The perfect vehicle for identity - Network World

Skip Links

DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Security

Videos

rssRss Feed
Get instant email notification when white papers, webcasts, executive guides are added to our library.  Stay informed and up-to-date with the latest on IT Technologies with Network World's Resource Alerts.
Audio

Crackin' the Kraken bot. Listen now!

Network World's Newsmaker of the Week

Wireless dangers at airports. Listen now!

Network World Panorama

Additional Resources

RSS

FEATURED REPORTS

Executive Guide: Storage Heats Up HP

Get the latest on storage technologies that allow IT professionals to better cope with new IT demands. Learn how storage technologies can help you successfully tackle e-Discover, regulatory compliance, green data center initiatives and the data explosion. Get all the details now.

RSS

FEATURED WEBCASTS

HP Live Webcast: Create a more efficient NOC HP

HP's Network Lifestyle Management can help you automate network processes and improve NOC efficiency. This webinar is part three of a four part series on Business Services Management (BSM) evolution to help you better align IT with business objectives. Register for this event scheduled for Wednesday, January 30, 2008 at 11:00 a.m. PDT/2:00 p.m. EDT to learn more. Register for this live webcast now.

IT Buyer's Guides

View All Buyer's Guides

Free Newsletters

Sign up and receive the latest news, reviews and trends on your favorite technology topics

Save The Date!
What They Are Saying

Where did it go? Was it fed to fishes- Anonymous

Join the Discussion

The perfect vehicle for identity

Identity bus, the end game for corporate identity architectures
Security: Identity Management Alert By Dave Kearns , Network World , 03/24/2008
Kearns
Sign up for this newsletter now!
  • Social Web 
  • Email 
  • Feedback 
  • Close

At the recent Directory Experts Conference (DEC), Microsoft's Stuart Kwan (he's Director, Program Management for Identity and Access and an annual contributor to DEC) spoke of what's been called the "identity bus." His contention was that the Microsoft Identity Metasystem was the perfect vehicle (pun intended) for this purpose.

As Network World’s John Fontana, in his coverage of Kwan’s keynote, reported: “The end game for corporate identity architectures is an ‘identity bus’ that off-the-shelf applications can plug into in order to authenticate users and provide access control.” Stuart went on to champion the security token service (STS) part of the Microsoft Identity Metasystem as the “transformer” for the identity bus.

The vision is that the STS can take data (“claims” in Microsoft identity-speak) and transform them from one protocol (LDAP, SAML, etc.) into another (such as ADFS or WS-Trust, for example). But why stop there?

Back in the day when dinosaurs roamed the network, incompatibility was the standard, interoperability the “rara avis.” For the network itself there were hardware bridges to move packets between any two of Arcnet, Ethernet and Token-ring. But even more special were the data hubs we used for databases and e-mail.

Non-SQL databases were scattered all over our networks: dBase, rBase, Clariion, Btrieve, Foxbase and dozens more were in use – many within the same organization as departmental computing grew to support the enterprise. An innovative startup in Austin, Data Junction (now part of Pervasive Software), came to the rescue. The “Data Junction” was a hub, with spokes for all of the various proprietary databases. It could read the schemas and convert the data types while moving the data from one format to another. It was, at times, a life saver!

About the same time, people were trying to get e-mail from one system to another. Youngsters may scoff, but back in the day if you used cc:mail, your partner used Microsoft Mail and a client of both used DaVinci – then you couldn’t send mail to everyone involved in a discussion. E-mail hubs were the answer (see this 1996 Infoworld review of one. Think of this as a historical document!). In essence, though, the e-mail hub worked just like the data junction hub: spokes ran out to many different e-mail systems and a message simply came in one spoke, got converted, and was sent out another spoke.

1 | 2 |  Next >
Comments (1)
Login
Forgot your account info?

Identity Management HubBy Anonymous on March 25, 2008, 9:37 amCovisint currently offers an Identity Management Hub called the Trusted Identity Framework. They currently have over 30K companies authenticating daily to their...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to moderator approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.
First Name
Last Name
E-mail
Zip Code