Auto-sync: 2026-04-24 08:02
This commit is contained in:
32
wiki/entities/DXC-VSM.md
Normal file
32
wiki/entities/DXC-VSM.md
Normal file
@@ -0,0 +1,32 @@
|
||||
---
|
||||
title: "DXC VSM"
|
||||
type: entity
|
||||
tags:
|
||||
- Identity-Governance
|
||||
- IAM
|
||||
- CTP
|
||||
sources:
|
||||
- learning-sessions-identity-governance-vsm-replacement-20231128-160326-meeting-re
|
||||
last_updated: 2023-11-28
|
||||
---
|
||||
|
||||
## DXC VSM
|
||||
|
||||
DXC Virtual SM(VSM)是一款 DXC 提供的身份治理工具,将被 Micro Focus IGA 替换。
|
||||
|
||||
## Description
|
||||
|
||||
DXC Virtual SM(VSM)是 DXC Technology 提供的虚拟服务管理(Virtual Service Management)工具,用于身份治理场景。VSM 在 Micro Focus 环境中原用于管理 AD 组和工作流,提供权限审批和访问审计能力。
|
||||
|
||||
## Replacement Plan
|
||||
|
||||
VSM 将被 Micro Focus IGA 全面替换:
|
||||
- **替换策略**:保持原有架构不变,IGA 接入 Coptum 域而非原 DXC 域
|
||||
- **验证阶段**:POC(概念验证)正在进行,以验证替换架构和审批流程
|
||||
- **目标**:实现无缝过渡,确保权限治理能力不中断
|
||||
|
||||
## Aliases
|
||||
- VSM
|
||||
- Virtual SM
|
||||
- DXC Virtual Service Management
|
||||
- DXC Virtual Service Manager
|
||||
39
wiki/entities/Martin-Nash.md
Normal file
39
wiki/entities/Martin-Nash.md
Normal file
@@ -0,0 +1,39 @@
|
||||
---
|
||||
title: "Martin Nash"
|
||||
type: entity
|
||||
tags: [Person, Technical Architecture, Cloud Transformation]
|
||||
sources: [ctp-topic-23-introduction-to-the-technical-architecture-team-and-function]
|
||||
last_updated: 2026-04-14
|
||||
---
|
||||
|
||||
# Martin Nash
|
||||
|
||||
## Role
|
||||
**Technical Architecture Manager**(技术架构经理)
|
||||
|
||||
## Organization
|
||||
[[Cloud Transformation Office]] — 云转型办公室
|
||||
|
||||
## Responsibilities
|
||||
- 领导技术架构团队
|
||||
- 维护 AWS Enterprise Landing Zones
|
||||
- 制定技术路线图(12-24个月)
|
||||
- 推动云优先策略落地
|
||||
|
||||
## Key Contributions
|
||||
- 主讲 CTP Topic 23:技术架构团队职能介绍
|
||||
- 推动 PSTC 与 IT 部门整合至 CIO 统一领导
|
||||
- 倡导从被动响应转向主动规划
|
||||
|
||||
## Related People
|
||||
- [[Brendan Starnig]] — SRE Function Lead
|
||||
- [[Heather Norris]] — CTP Topic 4 主讲人
|
||||
|
||||
## Related Concepts
|
||||
- [[Technical Architecture Team]]
|
||||
- [[Enterprise Architecture (EA)]]
|
||||
- [[Solution Architecture (SA)]]
|
||||
- [[Technical Architecture (TA)]]
|
||||
|
||||
## Sources
|
||||
- [[ctp-topic-23-introduction-to-the-technical-architecture-team-and-function]]
|
||||
48
wiki/entities/Micro-Focus-IGA.md
Normal file
48
wiki/entities/Micro-Focus-IGA.md
Normal file
@@ -0,0 +1,48 @@
|
||||
---
|
||||
title: "Micro Focus IGA"
|
||||
type: entity
|
||||
tags:
|
||||
- Identity-Governance
|
||||
- IAM
|
||||
- CTP
|
||||
sources:
|
||||
- learning-sessions-identity-governance-vsm-replacement-20231128-160326-meeting-re
|
||||
last_updated: 2023-11-28
|
||||
---
|
||||
|
||||
## Micro Focus IGA
|
||||
|
||||
Micro Focus 身份治理与管理(Identity Governance and Administration)工具。
|
||||
|
||||
## Description
|
||||
|
||||
Micro Focus IGA 是企业级身份治理平台,用于管理数字身份的访问权限、最小化风险并保持合规。IGA 通过资源工作流(workflow)控制权限的审批、撤销和监控,支持内部用户和外部用户(含承包商)的有时限访问权。
|
||||
|
||||
## Key Capabilities
|
||||
|
||||
- **权限治理**:通过 Active Directory 组管理角色映射,管控组的成员关系和访问审批工作流
|
||||
- **工作流引擎**:支持权限申请→审批→自动授权的完整流程
|
||||
- **云集成**:通过 AWS Identity Center + IAM 提供云资源访问控制
|
||||
- **认证桥梁**:配合 Azure AD Domain Services 实现跨域身份认证
|
||||
- **时间限制访问**:适合承包商和临时用户的权限生命周期管理
|
||||
- **监控与审计**:记录所有身份变更和访问事件
|
||||
|
||||
## Architecture
|
||||
|
||||
```
|
||||
User → IGA Portal → AD Groups (role mapping) → AWS Identity Center → IAM → AWS Resources
|
||||
↑ ↑
|
||||
└── Azure AD Domain Services (auth bridge)
|
||||
```
|
||||
|
||||
## VSM Replacement
|
||||
|
||||
Micro Focus IGA 将替换 DXC 提供的 Virtual SM(VSM)工具。替换策略:
|
||||
- 保持原有架构设计不变
|
||||
- 将连接从 DXC 域迁移至 Coptum 域
|
||||
- POC 正在进行以验证架构和流程
|
||||
|
||||
## Aliases
|
||||
- IGA
|
||||
- Identity Governance and Administration
|
||||
- Micro Focus Identity Governance
|
||||
Reference in New Issue
Block a user