U.S. +1 (312) 214 3570  |  E.U +34 (91) 320-5524

Symlabs Federated Identity Suite :: Frequently Asked Questions

Download this FAQ as a PDF file.

What is a federation and how is it different to Single Sign-On (SSO)?

Single sign-on (SSO) is a method of access control that enables a user to authenticate once and gain access to the resources of multiple software systems. It is typically constrained to Enterprise boundaries (Enterprise SSO) so that identity space is a restricted to a single organization.

Federation seeks to expand the traditional boundaries applied to SSO so that it applies to systems outside of the Enterprise boundary. Federations are usually created with an adherence to various predefined standards that ensure that SSO is carried out in a secure and standard manner. Many of these standards have developed to provide additional functionality centered around the secure exchange of identity information beyond SSO. Please have a look at our Understanding Symlabs Federated Identity Suite tutorial for more information.

What does Symlabs Federated Identity Suite do?

Symlabs Federated Identity Suite can help you create "identity federations" with your partners with ease. This will allow you and your partners to provide users with access to valuable information quickly and with minimal frustration, taking advantage of the built-in SSO facility. The product facilitates everything required to quickly set up an Identity Provider (IdP) and configure systems within a Service Provider (SP) role. Additionally, the product includes the components to integrate easily with other standards-based federation enabled applications. Finally, Symlabs Federated Identity Suite can be used to take advantage of the Web Services Framework defined by Liberty Alliance.

There can be little doubt that this is the most powerful product on the market. It is by far the fastest, providing better throughput and operations per second than any competitive application. It is also extremely flexible and can be easily adapted to suit any complex environment. It is also the most reliable product on offer, capable of the 99.999% uptime required by Symlabs' carrier/telco and large enterprise clients.

What are some of the other benefits and features?

Symlabs Federated Identity Suite is discussed in some detail on the overview pages on the website, but to summarize its main features:

  • Multiprotocol support: SAML 2.0, WS-Federation, ID-WSF, ID-FF 1.2. Protocol translation.
  • Connectors with usual authentication tools:
    • Active Directory
    • LDAP Servers
    • Relational Databases
    • CA SiteMinder
    • Sun Access Manager
    • Microsoft Active Directory Federation Services
    • Oracle Access Manager
  • Connectors with typical web service providers:
    • Microsoft Sharepoint portals
    • Google Apps.
    • Apache Module.
    • PHP SP toolkit.
    • ASP.NET SP toolkit
    • Java SP toolkit.
  • Support for a variety of mainstream programming languages:
    • C, C++ and C#
    • Perl
    • Python
    • Java

Can you help to install and configure Symlabs Federated Identity Suite?

Symlabs can handle everything for you "start to finish". We understand that our clients are busy... so we make their lives easy by installing, configuring, optimizing and testing within their environment if requested. Remote and on site help is provided.

What about long-term support?

Symlabs is known for excellent customer service. We have many levels of support available (Bronze, Silver, Gold, Platinum) and can customize a support solution tailored to meet your needs.

Symlabs products, including the Symlabs Federated Identity Suite, are currently used by many leading telcos and carrier services, not to mention many other large enterprise organizations. Our products and services are here to stay, and you should have no concern about long-term support for them.

How often do you offer new releases?

We usually ship new versions with major upgrades every 6 months as a maximum. But we usually ship a new version when a new addition is done to the product in an interoperability or certification event. Our goal is to be First in the Market.

Can I try the Symlabs Federated Identity Suite before buying it?

Yes. You can download Symlabs Federated Identity Suite from the website and request an evaluation license from evalkey@symlabs.com

Which platforms can I use to try it?

You can download the product for Windows (2003 Server or XP Professional recommended), Linux, Solaris SPARC and Solaris x86 (8, 9 and 10)

Ok, I like Symlabs Federated Identity Suite. How much does the solution cost?

Please email jeff@symlabs.com for pricing information as the price can vary based on your requirements.

What is the Symlabs Federated Identity Suite?

It's a suite of software components that enable our clients to develop a Federated Single Sign On (SSO) environment. TOP

What software components make up the Symlabs Federated Identity Suite?

  1. Identity Provider (IdP)

  2. Service Provider (SP)

  3. Client Kit

TOP

Do I need to purchase the entire Symlabs Federated Identity Suite or can I purchase the components individually?

Each of our components (IdP, SP and the Client Kit) can be purchased individually. TOP

What is the Pricing Model for the Symlabs Federated Identity Suite and the individual components?

Software Licensing is done on a PER CPU basis.TOP

Am I able to obtain an evaluation copy of the Symlabs Federated Identity Suite?

Yes. We offer an unlimited software license at no cost for 45 days. Be sure to ask about our "Try Before You Buy" program. TOP

What services do you provide to support the Symlabs Federated Suite?

We offer the following services:

  • Annual Support

  • Professional Services

  • Training

TOP

What kind of Annual Support do you offer? How is it priced?

We offer Bronze, Silver, Gold and Platinum levels of support. Support is priced as a % of the software license list price. TOP

What types of Professional Services do you offer to support the Symlabs Federated Identity Suite?

Our Professional Services staff can install, configure, optimize and test our software on your behalf. TOP

Do you offer Training for the Symlabs Federated Identity Suite?

We offer both classroom and onsite training to our clients. Our training can be either "manual-based" or "hands-on" depending on our clients needs.

TOP

Do you have integration partners that resell and deploy your software?

Yes. We work with integration partners all over the world that we have trained to become fully knowledgeable regarding our products and servcies. Please contact Jeffrey Zukowski (jeff@symlabs.com or 310-663-2407) for more information regarding the possibility and benefits of becoming a Symlabs integration partner.

TOP

How is the Symlabs Federated Identity Suite implemented?

SFIS is implemented in our own scripting language, called Directory Script. The flexible scripting approach allows our products to be easily modified to meet the complex needs of our client's requirements. The scripts run on top of a high-performance engine also built by Symlabs, named dsproxy. This engine was developed in C, with performance and stability as the primary goals. TOP

How is the Symlabs Federated Identity Suite administered?

Our products can be operated from comand-line, with the start scripts we provide. The configuration is stored in plain text files and can be edited directly. In addition, we also supply a web-based administration console. TOP

How is audit handled in the Symlabs Identity Provider (IdP)?

The logging output of the Identity Provider has different levels of audit which are configurable by the administrator. The logs are text files that can be parsed to allow any kind of audit processing, as well as alarm generation. TOP

Does the Symlabs Identity Provider (IdP) generate unique identifiers for the users?

Our Identity Provider supports many different name identifier formats, including SAML2's persistent and transient. It is also able to generate new identifiers based on the parameters of the Authentication Request sent by the Service Providers.

  • How is user session handled in Symlabs Identity Provider (IdP)?*

Our Identity Provider has two configurable timeouts: A soft one that when expired will request users to reauthenticate during SSO, and a hard one that allows the Identity Provider to process Single Logouts until expired. Any of these two can be turned off by configuration.

TOP

Does the Symlabs Identity Provider (IdP) require a Symlabs Service Provider (SP) to communicate with or does it integrate with any SAML 2.0 compliant product?

Our products can work with any other SAML2.0 compliant application. We have an extensive interoperating experience after participating in many IOPs and Conformance events. Besides SAML2, we also support many other SSO/Federation protocols such as Liberty ID-FF1.2 and WS-Federation. TOP

How can the Client Kit be used and what features does it provide?

The

TOP

About Symlabs
 
Symlabs is the performance leader for virtual directory and identity management solutions.   Benchmarks show Symlabs Virtual Directory Server, LDAP Proxy and Federated Identity Suite are the fastest and most powerful products in the industry for managing and unifying identity data.   Global giants like Sony, IBM, Vodafone, Nokia and United Nations already depend on Symlabs to add flexibility, security, and reliability to their infrastructure.  Symlabs also offers annual support, training and professional services to our clients to help them develop, integrate, and maintain solutions.