Adapter as a Service Platform for IAM Integration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current Identity and Access Management (IAM) systems require custom adapters/connectors for various applications and servers, leading to high development and maintenance costs, technical challenges, and vendor lock-in, hindering scalability and return on investment (ROI) due to proprietary solutions that cannot be shared across vendors.

Innovation Solution

An Adapter as a Service (AaaS) platform that provides a standardized system for cross-identity provisioning through RESTful APIs, allowing multiple vendors to offer their adapters as a service, enabling users to access and manage IAM systems without developing custom solutions, and facilitating seamless switching between providers.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If custom adapters/connectors are developed for each IAM system, then specific IAM integration functionality is achieved, but development and maintenance costs increase significantly

Engineering Contradiction:
ImproveIAM integration functionalityVSAvoiddevelopment and maintenance costs
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

The patent implements a universal adapter framework that can integrate with multiple IAM systems through a standardized interface. The framework includes base adapter classes with common functionality that can be reused across different IAM integrations, eliminating the need to develop custom adapters from scratch for each system. This multi-functional approach allows a single framework to serve multiple IAM integration purposes while reducing overall development and maintenance costs.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If proprietary adapter solutions are used, then specific vendor IAM integration is achieved, but vendor lock-in occurs and scalability is hindered

Engineering Contradiction:
Improvevendor-specific IAM integrationVSAvoidvendor independence and scalability
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent introduces an intermediary adapter framework that sits between the application and various IAM systems. This framework acts as a mediator that translates between different IAM vendor protocols and a standardized internal interface. By using this intermediary layer, organizations can integrate with specific vendor IAM systems while maintaining vendor independence through the ability to swap adapters without changing core application logic, thus preventing lock-in and enabling scalability.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If custom adapters are developed in-house, then specific IAM requirements are met, but time and resources for development increase

Engineering Contradiction:
Improvecustom IAM requirements fulfillmentVSAvoidadapter development time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent implements preliminary action by providing a pre-built adapter framework with common integration patterns and standardized interfaces already established. Rather than developing adapters from scratch for each IAM requirement, the framework provides pre-configured base classes, authentication handlers, and integration templates that can be quickly customized for specific requirements. This preliminary preparation significantly reduces development time while still allowing customization for specific IAM needs.

Inventive Principle:
Principle #10Preliminary action

4Adaptability or versatility

If multiple custom adapters are maintained, then various IAM systems are integrated, but maintenance complexity and costs increase

Engineering Contradiction:
Improvemulti-IAM system integrationVSAvoidadapter management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent merges multiple adapter implementations into a unified framework with common maintenance points. The framework consolidates shared functionality such as authentication protocols, session management, and error handling into centralized components that can be maintained in one place. This merging approach allows support for multiple IAM systems while reducing maintenance complexity, as updates to common functionality automatically benefit all integrated systems without requiring separate maintenance for each adapter.

Inventive Principle:
Principle #5Merging (Combining)

Data Source

PatentUS11032134B2Providing and managing an adapter as a service (AaaS) brokering service
Publication Date: 2021.06.08 INTERNATIONAL BUSINESS MACHINE CORPORATION
  • US11032134B2 patent drawing
  • US11032134B2 patent drawing
  • US11032134B2 patent drawing

AI summary

Various embodiments are provided for managing an adapter as a service (AaaS) in a computing environment by a processor. Accesses to one or more of a plurality of identity and access management (IAM) systems may be provided via an adapter as a service (AaaS) functioning as an exchange service between one or more users and one or more providers of a plurality of types of adapters, wherein the plurality of types of adapters in the AaaS enable provisioning and de-provisioning to one or more of the plurality of IAM systems.