|
Reduce
Costs and Ensure Compliance by Automating all Aspects of
User Provisioning
CROSS-PLATFORM
ROLE-BASED USER PROVISIONING
Real-time Support for Multiple Existing Sources of User Identity
Avatier Account Creator's virtual directory capabilities
connects in real-time to allow administrators to browse,
search, export or report on multiple,
existing sources of user identities without requiring user data
centralization, synchronization, or migration.
Avatier Account Creator can also leverage single authoritative
user data sources like Microsoft Identity Integration Server
(MIIS).

Federated Role-based User Provisioning (RBAC Model)
Organizations can easily create delegated role-based user
provisioning templates
by using real-time advance searches
for user objects
that already exist across your directory, database, legacy, and
application infrastructure based on any combination of LDAP
directory fields.
Enforces Advanced User Provisioning Naming Conventions
Only Avatier Account Creator is flexible enough to allow
administrators to set granular naming rules based on end user's
first, middle, and last names. It even controls case
sensitivity at the character level. Additionally, it
supports dynamic rules for when a duplicate account names are
discovered during the user provisioning process. Avatier
Account Creator has built-in unique auto naming rules across all
systems for the following user properties:
-
User Account
-
Full Name
-
Home Directory
-
SMTP Address
-
Microsoft Pre-Windows 2000
-
Microsoft Exchange Alias
-
Microsoft Exchange Display Name
-
Microsoft Home Share
-
Microsoft Terminal Services
Home Directory
-
Citrix Home Directory
Dynamic
or Scheduled Compliance and Security Auditing Reports
At a moments notice, security auditors can run a real-time audit
report and export data based on the following criteria:
-
Between start and end dates
-
Delegated
or self-service user account name
-
Target system user account name
-
Source IP address
-
By product name
-
Over 100 specific success and failure actions
Additionally, a real-time
report can be run against
existing source of user identities as well as
any field in a LDAP directory
and exported to a .CSV file for quick seamless integration
with Microsoft Excel.
Avatier Account Terminator
supports a real-time and scheduled cross-platform orphan
account discovery report. Centralized auditing and
scheduled transaction reports captures "who did what to
whom, and when" for every transaction and stores categorized
results to a central logging database. Reports can be
filtered and displayed in real-time through a web interface.
The auditing system can optionally write to Microsoft SQL,
and the reports can be exported to various standard formats.
These reports can be scheduled hourly, daily, weekly, or
monthly.
Prevent Directory Pollution
With Avatier Account Creator user property list like,
department, title, manager, city, address, and more are
pulled from existing populated data stored in your
organization's primary directory. Delegated
administrators cannot enter dirty data that is has not been
previously approved and populated.
Advanced Home Directory and Home Share Management
Avatier Account Creator user templates delivers unmatched
home directory management by allowing administrators to
control settings like:
-
Inherit permissions from parent directory
-
Assign end-user either full control or change access to
their home directory or Microsoft home share
-
Assign full control over
the end user's home directory or Microsoft home share to
specific users
-
Copy source user's
directory structure
-
Copy source user's files
-
Set a prefix and suffix on
Microsoft home shares
-
Hide a Microsoft home share
upon user provisioning
Advanced Microsoft Exchange 2003/2000 Mailbox Management
Avatier Account Creator user templates automates Microsoft
Exchange 2003/2000 Mailbox management by by allowing
administrators to control settings like the ones listed
below for various departments or physical locations:
-
Microsoft Exchange Site
-
Microsoft Exchange Server
-
Microsoft Exchange Mailbox
Store
-
Automatically hide and
unhide mailbox when user account is disabled or enabled
Guaranteed User
Provisioning
Ensures user accounts are provisioned even if the target
host is initially or momentarily unreachable by queuing and
retrying every transaction until complete or when the queue
time expires.
Retry Notification
System administrators and delegated administrators are
automatically emailed when a transaction is queued, when it
completes, or when the maximum queue time expires.
Parallel Platform
Processing
Requests are sent to all cross-platform target systems
concurrently to reduce the total time for completing user
provisioning.
Customizable ROI Reports
Generate executive management
ROI reports based on existing cost of provisioning a user
account, setting up home directory, and mailbox. Select date
range, monetary unit, and run the report in real time or at
scheduled intervals.
Integrates with Leading
Help Desk Ticketing Systems
Avatier Account Creator has the
ability to
automatically create, update, assign, and close tickets
within your existing help desk ticket system.
Built-In Support for Email Alerts
Avatier Account Creator can send alerts configured to warn
staff on the following events:
-
Account Created Success or
Failure
-
Home Directory Created
Success or Failure
-
Microsoft Home Share
Created Success or Failure
-
Mailbox Created Success or
Failure
Database Free User Repository Design
Why is not requiring a master user identity and property
database important?
-
More reliable to access the data source in
real-time than to access a consolidated user repository
that might be corrupt or not fully synchronized.
Real-time querying of user
accounts across systems guarantees that the provisioning
system has established good communication channels to
target systems prior to provisioning a user.
-
Less to manage by
avoiding scheduling nightly or hourly tasks to
synchronize your consolidated user repository.
-
Better scalability
is achieved by not needing to copy user objects from
several yellow page directories to make one master
repository of user objects.
-
Faster Rollout by
leveraging your existing investments more efficiently
than requiring an ongoing initialization and
synchronization process to be run before the system can
be deployed or utilized.
|