whether they’re in the public cloud, with SaaS providers, or across multiple private data centers. Additionally, APM is designed to act as a seamless extension of most web applications, so no extra access steps are required from your end users.

You get the agility, reduced costs, and workforce productivity that come from having your applications located in any environment, or mix of environments, you choose. Meanwhile, APM authentication services simplify and centralize access, preventing data breaches.

CASE STUDY

BIG-IP APM was able to carry out terminal quarantining without using the client certificates. It was also able to issue one-time passwords and is equipped with the SSL VPN function. This allows us to ensure terminal security without increasing operational load.

Benefits of F5 BIG-IP Access Policy Manager

  • Reduces cost by consolidating access and authentication infrastructure
  • Streamlines administration through centralized access control of all applications across datacenters and cloud-based apps
  • Simplifies creation and updates of context-aware access policies with a user-friendly GUI
  • Integrates with most common Multi-Factor Authentication solutions

Flexible Licensing Models

Pay as you go gives you more flexibility and helps you reduce your overall consumption requirements without sacrificing performance or acceleration.

Annual subscriptions or Bring-Your-Own-License (BYOL) are more predictable and cost-effective options for workloads with steady-state traffic.

Volume Licensing Subscriptions (VLS) provide a cost-efficient way to purchase licenses in 1- or 3-year subscriptions.

Visit the Amazon Marketplace for a Free Trial

1 IBM 2015 Cyber Security Intelligence Index, July 2015