The Liberty Alliance on Wednesday gave final approval to the latest specification in its three-phase effort to develop open and interoperable federated identity standards that will allow the sharing of user authentication and authorization information.
Phase 2 of the group’s work is called the Identity Web Services Framework (ID-WSF) and will allow islands of trusted partners to link to other islands of trusted partners and provide users with the ability to control how their identity information is shared.
“This phase is about cross-domain services and data sharing,” says Sai Allavarpu, group business manager for network identity at Sun, which is now supporting the Phase 2 specification in its Java System Identity Server. Other vendors announcing support for Phase 2, which is now available for download on the Liberty Alliance Web site, were Phaos, Ping Identity, Trustgenix and Vodafone.
The Phase 2 specification is a milestone in the Alliance’s work to create federated identity management standards because the specification now begins to overlap with similar work being done by IBM and Microsoft on a group of specifications led by WS-Security and its derivatives, including WS-Federation and WS-Policy.
Experts say the Phase 2 specification could likely raise the conflict between the two groups.
Liberty has already adopted WS-Security since it has been turned over to OASIS, but last month the Alliance laid out the differences between its spec and WS-Federation in a short white paper.
“We have shown our willingness to work with other groups and adopt their input and output. We’ve shown that with adoption of SAML and WS-Security,” says Simon Nicholson, chairman of the Liberty’s business and marketing group and the group manager for strategic industry initiatives at Sun.
But Nicholson says everything has to be in the public domain. The IBM/Microsoft tandem continues to work outside formal standards bodies, a fact that is causing many large companies to pressure the two to get on a standards track.
Michael Barrett, president of the Liberty Alliance, told Network World last month, “I don’t think it is a war yet, but it could be one if we are not careful.” He said convergence can happen only when IBM and Microsoft turn their work over to a standards body. The duo said that is likely to happen, but have not said when.
Partner Content
NetScout and analyst Jim Metzler have teamed to deliver a series of IT Briefs on Network and Application Performance Management leveraging research from NetScout's nGenius & Sniffer users.
www.netscout.com
Metzler on Service Delivery Management
Delivering IT business value by evolving our thinking from managing application performance to focusing on services.
Learn More
2009 Handbook of Application Delivery
Successful IT organizations must know how to make the right application delivery decisions in these tough economic times.
Download the Handbook
Metzler on the Modern IP Network
Discusses the growing emphasis on network management and the need to implement a holistic view of the end-to-end experience of the user.
Read the Brief