Hitachi ID Systems, Inc.

Hitachi

Documentation Frequently Asked Questions FAQ for Prospective Customers

Headlines

Hitachi, Ltd. acquires M-Tech Information Technology, Inc. ... More»

Frequently Asked Questions for Prospective Customers


Who is Hitachi ID?

Hitachi ID Systems, Inc., formerly M-Tech Information Technology, Inc. , is a leading publisher of identity management solutions. Hitachi ID products help our customers to strengthen network security, lower operating costs and enhance user productivity. Customers achieve these results by implementing automation and self-service processes to more effectively manage passwords and other authentication factors, to provision and deactivate users and to manage user privileges on networked systems. Hitachi ID products have been deployed at over 700 organizations world-wide.

Originally founded in 1992 as M-Tech Information Technology, Inc. and acquired by Hitachi, Ltd. in 2008, Hitachi ID Systems, Inc. is a leading provider of identity management solutions.

Hitachi ID's first identity management product, P-Synch®, has been commercially available since 1995. Today, Hitachi ID is the leading password management vendor world-wide and a leading provider of identity management solutions.

Hitachi ID currently has 140 employees. Hitachi ID has enjoyed strong financial performance, with 64 consecutive quarters of growth and profitability.

Hitachi ID is headquartered in Calgary, Canada and has regional offices in: Canada: Vancouver, Ottawa, Montreal, Toronto; United States: Denver, Dallas, New York, Philadelphia; United Kingdom: London; Australia: Brisbane


What is P-Synch?

P-Synch is the industry's leading password management solution. P-Synch helps organizations manage passwords and other forms of authentication more effectively to reduce IT support costs, increase productivity and enhance corporate security. P-Synch features include password synchronization, self-service reset, token management, biometric enrollment, certificate management and more.

P-Synch reduces the cost of password management using:

P-Synch strengthens security by providing:

To find out more about P-Synch, visit http://P-Synch.com.


What does ID-Synch® do, and how does it relate to P-Synch?

ID-Synch is a separate product built on the same infrastructure as P-Synch. Where P-Synch manages passwords, ID-Synch creates, deletes and manipulates user accounts.

ID-Synch is a complete user provisioning solution that automates and simplifies the routine tasks of managing users across multiple systems. Enterprise-scale organizations depend on ID-Synch to ensure that their employees and contractors are securely and efficiently connected to vital systems and information.

ID-Synch implements the following business processes to drive updates to users and entitlements on managed systems:

ID-Synch reduces the cost of user provisioning using:

ID-Synch strengthens security by:


How does P-Synch reduce help desk costs?

P-Synch realizes cost savings and enhanced productivity for both users and the IT help desk:


How does P-Synch improve user service?

P-Synch improves user service by simplifying password management:


How does P-Synch improve security?

P-Synch improves the security of authentication processes:


How does P-Synch compare to single sign-on?

P-Synch is not a single sign-on system. Rather, it manages the reduces the number of passwords that users must remember, but does not eliminate the need for users to type their own passwords.

Password management, rather than single signon, may be attractive, because of some problems with enterprise single signon software:

(1) Previous approaches to enterprise single sign-on systems had problems, all related to the password database where user IDs and passwords are kept:

It should be noted that Web single sign-on software (WebSSO) are less ambitious than enterprise SSO, but have none of its drawbacks. When users first access an Intranet page, they are diverted to an authentication page. Thereafter, whenever they access another page, their browser sends an encrypted authentication cookie to the web server, which validates it and does not prompt for a second login screen.

With WebSSO, there is no client software, no credential database and no costly password reset processes.

P-Synch can synchronize passwords across both legacy systems (network operating systems, applications, mainframes, etc.) and WebSSO systems, which typically authenticate users with an LDAP directory and password.


Is there an ROI model for P-Synch deployments?

There is a detailed ROI (return on investment) model for Hitachi ID's identity management solutions at:

http://P-Synch.com/roi/

ROI (return on investment) from P-Synch is principally due to improved user productivity (fewer password problems) and reduced help desk support load.


How does P-Synch compare to products from other vendors?

P-Synch is key element in an organization's identity management infrastructure. Other components may include user provisioning automation, such as ID-Synch, directories, meta directories, web single sign-on (WSSO) and web access management (WAM) products.

P-Synch may be compared to other identity management products as follows:


What platforms does P-Synch support?

(3)
Directories

File/print

Mainframes
LDAP (any), Active Directory, Windows NT domains, Novell eDirectory, Novell NDS, Unix NIS and NIS+, Kerberos/DCE (any)

Windows NT/2000/2003, Novell NetWare, OS2 LanManager, Samba

MVS / OS/390 / zOS, RACF, CA-ACF2, CA-TopSecret, VM/ESA, Siemens BS2000, Tandem NonStop, Unisys MCP

Unix

Midrange

Database
AIX, DGUX, Digital Unix, HPUX, IRIX, Linux, NCR, OSF4, SCO OS, Solaris, SunOS, Tru64, UnixWare, Unisys, passwd, shadow, Trusted Computing Base

HP MPE, OS/400/iSeries, OpenVMS

DB2/UDB, Informix, MSSQL, ODBC, Oracle, Sybase

ERP

Messaging

WebSSO
SAP R/3 4.0+, PeopleSoft 7.5+, Oracle Applications 11i+, JDE OneWorld

MS Exchange 5.5, MS Exchange 2000/03/07, Novell GroupWise, Lotus Domino/HTTP, Lotus Notes/ID files, HP OpenMail

RSA ClearTrust, Entrust getAccess, Netegrity SiteMinder, Oracle COREid, SAP portal

Flexible agents

Hardware tokens and Smartcards

Miscellaneous
API (application programming interface) integration, LDAP attributes, MQ Series, SQL commands, Telnet/TN3270/TN5250 sessions, Unix/Windows cmd-line integration, web forms, web services (SOAP, XML)

RSA SecurID, Secure Computing SafeWord, Vasco Digipass, GemPlus, Precise Biometrics

RADIUS (various), Local and cached Windows passwords. Peregrine ServiceCenter, Remedy ARS, Clarify eFrontOffice, NAI Magic, Tivoli ADSM, IBM OLAP, IBM Tivoli Access Manager Connected Backup

 


How is P-Synch licensed?

P-Synch pricing is based on the number of users (people, not login accounts). This includes all features and support for all target systems. A one-time purchase grants customers the perpetual right to use P-Synch.

Customers are encouraged to, over time, extend their deployment of P-Synch to manage new target systems and to activate new features, at no additional charge.

Customers may run as many P-Synch servers as required, to provide high availability, redundancy and a test/QA environment, at no additional charge.


How long does it take to deploy P-Synch?

P-Synch deployment typically requires from 5 to 15 days of work.

Initial P-Synch activation normally includes all features, platforms, access channels and users. Once the software is active, user enrollment may be required. Global user enrollment is an ongoing process, especially as new staff are hired. In most cases, 80% or more of users can be asked to enroll and can be expected to complete registration, within 1-2 months of deployment.


How much work is needed to manage P-Synch in production?

P-Synch does not require active ongoing administration of user profiles and system functionality. Users are automatically detected on managed systems, enrolled and prompted to register if additional information is required.

A P-Synch administrator is required to monitor the servers, promote consistent password management to application owners, answer questions from the user community and perform periodic software upgrades.

These responsibilities typically amount to approximately 1/4 FTE.