ONE IDENTITY
ACTIVE ROLES

Hybrid Active Directory management, simple and secure

ONE IDENTITY ACTIVE ROLES

In today’s hybrid AD environments and with the limited capabilities of Microsoft Active Directory (AD) and Azure Active Directory (AAD) native tools, administrators struggle to keep up with requests to create, change or remove access.
With One Identity Active Roles, you can streamline user and group administration, solve security issues and meet those never-ending compliance requirements by managing and securing on-premises and cloud AD resources simply and efficiently with a single, intuitive solution.

ONE IDENTITY ACTIVE ROLES

Key features

Key features

Automatic user lifecycle management

Automatic user lifecycle management

Active Roles automates a wide variety of tasks, including:

  • Creating, removing, or modifying user and group accounts in AD and AAD
  • Administering groups across AD and AAD
  • Assigning resource in Windows
Identity analytics

Identity analytics

Mitigate risks before an issue occurs through comprehensive insight into user entitlements in a hybrid AD environment.

    Integration with enterprise IAM programs

    Integration with enterprise IAM programs

    Active Roles complements your existing technology and IAM strategy through easy integration with many One Identity products, including Identity Manager and Safeguard.

      Benefits

      Modular architecture to meet today and tomorrow’s business needs

      Protects critical Active Directory and Azure Active Directory data

      Regulates administrative access via a least-privilege model

      Automates users/group account creation and deletion

      Manages identities for Exchange Online, Lync, SharePoint Online and Office 365 and many more

      Overcomes native AD-tools limitations with automatic, consistent, and complete management

      Provides a single, intuitive tool for hybrid AD environment

      Generates audit-ready reports

      Know who made what change and when

      Deploys quickly for rapid time-to-value

      Features

      AUTOMATIC USER LIFECYCLE MANAGEMENT

      AUTOMATIC USER LIFECYCLE MANAGEMENT

      Active Roles automates a wide variety of tasks, including:

      • Creating, removing, or modifying user and group accounts in AD and AAD
      • Administering groups across AD and AAD
      • Creating mailboxes in Exchange and Exchange Online
      • Assigning resource in Windows
      DAY-TO-DAY DIRECTORY MANAGEMENT

      DAY-TO-DAY DIRECTORY MANAGEMENT

      Active Roles easily manages:

      • Active Directory and Azure Active Directory
      • Exchange/Exchange Online recipients, including mailbox/OCS assignment, creation, movement, deletion, permissions and distribution list management
      • Computers, shares, printers, local users and groups
      USER AND GROUP MANAGEMENT IN HOSTED ENVIRONMENT

      USER AND GROUP MANAGEMENT IN HOSTED ENVIRONMENT

      Synchronize AD domain clients with a host AD domain in hosted environments. Utilize out-of-the-box connectors to synchronize your on-premises AD accounts to Office 365, Lync Online and SharePoint Online.

        IDENTITY ANALYTICS

        IDENTITY ANALYTICS

        Mitigate risks before an issue occurs through comprehensive insight into user entitlements in a hybrid AD environment.

          SECURE AD/AAD ACCESS

          SECURE AD/AAD ACCESS

          Active Roles provides comprehensive privileged access management for Active Directory and Azure Active Directory:

          • Access control and delegation based on a least-privilege model
          • Access rules enforcement
          • Robust and personalized approval procedure
          INTEGRATION WITH ENTERPRISE IAM PROGRAMS

          INTEGRATION WITH ENTERPRISE IAM PROGRAMS

          Active Roles complements your existing technology and IAM strategy through easy integration with many One Identity products, including Identity Manager, Safeguard, Authentication Services, Password Manager and ChangeAuditor. Active Roles also automates and extends the capabilities of PowerShell, ADSI, SPML and customizable web interfaces.