Today the web-frontend TOMCAT and the Identity Governance application has to be placed on the same server. Many customers see this as a security risk, since the IG application handles confidential data, that should not be transported on the same network segment as normal users are. This means that the web front-end has to be placed on a secure network. That poses a new security challenge. Web front-ends has a history of having many vulnerabilities, so companies would like to place them in a DMZ not on a secure network.

Split the web front-end from the IG application.

Be able to support many customers security policies.

Comments

  • Greetings Ken,
    This is something that we have been talking about for while. I do believe it is already on our backlog for the product.

  • Investigating for a future release.