advising on IT-business alignment
IT-business alignment about us blog our services articles & reports resources your profile exposure
blog
blog
Thursday, February 08, 2007

Internet-scale identity systems

If you're interested in what's happening (and there's a lot) in the world of user-centric and federated identity you'll want to know about Microsoft's CardSpace, OASIS' SAML, OpenID and the Liberty Alliance's ID-Web Services Framework (ID-WSF), all of which I have discussed here in one way or another. Given recent developments, it's also important to understand the interplay between these different systems.

Ping Identity (who is not a client) has recently published a very useful white paper, which goes into these issues in some detail. The paper uses the interactions between a user, a service provider/relying party and identity provider to define a framework which considers the pros and cons of the different systems in terms of the identifiers they support; how they deal with attributes; authentication mechanisms; the flow of identity data and the involvement of the user; trust models and discovery mecahnisms. It concludes with a number of use cases which highlight how the systems can be used to together in a way which exploits their mutual strengths.

Definitely worth a read.

Labels:

Comments:
This would also be a Valuable Virtual Interface. A SurReal Blog?

Tele-Fission? Media Productions as Host Architects for Future Productions will Virtualise Everything ...... as ITs Drivers.

A New World Order System, no less. And Quantum Technology.... for Materialisation/TelePortation Opportunities.
 
Post a Comment

<< Home


Burn this feed
Burn this feed!

Creative Commons License
This work is licensed under a Creative Commons License.

Blog home

Previous posts

EMC strikes while the virtualisation iron is hot
Bill Gates says goodbye to the RSA conference - an...
A couple of interesting CardSpace snippets
Symantec's Norton gets all user-centric
We the librarian
Interesting developments in open source user-centr...
Defeating versionitis: making things better in sma...
We're hiring!
Sustainable SOA and "closed loop" thinking
"Open" will find a way

Blog archive

March 2005
April 2005
May 2005
June 2005
July 2005
August 2005
September 2005
October 2005
November 2005
December 2005
January 2006
February 2006
March 2006
April 2006
May 2006
June 2006
July 2006
August 2006
September 2006
October 2006
November 2006
December 2006
January 2007
February 2007
March 2007
April 2007
May 2007
June 2007
July 2007
August 2007
September 2007
October 2007
November 2007
December 2007
January 2008
February 2008
March 2008
April 2008
May 2008
June 2008
July 2008
August 2008
September 2008
October 2008
November 2008
December 2008
January 2009
February 2009
March 2009
April 2009
May 2009
June 2009
July 2009

Blogroll

Andrew McAfee
Andy Updegrove
Bob Sutor
Dare Obasanjo
Dave Orchard
Digital Identity
Don Box
Fred Chong's WebBlog
Inside Architecture
Irving Wladawsky-Berger
James Governor
Jon Udell
Kim Cameron
Nicholas Carr
Planet Identity
Radovan Janecek
Sandy Kemsley
Service Architecture - SOA
Todd Biske: Outside the Box

Powered by Blogger

Weblog Commenting and Trackback by HaloScan.com

Enter your email address to subscribe to updates:

Delivered by FeedBurner