Prime 101: Prime in Pictures
Originally Published: 2019-02-28
The overall RSA Prime solution architecture topology, across all Prime components and running against RSA Authentication Manager, is illustrated in the diagram below:
Under this Prime architecture configuration:
- Multiple, load balanced Prime Services servers co-host the AMIS, SSP, and HDAP components.
- The Internal Self-Service Portal instances are accessible only to end-users on the enterprise's internal network.
- The Help Desk Admin Portal is accessed by help desk personnel and token administrators (who also may have RSA AM Security Console access).
- The AMIS component provides REST web services that the Prime portals leverage to interface with the Authentication Manager servers. AMIS also provides ancillary services such as workflow, e-mail invitation and user notification services.
(Although not depicted above, the AMIS REST web services can be also be used by the enterprise to integrate its own in-house applications and systems with the RSA AM platform.)
- A set of multiple, load-balanced External Self-Service servers co-host externally accessible instances of Prime Self-Service as well as RSA AM Web-Tiers.
- The External Self-Service Portal instances can be configured with different authentication methods and to serve a more constrained set of self-service functions, based on the enterprise's security practices.
- The Web-Tier component is utilized strictly to support proxying of CT-KIP communications for secure, dynamic soft token provisioning.
As of January 2019, Prime also provides for integration with the RSA Cloud Authentication Service and management of RSA SecurID Authenticate mobile devices. This expanded RSA SecurID solution footprint and additional technical details are captured in the following diagram:
Related Articles
To display only one CA in the enrollment certificate request form. 11Number of Views RSA Announces the Release of RSA MFA Agent 9.0 for Microsoft IIS 33Number of Views Role commit fails for roles with membership rules in RSA Identity Governance & Lifecycle 100Number of Views install the enterprise co-ordinator hangs at end when communication with the data base has access to firewall ...sees the … 14Number of Views List of Trusted Certificate Authorities for HFED and Trusted Headers Applications 74Number of Views
Trending Articles
RSA Authentication Manager 8.7 SP2 Setup and Configuration Guide How to Download OTP Token Seed Files from myRSA RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide Module "SecurIDModule" could not be found message displayed in the web browser
Don't see what you're looking for?