Page Properties | ||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| ||||||||||||||||
|
...
Excerpt | ||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
iShare In The Cloud is a cost effective, fully managed service provided by Astun Technology on behalf of our customers.
When deploying to the cloud, connectivity back to your Network estate needs to be considered especially with regards to the security requirements and also the user management and authorisation methods. Network ConnectivityiShare In the Cloud is deployed in your own Virtual Private Cloud ensuring that each Astun customer has their own isolated section of of the Astun Cloud Services. Subnets can then be created within these to allow a public facing environment to have web connectivity whilst having your internal data and applications kept within a private sub net which is connected to the On-Premise customer network estate. Different Network Connectivity options are as follows:
|
...
Type | Description | Pros | Cons | |||||
---|---|---|---|---|---|---|---|---|
Azure AD SSO | With Azure AD SSO (Single Sign On) you can login to iShare using the same user account as your Azure Active Directory. |
|
| |||||
Active Directory Federated Services (ADFS) | iShare In The Cloud can be fully integrated within a corporate Microsoft Active Directory domain via ADFS (the same method that Microsoft use with Office 365) ensuring internal security compliance. Therefore iShare In The cloud securely connected to the corporate network via a VPN (if required) via the most viable network location end point ensuring that remote workers have maximum bandwidth when securely connected to the network estate. |
|
| |||||
Manually created users | Manual creation and management of local users is performed using standard Windows Server tools which combined with Windows Groups allows for fine grained security controls, similar to Enterprise Domain configurations. This is ideal, and has been implemented for scenarios where:
|
|
| |||||
Third Party software Management solutions | Normally combined with either Virtual Private Network or Restrict Access by IP address connectivity options. Two options are:
|
|
| |||||
Anonymous access | Anonymous access has no Authorization of individual users. Some functionality of iShare GIS wouldn't be available including Annotations and Feature Editing.
|
|
|
...