Deployment, hosting, and identity integrations

Analog Informatics Corporation (AIC) software does not depend on the platform it is hosted on. The AIC Server runs on Windows, Linux, and Apple macOS. It runs on physical servers, in virtual machines, in containers, and in the cloud. It runs on Security Technical Implementation Guide (STIG) hardened images and on standard images. It signs users in with its own identity and role-based access control (RBAC) system, or with the directory the organization already uses.

Where AIC runsFour boxes in a row labeled Physical server, Virtual machine, Container, and Cloud subscription. Under the row, one bar labeled "Windows, Linux, macOS". Above the row, one bar labeled "AIC Server".AIC ServerPhysical serverVirtual machineContainerCloud subscriptionWindows, Linux, macOS
The same AIC software runs on physical servers, virtual machines, containers, and cloud subscriptions, on Windows, Linux, and macOS.

Which operating systems can host the AIC Server?

The AIC Server runs on Microsoft Windows and Windows Server, on Linux, and on Apple macOS. It runs on STIG-hardened images and on standard images, so an organization can host it on the same hardened build it already uses for other servers.

Which virtual environments does AIC support?

AIC runs in the virtual environments organizations commonly use:

TypeEnvironments
HypervisorsMicrosoft Hyper-V, VMware vSphere and ESXi, Proxmox Virtual Environment (VE), Kernel-based Virtual Machine (KVM) with QEMU, Nutanix AHV, and XenServer
Cloud virtual machinesMicrosoft Azure Virtual Machines, Amazon Elastic Compute Cloud (EC2), Google Compute Engine, and Oracle Cloud Infrastructure (OCI) Compute
ContainersDocker and Podman
Container orchestrationKubernetes, including Azure Kubernetes Service (AKS), Amazon Elastic Kubernetes Service (EKS), Google Kubernetes Engine (GKE), and Red Hat OpenShift
Desktop hypervisors for evaluationVMware Workstation and Oracle VirtualBox

The same kits can also power idle virtual workstations off on a schedule. See VM power scheduling.

Where can I buy AIC in the cloud?

Microsoft Azure Commercial Marketplace is the initial launch partner for AIC CMMC Complete™. All current kits (Level 1, Level 2, and Level 3) are available now on that marketplace. The kit launches into the organization's own Azure subscription. Microsoft bills Azure usage.

Available now

OptionStatus
AIC CMMC Complete™ Level 1, Level 2, and Level 3 on the Microsoft Azure Commercial Marketplace (initial CMMC launch partner)Available now
Customer installation on any cloud the organization uses, in its own subscription or account, including Windows and Linux virtual machines on Microsoft Azure, Amazon Web Services, Google Cloud, and Oracle Cloud InfrastructureAvailable now

Planned

OptionStatus
Amazon Web Services (AWS) MarketplacePlanned, based on customer demand
Google Cloud MarketplacePlanned, based on customer demand
Oracle Cloud MarketplacePlanned, based on customer demand
Exostar and other marketplacesPlanned, based on customer demand
Government Community Cloud (GCC) environment support across cloud platforms, including Microsoft Azure GovernmentPlanned, with implementation roadmaps based on customer demand
Federal Risk and Authorization Management Program (FedRAMP) environment support across cloud platformsPlanned, with implementation roadmaps based on customer demand

How does AIC run in the cloud for CMMC?

For Cybersecurity Maturity Model Certification (CMMC) customers, AIC runs in the cloud as customer-controlled infrastructure. The enclave launches into the organization's own cloud subscription. The organization holds the keys, the identities, and the access rules. That design is meant to give organizations an easier path to CMMC Level 2 and Level 3. The assessor decides the assessment outcome. See Secure enclaves and AIC CMMC Complete™.

Which identity systems does AIC work with?

Small and midsize businesses and CMMC enclaves can use the identity and RBAC system built into AIC. Organizations that already have a directory can sign in with it.

Identity systemHow AIC connectsStatus
Built-in identity and role-based access control (RBAC)Local accounts, roles, and multifactor authentication (MFA)Available now
Microsoft Active DirectoryLightweight Directory Access Protocol (LDAP) sign-in, and Windows Integrated (Kerberos) sign-onAvailable now
Microsoft Entra ID (formerly Azure Active Directory)OpenID Connect (OIDC)Available now
OktaOpenID ConnectAvailable now
Ping Identity and other OpenID Connect providersOpenID ConnectAvailable now
OAuth 2.0 and OpenID Connect federationStandard OAuth 2.0 and OpenID Connect sign-inAvailable now
Security Assertion Markup Language (SAML) 2.0 federationSAML 2.0 single sign-on with any SAML 2.0 identity provider, including Microsoft Entra ID, Okta, Ping Identity, and Active Directory Federation Services (AD FS)Available now

See Conditional access and threat defense for sign-in rules by country, network address, threat intelligence, and MFA.

What is AIC written in?

AIC software is written in the Rust programming language. It contains no .NET, ASP.NET, or Java code, and no legacy C or C++ application code. The default cryptographic library is AWS-LC, which holds a Federal Information Processing Standards (FIPS) 140-3 certificate. See Key management.

Is AIC open source?

No. AIC is commercial software. It is not an open source product.

  • Some integrations use open source components under permissive licenses such as the MIT License and the Apache License 2.0. Every component and its license text are listed in the console under Help, About, Open source credits.
  • AIC does not build code under the GNU General Public License (GPL) into its software. When an organization chooses to use a GPL tool with AIC, the organization installs that tool, and AIC runs it as a separate program.
  • AIC contributes money and engineering work to the open source community.

Screenshots

Sign in with local accounts, OpenID Connect, Windows Integrated, or Active Directory.

More on Product screenshots.

Platforms and integrations

Runs on

  • Microsoft Windows
  • Linux
  • Red Hat Enterprise Linux
  • Ubuntu
  • Apple macOS
  • Microsoft Hyper-V
  • VMware vSphere
  • Proxmox Virtual Environment
  • QEMU and Kernel-based Virtual Machine
  • Nutanix AHV
  • Citrix XenServer
  • Microsoft Azure
  • Amazon Web Services
  • Google Cloud
  • Oracle Cloud Infrastructure
  • Docker
  • Podman
  • Kubernetes
  • Red Hat OpenShift
  • Oracle VirtualBox

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

Connects to

  • Microsoft Active Directory
  • Microsoft Entra ID
  • Lightweight Directory Access Protocol
  • Okta
  • Ping Identity
  • OpenID Connect
  • SailPoint
  • Yubico YubiKey
  • RADIUS
  • ServiceNow
  • Atlassian Jira
  • Splunk
  • Microsoft Sentinel
  • Datadog
  • Amazon CloudWatch
  • Google Cloud Logging
  • Thales
  • Entrust
  • Utimaco
  • Futurex
  • IBM Cloud HSM
  • PKCS#11
  • Twilio
  • Vonage
  • Plivo
  • Telnyx
  • MessageBird

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

Cloud platforms

  • Microsoft Azure
  • Amazon Web Services
  • Google Cloud
  • Oracle Cloud Infrastructure

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

Operating systems

  • Microsoft Windows
  • Linux
  • Red Hat Enterprise Linux
  • Ubuntu
  • Apple macOS

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

Hypervisors and containers

  • Microsoft Hyper-V
  • VMware vSphere
  • Proxmox Virtual Environment
  • QEMU and Kernel-based Virtual Machine
  • Nutanix AHV
  • Citrix XenServer
  • Docker
  • Podman
  • Kubernetes
  • Red Hat OpenShift
  • Oracle VirtualBox

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

Security information and event management

  • Splunk
  • Microsoft Sentinel
  • Datadog
  • Amazon CloudWatch
  • Google Cloud Logging

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

Ticket systems

  • ServiceNow
  • Atlassian Jira

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

Identity systems

  • Microsoft Active Directory
  • Microsoft Entra ID
  • Okta
  • Ping Identity
  • SailPoint
  • Yubico YubiKey
  • RADIUS
  • Lightweight Directory Access Protocol

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

Planned marketplace support

  • Exostar

Google Cloud, Amazon Web Services, Oracle Cloud, and Exostar marketplace listings are planned, based on customer demand. Customer installation on any cloud is available now.

All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.

See it on your use case

Request a demo