Organizations pursuing digital transformation are placing increasing strain on identity management and access control, requiring stronger processes for collecting, managing, and ultimately deleting identity data so that the right people have the right access at the right time. Access management has expanded beyond employees and on‑premises resources managed through Active Directory groups to include contractors, partners, and multiple customer classes accessing cloud-based applications. Key drivers include deeper partner interconnection requiring federated authentication and shared trust; differentiated assurance levels requiring adaptive MFA without burdening low-assurance users; pressure to move beyond passwords toward token-based and SSO-driven approaches; hybrid environments spanning on‑premises and multiple clouds demanding unified policy; microservices and API-centric architectures that increase agility; stronger mobile information protection; and expectations that AI will improve security through behavioral analytics and anomaly detection.
Micro Focus Access Manager (from the NetIQ/Novell lineage acquired in 2014) is positioned as part of a “loosely coupled, tightly integrated” IAM suite covering provisioning, access, analytics, and governance. The solution comprises an Access Gateway (SSO, authorization, policy enforcement), an Identity Server (multi-store identity, certificates, RADIUS, SAML, OTP, RBAC), an Administrative Console (policy configuration, delegated admin, monitoring), and an Analytics Server (usage and performance dashboards). Enhancements include expanded MFA, improved secure APIs, a rules-based risk engine, and planned behavioral analytics strengthened by the Interset acquisition.
Access Manager supports broad authentication standards and token methods, integrates with major cloud platforms (notably AWS and Azure, with partner implementations for Google and IBM), and supports containers and automated release processes. It enables context-aware controls (geo-fencing, device identification, time-of-day), federation and federated provisioning, social and developer connectors, mobile SDKs with QR-based device enrollment, and an API gateway for traffic management and IoT integration. Licensing is user-based; some methods are included, while biometrics and push require Advanced Authentication. Strengths emphasize enterprise scale and hybrid-cloud depth; challenges include suite complexity and CIAM pricing sensitivity.
See All Locations
See All Locations