Universal Computer Access Management System
Overview
UCAMS is a central application that provides an on-line, interactive process for the management of User Identifiers (UIDs), computer resources, and passwords associated with the UIDs. UCAMS uses a web interface operating in secure mode (SSL). Key components of UCAMS include:
- Central UCAMS Database/Web Servers
- Various Platform Agents
- WWW-Based User Interface
Applications
Clients and customers have the need to simplify and streamline computer account and password management processes. There is also a desire to implement a consistent strong password policy across all computer systems and databases. UCAMS is a central application that provides an on-line, interactive process for the management of User Identifiers (UIDs),computer resources, and passwords associated with the UIDs. With SAIC's UCAMS, companies can manage computer/database resources and passwords on multi-vendor systems across an enterprise. Additionally, UCAMS provides a defendable/auditable approach to managing computer resources and passwords.
Due to the electronic generation and performance of requests and approvals, UCAMS has reduced the minimum turnaround time for creation of new accounts from several days to several minutes.
Features
UCAMS offers a variety of features and functions including:
- Account Management: provides capability of requesting, approving, creating, deleting, suspending, unsuspending, and auditing computer resources across the enterprise.
- Approval Process: provides a two-phase approval process for all resource requests, the first phase being an organizational (line management) approval and the second phase being a resource (by owner of system/database/application) approval.
- Human Resource System Interface: provides an interface module that accepts data from the HR system to automatically create or suspend users in the UCAMS database.
- Password Management: provides capability of securely distributing and synchronizing user passwords across all systems and databases in the enterprise. Includes support for automatic annual (or whatever period is desired) expiration/renewal of passwords.
- Random Generated Passwords: all UCAMS passwords are randomly generated by an algorithm designed to meet government requirements (DOE).
- Resource+Function Definition: provides capability to define user friendly names for company computing resources (systems, databases, applications, etc.) and the various user roles within these resources.
- Transaction Based: all communications between the central UCAMS system and the target agents occur in real-time over a TCP/IP socket connection.
- Auditing: provides capability to audit target machines and verify system/database account information against data stored in the UCAMS database.
- Reporting: provides capability of generating reports (spreadsheets, etc.) of things such as (a) who has accounts on what resources, (b) people that are suspended, (c) requests that are pending approval, etc.
Benefits
UCAMS offers a single centralized application to manage computer and database resources (accounts) and passwords across an enterprise!- Provides strong passwords that are more secure (harder to crack) and a consistent approach for their handling and distribution.
- Provides Defendable/Auditable password management process.
- Remote access to UCAMS via the Internet via secure Web (SSL)
- Savings: Reduction in labor time spent managing various computer and account management processes.
