SitefinderOracle and Sun
Secure Search

SUN AND LAYER 7

Feature Story

By Kat Rollin

July 22, 2008 — As SOA moves from pilot to production, the need for robust security and governance becomes ever more crucial. Composite applications require unprecedented levels of interaction between applications and humans. How do you define and orchestrate these interactions without coding? How do you enforce corporate and regulatory compliance policies across distributed application services? How do you protect your services from malicious attack or accidental damage? How do you enforce privacy policies like PCI, HL7, or ACORD? Identity-driven SOA governance solutions from Sun and Layer 7 Technologies do just that without compromising performance, scalability, or manageability. Sun and Layer 7 working together provide a complete end-to-end solution for simplifying the provisioning and management of an SOA.

Sun and Layer 7: Flexible, Identity-Driven SOA & Governance

Sun Java Composite Application Platform Suite (Java CAPS) contains everything you need to develop, integrate, and compose an SOA. This unified and comprehensive suite can help you create composite applications from existing applications, integrate services using advanced ESB functionality, as well as compose new business services without the need for coding.

Sun Java Identity Management Suite (Directory Server and Access Manager) provides the foundation for centrally managing authentication and authorization to service based resources based on identity credentials. The software allows end-users to centrally and consistently manage access policies across their Web and Web services using a single infrastructure.

Layer 7 SecureSpan SOA Appliance
Layer 7's SecureSpan SOA appliance provides end-users a scalable way to secure and manage production SOAs without coding. Using Layer 7's hardware accelerated and clusterable SOA appliances, end-users can centrally configure and enforce operational SOA controls like service access, credentialing, privacy, integrity, virtualization, throughput, validation, transformation, routing, metering, monitoring, and availability among other policies without introducing latency or complexity.

Sun Fire X4100 Server
To assure optimal availability and performance across all policy operations, Layer 7 embeds its policy management software and XML accelerator hardware inside the Sun Fire X4100 server running the AMD Opteron processor and Sun's Crypto Accelerator 6000 PCIe Card. The combination of Layer 7 software and Sun hardware provides SOA end-users maximum flexibility without compromising performance or scalability.


Java CAPS helps you evolve your application infrastructure to an SOA. Adding Layer 7 SOA appliances enables the layering-on of security and governance controls to the SOA without affecting performance or flexibility.
— Dimitri Sirota, VP Marketing and Alliances at Layer 7 Technologies

Key Sun / Layer 7 Capabilities

Rapidly Implement SOA rapidly expose legacy applications and generate new service assets.
Agile Integration connect distributed services through flexible ESB technology.
Compose SOA simplify the orchestration of service assets into business processes.
SOA Security enforce WS* and WS-I compliant service-level security including access management, message privacy, data integrity, XML threat mitigation, content filtering, and redaction.
SOA Governance control how and when services are accessed by other services.
UDDI Ready out-of-the-box integration with leading registry / repositories.
Application Oriented Networking perform advanced content-based routing and transformation operations in multi-step business processes or composite applications.
Service virtualization provide the ability to expose only a subset of the capabilities of a service, enabling higher security and insulating service consumers from changes to services. Interface remapping and virtualization based on requester identities.
Centralized SLA enforcement enforce routing and throughout policies based on requestor identity, requester class of service, message parameter, service availability, or service performance.
Advanced Identity Based Controls manage fine grained authorization across heterogeneous service based applications, transform and normalize credentials across systems, interface to disparate identity stores, consume, generate and process SAML tokens for advanced identity operation.
Transport and protocol mediation between HTTP, HTTPS, MQS, JMS, FTP.




Formerly a systems engineer for Sun, Kat Rollin now reports on partner solutions for sun.com and develops technical marketing communications for the technology industry.

 
 

Oracle is reviewing the Sun product roadmap and will provide guidance to customers in accordance with Oracle's standard product communication policies. Any resulting features and timing of release of such features as determined by Oracle's review of roadmaps, are at the sole discretion of Oracle. All product roadmap information, whether communicated by Sun Microsystems or by Oracle, does not represent a commitment to deliver any material, code, or functionality, and should not be relied upon in making purchasing decisions. It is intended for information purposes only, and may not be incorporated into any contract.



Oracle - The Information Company