Subscribe to our e-mail newsletters
For more info on a specific newsletter, click the title. Details will be displayed in a new window.
Web Services/SOA
Application/Web Development
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
More E-Mail Newsletters 
Computerworld 2007Subscribe to Computerworld
40 years of the most authoritative source of news and information for IT leaders.

Split ID Management Can Secure Physical ...

 

Sign up to receive Security Resource Alerts

September 22, 2003 (Computerworld) -- ... and virtual assets more effectively than traditional security measures, claims Phil Libin, president of CoreStreet Ltd., a security firm in Cambridge, Mass. According to Libin, if you divide identity management functions into an authentication process (you are who you say you are) and authorization (you can do what you try to do), your systems will be at least as secure as a monolithic system, and you'll be able to protect physical assets with the same technology. "Use whatever authentication technology you choose -- biometrics, passwords, digital certificates, whatever -- but don't use the same system for authorization," he warns. That's because most combination identification management products use a centralized LDAP or Microsoft Active Directory database to authorize what a user can do once he's been authenticated. That's OK if all you're doing is having people log onto computers locally. But Libin says performance will be unacceptable for a widely distributed organization or for linking physical access with your online authorization system. The company's (take a breath) CoreStreet Real Time Credential Validation Authority purports to fix that. It uses edge servers, such as those offered by Akamai Technologies Inc., also in Cambridge, to send fast, 20B authorizations to requesting devices -- even door locks. That's why Stockholm-based Assa Abloy AB, the world's largest maker of locks with brands such as Yale and Chubb, will be adopting the technology in early 2004.
• And if you're building an identity management system in Web services, you're probably fumbling with lots of Java or .Net code and gazing at all the specifications being bandied about the industry, hoping to follow the right path. Well, early next quarter, you might get some relief when Phaos Technology Corp. in New York releases Liberty Identity Management 1.0. The product can take existing ID management software offerings, such as those from Netegrity Inc. in Waltham, Mass., or Oblix Inc. in Cupertino, Calif., and tie them into a Web services application following the proposed industry standards. "Beats the heck out of trying to do it yourself," says Phaos CEO Roger Sullivan. Makes you wonder whether that's a warning or a promise to Web services developers.

Continued...
1 | 2 | NEXT  



Print this Story Send Us Feedback E-mail this Story Digg! Digg this Story Slashdot this Story
"This pilot fish works for a company that supplies software to automobile dealerships. But one afternoon, the connections to four..." Read more...
"It's IT Blogwatch: in which billionaire investor Carl Icahn starts a proxy fight to restart the Microsoft/Yahoo merger talks. Not..." Read more...
Read more Internet posts or See all Blogs
Microsoft: Don't misunderstand UAC, other Vista features
HP confirms XP SP3 endless reboot snafu, promises patch
Microsoft pulls Windows Home Server backup feature
More top stories...
Yahoo tells Icahn that its own board knows best
Tools circulate that crack Debian, Ubuntu keys
Elgan: Hyperconnectivity: Friend or foe?
Specialists have retrieved about 99% of the data on a disk drive on board the crashed space shuttle Columbia. Don't miss the photographs of the recovered drive.
These big ideas were supposed to revolutionize technology, but they never actually appeared. In a few cases, you'll be glad they didn't.
Nearly 20 years after the first Internet worm, Steven J. Vaughan-Nichols takes stock of the malware/anti-malware landscape and spotlights how the two sides are approaching the battle.
Though some thought it was released too soon, Mac OS X 10.5 has matured into a solid operating system, says reviewer Michael DeAgonia.
Reviews, analyses, how-tos, visual tours, hot issues and predictions about Microsoft's new OS.
Four years from now, the IT field will be a vastly different place. Will you be ready?
All Zones
Application Performance Zone
Enterprise-Class Security Zone
Enterprise Solutions Zone
The File Data Management Zone
Grid Computing on Windows Zone
Security Management Zone
ITIL Best Practices Zone
The SAS Zone
Storage Virtualization Zone
The Data Center Management Zone

Ads by TechWords

See your link here
Long Tail Supplier Collaboration - What's In It For You?
Long Tail Supplier Collaboration - What's In It For You?
Download this webcast, free, compliments of Sterling Commerce
Go to the webcast 
Virtualization Everywhere
Download this white paper, free, compliments of Citrix.
(Source: Citrix) Adoption of virtualization is concentrated among large enterprises, while adoption by mid-sized companies has been much slower. For these companies, the cost and complexity of server virtualization solutions has been a barrier.

In this paper, we'll discuss how Citrix XenServer" provides simple, economical server virtualization for any size company. Download now!

Download this white paper go
Computerworld Report : Smart Storage
Download this Computerworld report, free for a limited time, compliments of HP.
(Source: Computerworld) Faced with growing demands, immature tools and a confusing array of technologies, IT decision-makers have to make some strategic choices. Learn how to avoid the pitfalls in this Computerworld report, a $49.95 value, available free for a limited time, compliments of HP.
Download this executive briefing download
White Papers
Read up on the latest ideas and technologies from companies that sell hardware, software and services.
Securing Financial Services Beyond the Perimeter
Intercept Spam & Viruses With MessageLabs
Meeting PCI Compliance with SonicWALL Global Management System
View more whitepapers