United States   Change   |   All Microsoft Sites

Home

Overview

Enable more secure, identity-based access to applications on-premises and in the cloud from virtually any location or virtually any device.


The benefits of deploying Microsoft technologies for Identity & Access Management can be best viewed through three core principles:

  • Help Protect Virtually Everywhere and Access Virtually Anywhere

    • Help protect corporate assets from misuse through user provisioning.

    • Provide more secure, appropriate access to corporate assets through strong authentication.

    • Deliver more secure, seamless user and partner access to on-premise and cloud services.

  • Integrate and Extend Security Across the Enterprise

    • Enable collaboration with partners using standards-based , interoperable identity sharing.

    • Maximizes existing investments in identity infrastructure through support for heterogeneous environments.

  • Simplify the Security Experience and Manage Compliance

    • Simplify user account management through delegated self-service capabilities in Microsoft Office and Windows.

    • Help reduce costs with centralized, automated identity and access management via SharePoint Server.

Learn More

Use the resources below to learn more about the Identity & Access Management solution.

White Papers

Microsoft and CA - ADFS Interop

This white paper reviews how solutions from CA (CA SiteMinder, CA FederationManager) and Microsoft Active Directory Federation Services (formerly Code Named "Geneva") provide this middleware software layer, while supporting standards based communication protocols that enable cross-technology access management and identity federation scenarios. Specific interoperability oriented uses cases are discussed in detail.

Microsoft Windows Identity Foundation (WIF) White Paper for Developers

Get started building claims-aware applications using Microsoft Windows Identity Foundation.

Windows Identity Foundation (WIF) An overview of changes between Beta 2 & Release Candidate

Highlights of the changes made between Beta 2, which was released during TechEd 2009 in May 2009, and Release Candidate, which was released in October 2009.

Geneva and Novell Access Manager

Learn about the need for standards-based identity federation, and the solutions that improved the interoperability for mixed technology directory environments.

Geneva and Sun Open SSO

Read how Sun and Microsoft are utilizing the SAML federation standard in both the Sun OpenSSO Enterprise federation solution and the forthcoming Microsoft "Geneva" Server federation solution.

Case Studies

Thomsen Reuters
Company to Save Months of Development Time with New Programming Framework

“Over the lifetime of each application, we expect to save an average of three months of development time with Windows Identity Foundation.”

Jason Shantz
Senior Software Developer, Thomson Reuters

Quest Software
Quest Software

“Without Windows Identity Foundation and Active Directory Federation Services, it would have been difficult to provide this level of customer data security.” 

Dmitry Sotniko
New Product Research Manager, Quest Software

Lake Washington School District (Video)
Lake Washington School District (Video)

Watch a video on how the Lake Washington School District benefits from Microsoft Forefront.

The Ministry of Defence
The Ministry of Defence

Self-Service Online HR to Save MOD Millions of Pounds Over 10 Years

National Rural Electric Cooperative Association
National Rural Electric Cooperative Association

Trade Association Enhances Security, Cuts Credential Management

Try It

Trial Software

Identity Lifecycle Manager

Beta Test the Next Version

Forefront Identity Manager 2010

Free for 120 days.

Download the trial now
Download the beta now

 

Evaluate the Current Product

Forefront Unified Access Gateway

 

Trial Software

Windows Server 2008 R2

Active Directory Rights Management Services


Free for 180 days.

 

Evaluate the Current Product

Windows Identity Foundation

Windows Identity Foundation helps .NET developers build claims-aware applications that externalize user authentication from the application, improving developer productivity, enhancing application security, and enabling interoperability.

Download the beta now

Active Directory Federation Services 2.0 and Windows CardSpace 2.0

Microsoft Active Directory Federation Services 2.0 helps IT professionals efficiently deploy and manage new applications by reducing custom implementation work, helping establish a consistent security model, and facilitating seamless collaboration between organizations with automated federation tools. Windows CardSpace 2.0 helps users navigate access decisions and helps developers build customer authentication experiences for users.

Download now
Download now

Deploy It

Build your identity and access-management deployment plan to unlock the value of solutions built with Microsoft Forefront Identity Manager 2010 and Microsoft Forefront Unified Access Gateway 2010 to enable more secure, identity-based access to applications on-premises and in the cloud.

Work with a Partner

Microsoft has partners available to help you move forward in planning a successful deployment and can provide support to your organization by:

  • Leading an architectural design session in order to tailor a deployment plan to meet the needs of your business.

  • Building a proof of concept or pilot to show Forefront solutions working to meet specific security requirements.

  • Helping you complete deployment to increase protection of your IT assets and intellectual property.

Find experienced partners ready to support your deployment efforts.

Identity and Access-Management Deployment Resources for IT Professionals

IT pros can access a wealth of resources on TechNet, including extensive Microsoft content and guidance created to support the deployment of Forefront solutions. Deployment resources for identity and access management are listed in the next section. You can find deployment resources for other Forefront products under Deployment Resources.


Identity Lifecycle Manager 2007 (ILM)


Forefront Identity Manager 2010 (FIM)


Active Directory Rights Management Services (AD RMS)


Intelligent Application Gateway 2007 (IAG)


Forefront Unified Access Gateway 2007 (UAG)