Avatier
Identity Management Server™
(AIMS™) Architecture
All of our solutions leverage the Avatier Identity Management
Server™ (AIMS™) framework for:
1. core services
like email, auditing, reporting, alerting, scheduling, task
automation, workflow, help desk ticketing, live updating
with rollback, and internationalization.
2. target platforms
like enterprise applications, directory services, network
operating systems, Unix, legacy systems, RSA, smart cards,
databases, and signal sign-on solutions.
3.
client access methods
like web, telephony, voice authentication, RSA,
command-line, software development kit, Microsoft Identity
Information Server (MIIS) or any other metadirectory.
AIM is the world's first and only 100%
internationalized web-service based Identity Management
framework and development platform. AIMS™ unique design
allows our solution to be deployed faster and provide higher
reliability than any solution on the market. AIMS™ is
backed by over a million users who are currently:
- saving money
- reducing threats
- meeting compliance
- simplifying
administration
- improving productivity
- gaining
interoperability
Supported Platforms
Click here to see a list
of supported platforms that ship our the solution.
Our solution is designed to support any platform in a matter
of days. The AIMS
Software Development Kit (SDK) is available to customers and
systems integrators who require integration with in-house
applications and systems.
Supported Languages
English
is the default language. Organizations may choose to
purchase the European Language Pack which supports French, Spanish, German. Optionally, Avatier also
sells a Far East Language Pack which includes Chinese
(simplified), Chinese (traditional), and Japanese. All
products automatically detect browser language settings and
convert to the desired language. Contact Avatier if
your organization requires support for languages additional
languages.
AIMS supports sending end user emails
and alerts in their native language.
Password Station supports Multilanguage identity enrollment.
Administrators have additional control to specify which language
should be used for the configuration web pages, help desk
ticketing, and even the audit log. All default English
templates have been converted to each of the other supported languages.
Finally, Avatier recognizes that some organizations may have
administrators spread out around the world, in this case, each
administrator has language specific emails and alerts.
Identity Management Design Differences
Avatier's solutions are
deployed faster and more reliable than other solutions for the
following reasons:
-
AIMS was NOT built on multi-generation
code standards that were stitched
together over the last 7-10 years. It was designed from the very beginning using
the latest managed code
technologies which prevents memory leaks, program crashes,
and facilitates Far East Internationalization.
-
AIMS does NOT require deploying and
managing over 100MB of IBM's WebSphere or Sun's J2EE or
Enterprise Java Beans. Instead our Chief
Architect choose all of best web service standards
found in these bloated development environments to
deliver our extremely efficient and secure 200K web
service components. Less code, less management,
equals faster deployment, easier to secure with a lower
cost of ownership.
- AIMS was designed to
be installed rapidly without requiring our customers to
learn a proprietary script language to integrate with
additional platforms. AIMS™ connects to other
platforms through native API calls or standard web
service components.
-
AIMS does
NOT
require running scheduled processes on a nightly basis that
attempt to build a massive cross-platform login ID inventory
database. This process and database is prone to errors
as accounts are renamed, requires a manual verification to
confirm critical IDS are not cross-linked with incorrect
less privileged IDs, and finally is constrained by time if
you are a 24x7 operation. However, for those
organizations that have a meta directory in place AIMS can
leverage that data to provide automatic login ID linking.
-
AIMS does
NOT
deploy any login ID link self-registering. End users
should not have to perform additional task for organizations
to reap all the benefits of an Identity Management solution.
- AIMS administrators
are responsible for identity mapping by simply editing a CSV
text file using Microsoft Excel. The AIMS server
automatically converts the CSV text file to Microsoft
Access. Optionally customers can specify Microsoft SQL
Server instead of Microsoft Access to be used as the login
ID linking repository. When login IDs match no
administration is required.
-
Avatier's Password
Station™ is the only solution on the market that honors
password history
WITHOUT
storing all current and all prior passwords in a
symmetrically encrypted database.
- AIMS limits database
use for auditing only allowing for greater availability and
the World's simplest and fastest Identity Management
deployment.
Standards and Protocols
-
Client Communications
Communication
from client browser to AIMS server is secured
through X.509 certificate server and HTTPS.
-
Server Communications
Communication
from AIMS server to any LDAP server is secured
through LDAP over SSL. While communication to Microsoft
Windows NT
is secured through CHAP (Challenge/Response).
-
Encrypted Answers
Answers to
employees’ private security questions are one-way hashed using
SHA1 and is saved to any LDAP server, Microsoft Windows NT SAM
or and Active Directory without extending the schema.
-
Secure LDAP Connections
Communication to LDAP directories is secured through LDAPS (LDAP
over SSL). Any LDAP port can be specified.
-
Secure
Web Service Communications
Communication to
Unix, Mini, or Mainframe systems is secured through SOAPS (SOAP
over SSL), an asymmetrical encryption key, optional shared key, and IP address
filtering.
-
Secure
Identity Answer Repository
Password
Station leverages any LDAP directory, Microsoft's Active Directory repository or
Microsoft's Windows
NT 4.0 SAM without expanding the schema to store employee
encrypted private identity answers. This
architecture virtually eliminates the need for a database of
login IDs.
| |
AIM Architecture
Foundation

Click above to view the world's most advanced Identity
Management design.
Multilingual
Support
Here are a few of
our most popular supported languages.
 |
|
English |
|
|
|
|
|
 |
|
French |
|
|
|
|
|
 |
|
German |
|
|
|
|
|
 |
|
Russian
(available Q1 2005) |
|
|
|
|
|
 |
|
Spanish
(European & S. American) |
|
|
|
|
|
 |
|
Japanese |
|
|
|
|
|
 |
|
Chinese
(Simplified & Traditional) |
|
|
|
|
|
AIMS Communications

|