Skip Links

Network World

  • Social Web 
  • Email 
  • Close

The call for a new identity standard

Catalyst happenings: Organizational events, new releases from a standards body, and a call for a new standard
Security: Identity Management Alert By Dave Kearns , Network World , 07/07/2008
Kearns
Sign up for this newsletter now!

Dave Kearns provides the information you need to evaluate, install and maintain your corporate identity management system.

  • Share/Email
  • Tweet This
  • Comment
  • Print

For those of you who have just tuned in, we're in the midst of reviewing the recent Catalyst Conference and the various announcements made in and around that get together. Last week I told you about the major themes presented on stage, and later on we'll hear about the new products, new versions of old products and new start-ups that got announced. Today, though, I want to examine the organizational events that occurred - a new release from a standards body, a new promotional organization and the call for a new standard.

The Liberty Alliance released the first components of the Identity Governance Framework that it acquired from it’s initial developers at Oracle. In particular, this first release of the CARML (Client Attribute Requirements Markup Language) specification is very welcome. This is “…a policy format that applications, devices and services can use to characterize required identity data, coupled with privacy constraints governing use. It allows auditors and deployers to understand what identity information an application requires so that services can be deployed flexibly over enterprise identity architectures based on LDAP, Liberty SAML 2.0 Federation, WS-Trust and Liberty Web Services (ID-WSF)” according to the release documents. This is a very important step on the road to developing a true "identity bus”" or hub.

And speaking of the Identity Bus reminds me of Microsoft’s Stuart Kwan, which makes me think of Microsoft’s CardSpace and naturally links to the recent announcement of the InfoCard Foundation (ICF). This consortium of vendors (Microsoft, Novell, Ping Identity, Gemalto and a dozen others) and independent users (including Pamela Dingle, Ben Laurie, Drummond Reed, Mary Ruddy, Paul Trevithick and others who have graced this newsletter from time to time) is specifically NOT about producing specifications. Rather, its raison d’etre is to: “Advance the use of the Information Card metaphor as a key component of an open, interoperable, royalty-free, user-centric identity layer spanning both the enterprise and the Internet.” Certainly laudable, but purely marketing organizations tend to have a fairly short effective lifespan. The absence of Sun could be a problem – but possibly more of a problem for Sun (if they’re seen as obstructionist) than for the ICF. Time will tell, and we will be watching.

Dave Kearns is a consultant and editor of IdM, the Journal of Identity Management.

  • Share/Email
  • Tweet This
  • Comment
  • Print
Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed