Updated: 8.5.2002; 0:56:41 GMT.

Security weblog



daily link  Sunday, April 21, 2002

What is global identity management?

When talking with my colleagues on Thursday, I tried to explain what Liberty Alliance, and in fact the whole identity management, is all about. I managed to do that but it made me thinking about ways to explain this more throoughly and in simple terms. Eventually, I have arrived to the explanation, which might still need some polishing, but which is decent enough to be published here:

Global identity management is a nickname for an infrastructure that would enable communicating authentication, authorisation and personal preference information across multiple systems and organisations. Currently, such details are managed at various places by means of various, mutually incompatible technologies. Communication of the identity details between them requires bespoke development and often insecure workarounds. Large software vendors are working on developing consistent and universal way to communicate identity details because they need it for the vision of pervasive computing (anytime, anyplace, anywhere) to become true. Large identity managers (such as banks or airlines) are working on this because for them pervasive computing means pervasive commerce.


The concept, reflected in frameworks developed by Microsoft with IBM or Liberty Alliance, is evolving very quickly and although the relationships of the parties involved has been far from ideal, it seems to be gravitating towards a single set of open standards.

These standards should support creation of infrastructure enabling easy sharing of the identity data as neccessary, respecting privacy of personal details and established trust releations between the subjects involved.

Future versions of user and access management software included in business applications and platforms will likely support this standards natively; legacy technologies will have to use identity-translating wrapper modules. Identity infrastructures owned by corporations will likely be accompanied by commercial or community-based public identity services similar to the one provided by certificate service providers or Passport authentication service nowadays.

  11:49:56 PM  permalink  

 
April 2002
Sun Mon Tue Wed Thu Fri Sat
  1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30        
Mar   May

Misc

About
Reading list
Resources
Contact me

News

SANS NewsBites
Crypto-gram
UKCrypto
Information Security
Objectwatch
CBDi Forum

Channels

Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Better Living Through Software (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Content Wire - Digital Copyright (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Dictionary.com Word of the Day (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Digital Identity (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Digital Identity World (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Financial Applications Security Weblog (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Joel on Software (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Jon's Radio (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Line56: B2B News (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. O'Reilly Network Articles (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. onlineblog.com (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. RISKS Digest (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Scripting News (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. SecurityFocus (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Web Services Architect (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. WebServices.Org (rss)
Radio UserLand users: click to subscribe. Other folks: use the RSS link to acquire this channel. Wired News (rss)




jenett.radio.simplicity.1.3R
Radio Userland


Copyright 2002 © Jiri Ludvik.
Last update: 8.5.2002; 0:56:41.