Stock Abbreviation : Topsec      Stock Code : 002212
7*24 hour service: 400-777-0777

Zero Trust SDP Controller System

Authorization | Trust Evaluation | Policy Issue

TOPSEC Zero Trust SDP Controller System Overview

TOPSEC Zero Trust SDP Controller System (referred to as SDP Controller for short) is one of the core components of TOPSEC SDP products. It is mainly responsible for identity authentication, authority management, policy issuing and generating the authentication token used by clients to access applications. It is the policy decision point in SDP product architecture. The SDP controller combines IAM authentication technology, supports the management of user identity, evaluates the trust of access user identity, terminal, environment and behavior, and performs dynamic authority management based on the policy results configured by the policy engine.

Activity & Announcement
Advantages
Identity management

Manage the identities of users, devices, applications and services, and generate globally unique, tamper-proof and verifiable identities.

Identity authentication

Comprehensive identity authentication based on user identity, equipment information, network environment and other factors, and provide a variety of authentication means. Support unified identity authentication services and multiple universal authentication protocols for business systems.

Multi-dimensional permission management

It has permission management at application level, function level and service level, and supports permission application on demand, administrator approval and authorization, etc.

Multi-privilege model

It supports the construction of multiple privilege models based on RBAC, ABAC, TBAC, etc., and can meet the needs of different business scenarios.

Trust assessment

It has the ability of risk assessment and risk aggregation, and can calculate trust, rate trust, give risk warning, etc. through various risk assessment results.

Dynamic authorization verification

It has the ability to make rules for authentication and authorization, and can perform dynamic authorization verification and adaptive authentication according to the trust evaluation results.

Application
Scenario

In mobile office, remote operation and maintenance, remote development and other scenarios, it can provide a unified secure access channel for users to access the intranet. All remote access needs to be authenticated by TOPSEC Zero Trust SDP controller, and then the connection is established through TOPSEC Zero Trust SDP gateway, which greatly reduces the behavior of unauthorized access to internal systems in remote office scenarios.

Issues Resolved
  • Application and service access control: Zero-trust SDP controller authorizes on-demand and only allows user equipment and applications to access the permitted applications and system services.
Value to Customers
Full identity

Users, devices and applications are fully identified, and business security is ensured by building a trusted chain.

Adjust access rights dynamically

According to the situation of trust evaluation, dynamically adjust the user's access rights, authorize on demand, minimize the rights and protect the core business.

Strengthen terminal security

Strengthen the terminal security, and rationalize the access according to the business security level.