- Worst of the lot: PCConnection and PCMall
- 10 ways the Chinese Internet is different
- Hacker writes rootkit for Cisco's routers
- Cisco loses $2 million order to Nortel
- Enterasys, Extreme hooking up?
Twing targets communities with new search engine. Listen now!
Ken Russell on making applets FAST. Listen now!
Learn how network-wide routing and CoS traffic visibility can help ensure your CoS traffic and converged IP service delivery
Get the latest on storage technologies that allow IT professionals to better cope with new IT demands. Learn how storage technologies can help you successfully tackle e-Discover, regulatory compliance, green data center initiatives and the data explosion. Get all the details now.
HP's Network Lifestyle Management can help you automate network processes and improve NOC efficiency. This webinar is part three of a four part series on Business Services Management (BSM) evolution to help you better align IT with business objectives. Register for this on-demand webcast now.
botnets dont make ur comp slow- Anonymous
Comprehensive Network & Voice Management Visit CA Network & Voice Management Resource Center and get insights into industry best practices, information that helps you to address your challenges.
Voice over IP (VoIP) has much to offer in cost savings but some customers have concerns about VoIP call quality compared to the quality of traditional voice services. This white paper will help you learn how to take the right steps so that voice quality is assured.
Managing your network is serious business. This paper discusses the benefits of integrating configuration change-awareness into your network fault management solution
CHICAGO – The end game for corporate identity architectures is an "identity bus" that off-the-shelf applications can plug into in order to authenticate users and provide access control, according to Microsoft.
Stuart Kwan, director of program management for identity and access for Microsoft, used his keynote address at NetPro's Directory Access Conference (DEC) to say that work building identity platforms is far from over and to explore where it might end.
"What is the finish line?" Kwan asked. "It is when you are able to take off-the-shelf applications and plug them right into the identity system and go. When we reach that point we are largely done with identity. It does not seem as far off as you might think."
Kwan said what is needed are "transformers," places where data contained within "claims" about a user can be into changed into different formats depending on an application's need. Kwan said the transformers would be able to handle such things as Kerberos, X.509 certificates and assertions based on SAML.
Claims are a set of statements that identify a user and provide specific information. Applications use them to make decisions on who gets access, who can retrieve content or who can complete transactions.
Claims can come from Active Directory, LDAPv3 based directories, application specific databases and new user-centric identity models such as LiveID, OpenID and InfoCard systems including Microsoft's CardSpace and Novell's Digital Me. (Compare identity management products.)
"Transformers allow us to fold, spindle and mutilate the data in any way we want. It lets us adapt to the infrastructure without completely destroying the applications," Kwan said.
Microsoft is adopting a claims-based authentication model and its first examples will come with Rights Management Server and SharePoint Server.
Kwan said the key will be standards and interoperability and said protocols from the WS-star stack, including WS-Trust, will be key for success. He said the future may include new protocols for exchanging data.
"identity transformers"By Anonymous on March 5, 2008, 6:12 pmKudos to Microsoft for promoting the idea of "Identity Transformers". The Open-Source world is working on this very thing. See, for example, the IdAS (Identity Attribute...
Reply | Read entire comment
View all comments