Integration with web access control platforms

Organizations use web access control platforms to consolidate their security systems, which provide a portal that regulates user access to web sites. This section provides an overview of IBM® EMM integration with web access control platforms.

Authentication

When users access an application through a web access control portal, their authentication is managed through the web access control system. Web access control users who are also members of an LDAP group that is synchronized with IBM EMM are authenticated to all IBM EMM applications when they log in to the web access control system. These users do not see the IBM EMM application login screens.

Authorization

IBM EMM applications query Marketing Platform for user authorization information. Marketing Platform imports groups and their users from the LDAP database through a periodic synchronization task that automatically retrieves information from the LDAP server. When Marketing Platform imports users and groups from the LDAP database, group memberships are maintained. These LDAP users are also exposed to the web access control system, so the web access control system and IBM EMM are referencing a consistent set of users.

Additional authorization controls, including control over the application URLs to which users have access, are also available through most web access control systems.

Web access control integration diagrams

The following figure illustrates how IBM EMM works with SiteMinder and an LDAP directory server to authenticate and authorize users.



The following figure illustrates how IBM EMM works with IBM Security Access Manager and an LDAP directory server to authenticate and authorize users.