Identity
|
| Access Control |
- Support for OAuth, OpenID Connect, SAML, X.509 certificates, LDAP etc.
- Support for HTTP basic, digest, SSL client-side certificate authorization etc.
|
| Identity Integration |
- Integration with enterprise identity, access, SSO and federation systems including LDAP, Microsoft Active Directory/Federated Services, Oracle Access Manager, IBM Tivoli (TAM and TFIM), CA SiteMinder and SOA Security Manager, RSA ClearTrust, Sun Java Access Manager and Novell Access Manager
- Mapping between Web Access Tokens and mobile token exchange mechanisms
- SAML to OAuth enablement
|
Mobile Application Firewalling & Data Security
|
| Threat Protection |
- Validate HTTP parameters, REST query/POST parameters, JSON data structures, XML schemas etc.
- Protect against cross-site scripting (XSS), SQL injection and DoS attacks
- Track failed authentications and/or policy violations to identify patterns and potential threats
|
| Data Streaming Proxy |
- Proxy mobile streaming protocols like WebSockets and XMPP
|
| Privacy & Digital Certificates |
- On-board PKI and cert management with optional HSM
- Fast elliptic curve cryptography (conforms to NSA's Suite B algorithms)
- FIPS 140-2 support in both hardware and software
|
Adaptation & Orchestration
|
| API Orchestration |
- Compose and orchestrate REST and OData APIs from any legacy backend API
|
| SLA Controls |
- Control API usage: throttle to ensure backend services are not overwhelmed; limit by user, time of day, location etc.; quota manage (e.g. number of uses/user per day)
|
| JSON Conversion |
- Map enterprise data sources to JSON (e.g. EDI standard formats, flat files, Oracle, IBM DB2, Microsoft SQL Server)
|
Optimization
|
| Compression |
- Dynamic message compression
- JSON conversion
|
| Message Caching |
- Cache responses to common API requests, decreasing backend service load
- Pre-fetch hypermedia API content
|
| Request Aggregation |
- Aggregate responses to mobile devices to save on-device processing and latency
|
Integration
|
| Cloud Services SSO |
- Enable and manage Single Sign-On (SSO) from enterprise identities to cloud services, such as Salesforce.com
|
| |
| Social Networks |
- Proxy and manage mobile application access to social networks and services including Facebook, Twitter, LinkedIn and many more
- Detect and filter for sensitive or confidential content with subsequent scrubbing, rejection or redaction of messages
|
| Notification Services |
- Send messages across multiple mobile platforms (iOS, Android, Windows Mobile)
|
| Databases |
- Connect to, query and retrieve results from a wide variety of external databases including MySQL, IBM DB2, Microsoft SQL Server and Oracle Database, via a range of methods, including JDBC
|