<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Talking Identity ! Nishant Kaushik&#039;s Look at the World of Identity Management &#187; Cloud Computing</title>
	<atom:link href="http://blog.talkingidentity.com/tag/cloud-computing/feed" rel="self" type="application/rss+xml" />
	<link>http://blog.talkingidentity.com</link>
	<description>An Architect&#039;s Quest to make sense of the world of Identity and Access Management</description>
	<lastBuildDate>Sat, 06 Mar 2010 03:32:56 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Can OAuth do what SPML hasn&#8217;t?</title>
		<link>http://blog.talkingidentity.com/2009/11/can-oauth-do-what-spml-hasnt.html</link>
		<comments>http://blog.talkingidentity.com/2009/11/can-oauth-do-what-spml-hasnt.html#comments</comments>
		<pubDate>Tue, 24 Nov 2009 21:52:03 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Insight IdM]]></category>
		<category><![CDATA[The Cloud Identity Series]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Cloud Identity Model]]></category>
		<category><![CDATA[Federated Provisioning]]></category>
		<category><![CDATA[OAuth]]></category>
		<category><![CDATA[SPML]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=720</guid>
		<description><![CDATA[I spent an interesting week at HQ last week, trying to deal with some of the craziness that occurs every time a major release is on its way. But far more interesting were all the identity management conversations I engaged in during the course of the week &#8211; in hallways, over meals and especially over [...]]]></description>
			<content:encoded><![CDATA[<p>I spent an interesting week at HQ last week, trying to deal with some of the craziness that occurs every time a major release is on its way. But far more interesting were all the identity management conversations I engaged in during the course of the week &#8211; in hallways, over meals and especially over drinks. Suffice to say that it was a very thought provoking week. I wanted to use this forum to expand on a conversation that started in one venue, and then spilled over into the Twitterverse.</p>
<p>One of the topics that has been fodder for some animated discussion has been the <a href="http://blog.talkingidentity.com/tag/federated-provisioning" target="_blank">topic of federated provisioning</a>. As the cloud has brought federated authentication back into focus, it has also shone a light on the need for federated provisioning to power cloud identity. After a very interesting discussion that I had with some folks who are looking at identity in the cloud, <a href="http://twitter.com/NishantK/status/5806488992" target="_blank">I posed the following question</a> on Twitter:</p>
<blockquote><p>Had an interesting discussion this morning on how OAuth could be to federated provisioning what OpenID is to federated SSO. Any takers?</p></blockquote>
<h3>The Thesis</h3>
<p>Federated provisioning is about creating an account with appropriate privileges in underlying systems on the <em>Relying Party</em> side when triggered by an authentication event (user comes to the <em>RP</em> service from the <em>Identity Provider</em>, or <em>IdP</em>, side). Further, the authentication token being presented to the <em>RP</em> does not contain sufficient claims (attributes, etc) for the systems on the <em>RP</em> side to create the necessary account (there are other scenarios, of course, but this is the common one I am trying to address). Consequently, we have a need for the <em>RP</em> to get provisioned with data from the <em>IdP</em> side.</p>
<p>Now in my post &#8220;<a href="http://blog.talkingidentity.com/2009/02/the_thing_about_federated_prov.html" target="_blank">The Thing About Federated Provisioning</a>&#8220;, I pointed out that there are challenges in doing all of this just-in-time. Enterprises often resort to out-of-band pre-provisioning of accounts across the domain boundaries, which is where SPML proves to be adequate. But the demand for JIT mechanisms still exists. The cloud exacerbates this problem greatly, because pre-provisioning is pretty much impossible when you move up to the scale and loose coupling of the cloud. And the nature of SPML requires that extensive integration be done before the connection between the RP and the IdP can go live.</p>
<p><a href="http://oauth.net/"><img class="alignright" title="OAuth" src="http://hueniverse.com/wp-content/uploads/2009/09/OAuth-Shine-300x298.png" alt="" width="193" height="191" /></a>And this is where I believe <strong>OAuth</strong> could play a role. OpenID is already viewed as a lightweight solution for enabling federated authentication, with attribute exchange supporting the simpler data transport scenarios. We could now augment this flow by adding an <em>OAuth-based data provisioning</em> mechanism that allows a <em>Provisioning Service </em>on the <em>RP</em> side to connect back to a <em>Provisioning Service </em>on the <em>IdP</em> side and retrieve the data it needs to create the underlying accounts. Being based on OAuth, this would require far less integration than the SPML based approach would.</p>
<p>Mapping the concepts, the <em>RPs Provisioning Service</em> becomes the <em>OAuth Consumer</em>, while the <em>IdPs Provisioning Service</em> becomes the <em>OAuth Service Provider</em>. The interactions are outlined in the diagram below (greatly simplified for the purposes of this discussion).</p>
<p><img class="aligncenter size-full wp-image-726" title="OAuth for Fed-Prov" src="http://blog.talkingidentity.com/wp-content/uploads/2009/11/OAuth-for-Fed-Prov.jpg" alt="OAuth for Fed-Prov" width="500" height="312" /></p>
<h3>The Challenge</h3>
<p>But when you look at the actors involved in OAuth, you run into one problem &#8211; OAuth was defined with users in mind, not enterprises. So you find the User as part of the protocol, but nothing that would allow the Enterprise to have a say in the exchange. And this raises an interesting challenge.</p>
<p>Just like there are security issues to resolve in the OpenID protocol for it to satisfy enterprise requirements, there are policy challenges that would need to be resolved in the OAuth exchange as well. Connecting the services only requires that the user in the flow provide their assent, but if OAuth were to step in as a federated provisioning protocol, it would require some way for the enterprise to inject (fine-grained) business policy into the exchange. And what if approval workflow needs to enter the picture?</p>
<p>One thought would be to introduce an <a href="http://www.openliberty.org/wiki/index.php/IGF_Introduction" target="_blank">IGF</a> style declarative policy mechanism that would allow the services on each side of the exchange to declare intent and policy, thereby allowing some automated decision making that ensures that security and business policies are honored by the exchange. Because when you are talking about fed-prov, a one-size-fits-all construct will be a non-starter.</p>
<p>My posting on twitter did generate some good feedback from folks like <a href="http://twitter.com/xmlgrrl" target="_blank">Eve Maler</a> and <a href="http://twitter.com/itickr" target="_blank">Ashish Jain</a>. I am interested to get people&#8217;s thoughts on the viability of this idea, and whether you think adding OAuth to provisioning systems would be part of the move to enabling enterprise identity management systems for the cloud.</p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/cloud-identity-model" rel="tag">Cloud Identity Model</a>, <a href="http://blog.talkingidentity.com/tag/federated-provisioning" rel="tag">Federated Provisioning</a>, <a href="http://blog.talkingidentity.com/tag/oauth" rel="tag">OAuth</a>, <a href="http://blog.talkingidentity.com/tag/spml" rel="tag">SPML</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html%26amp%3Btitle%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F%26amp%3Bbodytext%3DI%2520spent%2520an%2520interesting%2520week%2520at%2520HQ%2520last%2520week%252C%2520trying%2520to%2520deal%2520with%2520some%2520of%2520the%2520craziness%2520that%2520occurs%2520every%2520time%2520a%2520major%2520release%2520is%2520on%2520its%2520way.%2520But%2520far%2520more%2520interesting%2520were%2520all%2520the%2520identity%2520management%2520conversations%2520I%2520engaged%2520in%2520during%2520the%2520course%2520of%2520the';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html%26amp%3Bt%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html%26amp%3Btitle%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html%26amp%3Btitle%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F%26amp%3Bannotation%3DI%2520spent%2520an%2520interesting%2520week%2520at%2520HQ%2520last%2520week%252C%2520trying%2520to%2520deal%2520with%2520some%2520of%2520the%2520craziness%2520that%2520occurs%2520every%2520time%2520a%2520major%2520release%2520is%2520on%2520its%2520way.%2520But%2520far%2520more%2520interesting%2520were%2520all%2520the%2520identity%2520management%2520conversations%2520I%2520engaged%2520in%2520during%2520the%2520course%2520of%2520the';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html%26amp%3Btitle%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F%26amp%3Bnotes%3DI%2520spent%2520an%2520interesting%2520week%2520at%2520HQ%2520last%2520week%252C%2520trying%2520to%2520deal%2520with%2520some%2520of%2520the%2520craziness%2520that%2520occurs%2520every%2520time%2520a%2520major%2520release%2520is%2520on%2520its%2520way.%2520But%2520far%2520more%2520interesting%2520were%2520all%2520the%2520identity%2520management%2520conversations%2520I%2520engaged%2520in%2520during%2520the%2520course%2520of%2520the';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html%26amp%3Btitle%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html%26amp%3Bh%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html%2520Can%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DCan%2520OAuth%2520do%2520what%2520SPML%2520hasn%2527t%253F%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F11%252Fcan-oauth-do-what-spml-hasnt.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/11/can-oauth-do-what-spml-hasnt.html/feed</wfw:commentRss>
		<slash:comments>8</slash:comments>
		</item>
		<item>
		<title>Screencast of my OpenWorld Session on &#8220;IdM and the Cloud&#8221;</title>
		<link>http://blog.talkingidentity.com/2009/10/screencast-of-my-openworld-session-on-idm-and-the-cloud.html</link>
		<comments>http://blog.talkingidentity.com/2009/10/screencast-of-my-openworld-session-on-idm-and-the-cloud.html#comments</comments>
		<pubDate>Fri, 16 Oct 2009 19:20:21 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Identity Services]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Cloud Identity Model]]></category>
		<category><![CDATA[OOW09]]></category>
		<category><![CDATA[Oracle OpenWorld]]></category>
		<category><![CDATA[Oracle_IDM]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=682</guid>
		<description><![CDATA[On Monday, I presented at Oracle OpenWorld on the topic of &#8220;Identity Management and the Cloud: Stormy Days Ahead?&#8220;. The title proved to be a little too prescient, because the weather in San Francisco was pretty nasty. And as you can imagine, the number of jokes made about this became all to predictable.
Unfortunate coincidences on [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.oracle.com/us/openworld/index.htm"><img class="alignright" title="Oracle OpenWorld 2009" src="http://oracleimg.com/admin/images/oow09/ocom_oowsf09_reg_banner.gif" alt="" width="185" height="125" /></a>On Monday, I presented at Oracle OpenWorld on the topic of &#8220;<strong>Identity Management and the Cloud: Stormy Days Ahead?</strong>&#8220;. The title proved to be a little too prescient, because the weather in San Francisco was pretty nasty. And as you can imagine, the number of jokes made about this became all to predictable.</p>
<p>Unfortunate coincidences on the title aside, the overall response to my session was quite positive, especially from folks whose opinions I really respect like <a href="http://bit.ly/3iVPOq" target="_blank">Bob Blakley</a> and Lori Rowland from the Burton Group. There was general agreement that widespread adoption of Cloud Computing is going to be a major disruption on the existing evolutionary path that Identity Management has been following. And adoption of the Identity Services model is a major component to readying IdM for the Cloud.</p>
<p>Check out the screencast (slides with audio of the session) of my session below. Registered attendees of OpenWorld can download the presentation itself and the MP3 audio recording of the session from <a href="http://bit.ly/1OgIvs" target="_blank">OpenWorld On-Demand</a> (just login with the Username and Password you created during your OOW registration).</p>
<div id="__ss_2222693" style="width: 425px; text-align: left;"><a style="font:14px Helvetica,Arial,Sans-serif;display:block;margin:12px 0 3px 0;text-decoration:underline;" title="IdM And The Cloud: Stormy Days Ahead?" href="http://bit.ly/bRO1u">IdM And The Cloud: Stormy Days Ahead?</a><object style="margin:0px" classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="425" height="355" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowScriptAccess" value="always" /><param name="src" value="http://static.slidesharecdn.com/swf/ssplayer2.swf?doc=s309525-idmandthecloudstormydaysahead-091014121834-phpapp02&amp;rel=0&amp;stripped_title=idm-and-the-cloud-stormy-days-ahead" /><param name="allowfullscreen" value="true" /><embed style="margin:0px" type="application/x-shockwave-flash" width="425" height="355" src="http://static.slidesharecdn.com/swf/ssplayer2.swf?doc=s309525-idmandthecloudstormydaysahead-091014121834-phpapp02&amp;rel=0&amp;stripped_title=idm-and-the-cloud-stormy-days-ahead" allowscriptaccess="always" allowfullscreen="true"></embed></object></p>
<div style="font-size: 11px; font-family: tahoma,arial; height: 26px; padding-top: 2px;">View more <a style="text-decoration:underline;" href="http://www.slideshare.net/">presentations</a> from <a style="text-decoration:underline;" href="http://bit.ly/eYtlC">Nishant Kaushik</a>.</div>
</div>
<p>The audio includes the questions that were asked of me, and turns out that the questions didn&#8217;t record well and I forgot to repeat them. Hopefully my answers are cogent enough that you get an idea of what questions were asked. I did want to follow up here on this blog post a few of those answers:</p>
<ul>
<li>A question came up regarding the licensing terms for Oracle IdM products when they are being used in a cloud environment (specifically, by organizations that are going to be Cloud Providers of Identity Services). The biggest challenge for such organizations is that they cannot accurately estimate the number of users, or other such variables licensing is typically based on, beforehand, which creates uncertainty for them as to the cost they will have to bear. After the session, I confirmed with our PM team that there is special licensing available for ISVs. Talk to your Oracle sales rep about this if interested.</li>
<li>Another question came up regarding the impact of all this on standards like SPML. I believe my answer covered my opinion on the greater emphasis the cloud identity model will put on the evolution of these standards, especially SPML, which has been languishing. Follow up conversations with some of the original architects of the SPML standard and others involved in standards efforts brought up that the communities responsible for these standards are looking at this very hard and are gearing up efforts to address this. So stay tuned for more on that.</li>
<li>A question was asked regarding Just-In-Time Deprovisioning of access to cloud-based assets. This is something <a href="http://bit.ly/4lX6Wr">I discussed quite a bit in a blog conversation</a> with folks like <a href="http://www.tuesdaynight.org/2009/02/05/will-the-real-federated-provisioning-please-stand-up.html">Ian Glazer</a> and <a href="http://eternallyoptimistic.com/2009/02/05/federated-de-provisioning/">Pam Dingle</a> a while back. So check out that <a href="http://bit.ly/4lX6Wr">post</a> and the related thread.</li>
</ul>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/cloud-identity-model" rel="tag">Cloud Identity Model</a>, <a href="http://blog.talkingidentity.com/tag/identity-services" rel="tag">Identity Services</a>, <a href="http://blog.talkingidentity.com/tag/oow09" rel="tag">OOW09</a>, <a href="http://blog.talkingidentity.com/tag/oracle-openworld" rel="tag">Oracle OpenWorld</a>, <a href="http://blog.talkingidentity.com/tag/oracle_idm" rel="tag">Oracle_IDM</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html%26amp%3Btitle%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522%26amp%3Bbodytext%3DOn%2520Monday%252C%2520I%2520presented%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520of%2520%2522Identity%2520Management%2520and%2520the%2520Cloud%253A%2520Stormy%2520Days%2520Ahead%253F%2522.%2520The%2520title%2520proved%2520to%2520be%2520a%2520little%2520too%2520prescient%252C%2520because%2520the%2520weather%2520in%2520San%2520Francisco%2520was%2520pretty%2520nasty.%2520And%2520as%2520you%2520can%2520imagine%252C%2520the%2520numb';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html%26amp%3Bt%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html%26amp%3Btitle%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html%26amp%3Btitle%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522%26amp%3Bannotation%3DOn%2520Monday%252C%2520I%2520presented%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520of%2520%2522Identity%2520Management%2520and%2520the%2520Cloud%253A%2520Stormy%2520Days%2520Ahead%253F%2522.%2520The%2520title%2520proved%2520to%2520be%2520a%2520little%2520too%2520prescient%252C%2520because%2520the%2520weather%2520in%2520San%2520Francisco%2520was%2520pretty%2520nasty.%2520And%2520as%2520you%2520can%2520imagine%252C%2520the%2520numb';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html%26amp%3Btitle%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522%26amp%3Bnotes%3DOn%2520Monday%252C%2520I%2520presented%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520of%2520%2522Identity%2520Management%2520and%2520the%2520Cloud%253A%2520Stormy%2520Days%2520Ahead%253F%2522.%2520The%2520title%2520proved%2520to%2520be%2520a%2520little%2520too%2520prescient%252C%2520because%2520the%2520weather%2520in%2520San%2520Francisco%2520was%2520pretty%2520nasty.%2520And%2520as%2520you%2520can%2520imagine%252C%2520the%2520numb';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html%26amp%3Btitle%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html%26amp%3Bh%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html%2520Screencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DScreencast%2520of%2520my%2520OpenWorld%2520Session%2520on%2520%2522IdM%2520and%2520the%2520Cloud%2522%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fscreencast-of-my-openworld-session-on-idm-and-the-cloud.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/10/screencast-of-my-openworld-session-on-idm-and-the-cloud.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>I&#8217;ll be talking at OpenWorld on IdM and the Cloud</title>
		<link>http://blog.talkingidentity.com/2009/10/ill-be-talking-at-openworld-on-idm-and-the-cloud.html</link>
		<comments>http://blog.talkingidentity.com/2009/10/ill-be-talking-at-openworld-on-idm-and-the-cloud.html#comments</comments>
		<pubDate>Thu, 01 Oct 2009 17:08:16 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Identity Services]]></category>
		<category><![CDATA[Insight IdM]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[OpenWorld]]></category>
		<category><![CDATA[Oracle OpenWorld]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=672</guid>
		<description><![CDATA[As I mentioned at the end of my last post, I&#8217;ll be speaking at Oracle OpenWorld on the topic &#8220;Identity Management and the Cloud: Stormy Days Ahead?&#8220;.This year, I got a slot that is at a far more reasonable hour. In fact, it is after the morning keynotes on Monday, and before the general sessions [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.oracle.com/us/openworld/index.htm"><img class="alignleft" title="Oracle OpenWorld 2009" src="http://oracleimg.com/admin/images/oow09/ocom_oowsf09_reg_banner.gif" alt="" width="185" height="125" /></a>As I mentioned at the end of my last post, I&#8217;ll be speaking at Oracle OpenWorld on the topic <strong>&#8220;Identity Management and the Cloud: Stormy Days Ahead?</strong>&#8220;.This year, I got a slot that is at a far more reasonable hour. In fact, it is after the morning keynotes on Monday, and before the general sessions with our SVPs, so I feel a little bit like a warm up act. Here are the details:</p>
<ul>
<li><strong>Session ID: </strong>S309525</li>
<li><strong>Location: </strong>Moscone South Room 308</li>
<li><strong>Date and Time: </strong>10/12/2009 | 11:30am-12:30pm</li>
</ul>
<p>Below is the abstract for the session, in which I plan on expanding a great deal on the <a href="http://blog.talkingidentity.com/2009/09/identity-services-the-cloud-podcast-now-available.html">presentation I did in the webinar with KuppingerCole</a>:</p>
<blockquote><p><img src="http://www20.cplan.com/cc221_new/images/hp_spacer.gif" alt="" width="2" height="1" />Cloud computing is about to revolutionize enterprise IT and architecture. But leading industry analysts see security as a gating factor preventing enterprise adoption of cloud solutions, as enterprises grapple with the unique characteristics of cloud security and the challenges of compliance and governance. This session outlines key identity management considerations for evaluating a move to the cloud. It discusses how enterprises can leverage their existing identity and access management infrastructure and the principles of service-oriented security and standards-based interactions to secure their assets in the cloud. It also looks at the prospects for identity management as a service and how it will affect cloud computing&#8217;s future.</p></blockquote>
<p>As I prepare for my talk, I found myself revisiting some of the previous talks I gave at OpenWorld the last few years. It was very interesting to see how my vision for Identity Services has evolved over that time. I found it a most amusing exercise, so I thought I would extend the courtesy to my readers. To that end, I have uploaded my previous OpenWorld presentations to <a href="http://bit.ly/eYtlC">my Slideshare page</a> (you can also get to them from the links on my <a href="http://blog.talkingidentity.com/speaking">Speaking</a> page). I can&#8217;t believe I thought the <em>Love Guru</em> angle was a good one to take for a tech talk <img src='http://blog.talkingidentity.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p>If you are going to be attending OpenWorld, you can pre-register for my session using the <a href="http://www35.cplan.com/sb221/login.jsp">Schedule Builder tool</a> for OpenWorld attendees. And as always, ping me on email/LinkedIn/Twitter if you want to meet up that week. Look forward to seeing you there.</p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/identity-services" rel="tag">Identity Services</a>, <a href="http://blog.talkingidentity.com/tag/openworld" rel="tag">OpenWorld</a>, <a href="http://blog.talkingidentity.com/tag/oracle-openworld" rel="tag">Oracle OpenWorld</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html%26amp%3Btitle%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud%26amp%3Bbodytext%3DAs%2520I%2520mentioned%2520at%2520the%2520end%2520of%2520my%2520last%2520post%252C%2520I%2527ll%2520be%2520speaking%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2522Identity%2520Management%2520and%2520the%2520Cloud%253A%2520Stormy%2520Days%2520Ahead%253F%2522.This%2520year%252C%2520I%2520got%2520a%2520slot%2520that%2520is%2520at%2520a%2520far%2520more%2520reasonable%2520hour.%2520In%2520fact%252C%2520it%2520is%2520after%2520the%2520morning%2520keyno';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html%26amp%3Bt%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html%26amp%3Btitle%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html%26amp%3Btitle%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud%26amp%3Bannotation%3DAs%2520I%2520mentioned%2520at%2520the%2520end%2520of%2520my%2520last%2520post%252C%2520I%2527ll%2520be%2520speaking%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2522Identity%2520Management%2520and%2520the%2520Cloud%253A%2520Stormy%2520Days%2520Ahead%253F%2522.This%2520year%252C%2520I%2520got%2520a%2520slot%2520that%2520is%2520at%2520a%2520far%2520more%2520reasonable%2520hour.%2520In%2520fact%252C%2520it%2520is%2520after%2520the%2520morning%2520keyno';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html%26amp%3Btitle%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud%26amp%3Bnotes%3DAs%2520I%2520mentioned%2520at%2520the%2520end%2520of%2520my%2520last%2520post%252C%2520I%2527ll%2520be%2520speaking%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2522Identity%2520Management%2520and%2520the%2520Cloud%253A%2520Stormy%2520Days%2520Ahead%253F%2522.This%2520year%252C%2520I%2520got%2520a%2520slot%2520that%2520is%2520at%2520a%2520far%2520more%2520reasonable%2520hour.%2520In%2520fact%252C%2520it%2520is%2520after%2520the%2520morning%2520keyno';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html%26amp%3Btitle%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html%26amp%3Bh%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html%2520I%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DI%2527ll%2520be%2520talking%2520at%2520OpenWorld%2520on%2520IdM%2520and%2520the%2520Cloud%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F10%252Fill-be-talking-at-openworld-on-idm-and-the-cloud.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/10/ill-be-talking-at-openworld-on-idm-and-the-cloud.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Identity Services &amp; the Cloud [Podcast now available]</title>
		<link>http://blog.talkingidentity.com/2009/09/identity-services-the-cloud-podcast-now-available.html</link>
		<comments>http://blog.talkingidentity.com/2009/09/identity-services-the-cloud-podcast-now-available.html#comments</comments>
		<pubDate>Tue, 22 Sep 2009 21:19:09 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Identity Services]]></category>
		<category><![CDATA[Cloud Computing]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=647</guid>
		<description><![CDATA[My webinar with KuppingerCole on the topic &#8220;Identity Services and the Cloud: What Every Enterprise Should Know&#8221; went pretty well yesterday. KuppingerCole has made the recording available for viewing, which you can download here (you have to register for a free account; trust me, its worth it). Or you can just check out the deck [...]]]></description>
			<content:encoded><![CDATA[<p>My webinar with KuppingerCole on the topic &#8220;<strong>Identity Services and the Cloud: What Every Enterprise Should Know</strong>&#8221; went pretty well yesterday. KuppingerCole has made the recording available for viewing, which you can download <a href="http://bit.ly/22CIkK">here</a> (you have to register for a free account; trust me, its worth it). Or you can just <a href="http://bit.ly/EFgpm">check out the deck</a> I presented.</p>
<p>It started off with Martin Kuppinger talking about his views on cloud computing and identity management. I then spoke for about half an hour on how I think cloud computing will disrupt traditional enterprise identity management &#8211; but in a good way.</p>
<div id="attachment_648" class="wp-caption aligncenter" style="width: 510px"><a href="http://blog.talkingidentity.com/wp-content/uploads/2009/09/idm_disrupted.jpg"><img class="size-full wp-image-648" title="IdM disrupted by the Cloud" src="http://blog.talkingidentity.com/wp-content/uploads/2009/09/idm_disrupted.jpg" alt="Enterprise IdM, Interrupted" width="500" height="264" /></a><p class="wp-caption-text">Enterprise IdM, Interrupted</p></div>
<p>More than anything else, cloud computing is going to accelerate the evolution of identity management to a services-based model. I have, of course, been talking about <a href="http://blog.talkingidentity.com/tag/identity-services">identity services</a> on this blog and <a href="http://blog.talkingidentity.com/speaking">at OpenWorld and other forums</a> for quite a while now. But the need for good security and controls in the completely elastic, plug-and-play world of the cloud mandates that identity be externalized into an infrastructure layer.</p>
<p>I wish we had left more time for questions during the webinar, because I would have loved to hear from folks about their thoughts on the topic. Hopefully there will be a chance for discussion when I speak on this at Oracle OpenWorld (session details below). In the meantime, check out the <a href="http://bit.ly/22CIkK">webinar recording</a> or <a href="http://bit.ly/EFgpm">my deck</a>. And as always, I encourage you to leave me some comments.</p>
<h4><a href="http://www.oracle.com/us/openworld/index.htm"><img class="alignleft" title="Oracle OpenWorld 2009" src="http://oracleimg.com/admin/images/oow09/ocom_oowsf09_reg_banner.gif" alt="" width="185" height="125" /></a>Identity Management and the Cloud: Stormy Days Ahead?</h4>
<p>Session ID: S309525 | Moscone South Room 308</p>
<p>10/12/2009 | 11:30am-12:30pm</p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/identity-services" rel="tag">Identity Services</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html%26amp%3Btitle%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D%26amp%3Bbodytext%3DMy%2520webinar%2520with%2520KuppingerCole%2520on%2520the%2520topic%2520%2522Identity%2520Services%2520and%2520the%2520Cloud%253A%2520What%2520Every%2520Enterprise%2520Should%2520Know%2522%2520went%2520pretty%2520well%2520yesterday.%2520KuppingerCole%2520has%2520made%2520the%2520recording%2520available%2520for%2520viewing%252C%2520which%2520you%2520can%2520download%2520here%2520%2528you%2520have%2520to%2520register%2520';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html%26amp%3Bt%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html%26amp%3Btitle%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html%26amp%3Btitle%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D%26amp%3Bannotation%3DMy%2520webinar%2520with%2520KuppingerCole%2520on%2520the%2520topic%2520%2522Identity%2520Services%2520and%2520the%2520Cloud%253A%2520What%2520Every%2520Enterprise%2520Should%2520Know%2522%2520went%2520pretty%2520well%2520yesterday.%2520KuppingerCole%2520has%2520made%2520the%2520recording%2520available%2520for%2520viewing%252C%2520which%2520you%2520can%2520download%2520here%2520%2528you%2520have%2520to%2520register%2520';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html%26amp%3Btitle%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D%26amp%3Bnotes%3DMy%2520webinar%2520with%2520KuppingerCole%2520on%2520the%2520topic%2520%2522Identity%2520Services%2520and%2520the%2520Cloud%253A%2520What%2520Every%2520Enterprise%2520Should%2520Know%2522%2520went%2520pretty%2520well%2520yesterday.%2520KuppingerCole%2520has%2520made%2520the%2520recording%2520available%2520for%2520viewing%252C%2520which%2520you%2520can%2520download%2520here%2520%2528you%2520have%2520to%2520register%2520';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html%26amp%3Btitle%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html%26amp%3Bh%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html%2520Identity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DIdentity%2520Services%2520%2526%2520the%2520Cloud%2520%255BPodcast%2520now%2520available%255D%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidentity-services-the-cloud-podcast-now-available.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/09/identity-services-the-cloud-podcast-now-available.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Webinar &#8211; Identity Services and the Cloud</title>
		<link>http://blog.talkingidentity.com/2009/09/webinar-identity-services-and-the-cloud.html</link>
		<comments>http://blog.talkingidentity.com/2009/09/webinar-identity-services-and-the-cloud.html#comments</comments>
		<pubDate>Mon, 21 Sep 2009 14:38:04 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Ask Dr. K]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Identity Services]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=639</guid>
		<description><![CDATA[I&#8217;m doing a webinar with KuppingerCole on the topic of &#8220;Identity Services and the Cloud: What Every Enterprise Needs To Know&#8221; today at 11 am EST. Cloud security is widely viewed as the number one roadblock for enterprise adoption. At the same time, many are jumping into cloud computing without fully understanding what they are [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m doing a webinar with KuppingerCole on the topic of &#8220;Identity Services and the Cloud: What Every Enterprise Needs To Know&#8221; today at 11 am EST. Cloud security is widely viewed as the number one roadblock for enterprise adoption. At the same time, many are jumping into cloud computing without fully understanding what they are getting into. Without paying attention to the security and governance implications, any cost savings realized from moving to the cloud will actually evaporate when an enterprise either tries to retrofit their existing business policies and controls into the cloud environment, or when they have to deal with the fallout from a breach or issue. Identity Services is a critical piece in making cloud computing enterprise ready.</p>
<p>The webinar is today, Monday Sep 21st, 11 am EST (yeah, I know, short notice. But hey, if you were following me on Twitter&#8230;). You can register for the webinar (it&#8217;s free!) <a href="http://bit.ly/13eTCU">here</a>.</p>
<p>And if you miss it, it will be available as a podcast later.</p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/identity-services" rel="tag">Identity Services</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html%26amp%3Btitle%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud%26amp%3Bbodytext%3DI%2527m%2520doing%2520a%2520webinar%2520with%2520KuppingerCole%2520on%2520the%2520topic%2520of%2520%2522Identity%2520Services%2520and%2520the%2520Cloud%253A%2520What%2520Every%2520Enterprise%2520Needs%2520To%2520Know%2522%2520today%2520at%252011%2520am%2520EST.%2520Cloud%2520security%2520is%2520widely%2520viewed%2520as%2520the%2520number%2520one%2520roadblock%2520for%2520enterprise%2520adoption.%2520At%2520the%2520same%2520time%252C%2520m';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html%26amp%3Bt%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html%26amp%3Btitle%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html%26amp%3Btitle%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud%26amp%3Bannotation%3DI%2527m%2520doing%2520a%2520webinar%2520with%2520KuppingerCole%2520on%2520the%2520topic%2520of%2520%2522Identity%2520Services%2520and%2520the%2520Cloud%253A%2520What%2520Every%2520Enterprise%2520Needs%2520To%2520Know%2522%2520today%2520at%252011%2520am%2520EST.%2520Cloud%2520security%2520is%2520widely%2520viewed%2520as%2520the%2520number%2520one%2520roadblock%2520for%2520enterprise%2520adoption.%2520At%2520the%2520same%2520time%252C%2520m';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html%26amp%3Btitle%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud%26amp%3Bnotes%3DI%2527m%2520doing%2520a%2520webinar%2520with%2520KuppingerCole%2520on%2520the%2520topic%2520of%2520%2522Identity%2520Services%2520and%2520the%2520Cloud%253A%2520What%2520Every%2520Enterprise%2520Needs%2520To%2520Know%2522%2520today%2520at%252011%2520am%2520EST.%2520Cloud%2520security%2520is%2520widely%2520viewed%2520as%2520the%2520number%2520one%2520roadblock%2520for%2520enterprise%2520adoption.%2520At%2520the%2520same%2520time%252C%2520m';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html%26amp%3Btitle%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html%26amp%3Bh%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html%2520Webinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DWebinar%2520-%2520Identity%2520Services%2520and%2520the%2520Cloud%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fwebinar-identity-services-and-the-cloud.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/09/webinar-identity-services-and-the-cloud.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IdM and the Cloud: A Chance To Do Things Right</title>
		<link>http://blog.talkingidentity.com/2009/09/idm-and-the-cloud-a-chance-to-do-things-right.html</link>
		<comments>http://blog.talkingidentity.com/2009/09/idm-and-the-cloud-a-chance-to-do-things-right.html#comments</comments>
		<pubDate>Mon, 14 Sep 2009 18:28:01 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Insight IdM]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Federated Identity]]></category>
		<category><![CDATA[Identity Services]]></category>
		<category><![CDATA[User-Centric Identity]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=630</guid>
		<description><![CDATA[Over 2 months ago (wow, time really flies when you are trying to keep up with the Twitter firehose), I wrote an introductory post  to a topic that I am beginning to examine in some detail &#8211; the impact Cloud Computing will have on Identity Management. Back in May, I tweeted that I believe [...]]]></description>
			<content:encoded><![CDATA[<p>Over 2 months ago (wow, time really flies when you are trying to keep up with the Twitter firehose), I wrote an <a href="http://blog.talkingidentity.com/2009/07/identity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html">introductory post </a> to a topic that I am beginning to examine in some detail &#8211; the impact Cloud Computing will have on Identity Management. Back in May, I <a href="http://twitter.com/NishantK/statuses/1739409866">tweeted</a> that I believe cloud computing will change how enterprises approach identity management in much the same way that compliance did a few years ago. And last month at Burtons Catalyst conference, we saw a lot of evidence of that, most notably at the <a href="http://identityblog.burtongroup.com/bgidps/2009/07/cloud-sso-interop-demonstration.html" target="_blank">cloud computing single sign-on interop</a>. In fact, I will be doing a webinar with Martin Kuppinger (Kuppinger Cole) on the topic of <a href="http://bit.ly/13eTCU">Identity Services and the Cloud</a> next week on the 21st of September (<em>free registration</em>), and <a href="http://blog.talkingidentity.com/speaking">speaking about it</a> at Oracle OpenWorld as well.</p>
<h3>The Cloud Hanging Over Us</h3>
<p>At Catalyst, Dan Blum stated that cloud computing is not ready to be a serious player in the enterprise when it comes to applications that handle sensitive data (some would argue that covers most enterprise apps). This reflects the biggest obstacle facing cloud computing acceptance &#8211; <strong>Trust</strong>. Enterprises need to be able to rely on cloud providers (<em>read: have SLAs</em>) for availability, security, performance, governance and privacy. But how can they do that when there are so many unanswered questions (as I pointed out in <a href="http://blog.talkingidentity.com/2009/07/identity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html">my previous post</a>) and a lack of transparency on the part of the cloud providers? How can an Enterprise feel comfortable when Google says &#8220;<em>The service is neither designed nor intended for high risk activities</em>&#8221; or Amazons contract states &#8220;<em>We are not responsible for any unauthorized access to, alteration of, or the deletion, destruction, damage, loss or failure to store any of, Your Content (as defined in Section 10.2), your Applications, or other data&#8230;</em>&#8221;</p>
<h3>Looking at the Silver Lining</h3>
<p>When people talk about the business drivers for cloud computing, it is often summed up as the following list: Cost, Flexibility, Simplicity, Availability. But why not Security? Cloud architecture actually lends itself to a far more robust and reliable security architecture than anything that has come before. Everything can be built right into the platform and the applications, and the need for vendors to support multiple customers in a dynamic environment means that all of it has to be standardized and easy to put up/take down.</p>
<p>So what are the major identity management pieces in this puzzle?</p>
<ul>
<li><strong>Federated Authentication</strong> that spans the enterprise environment and the cloud environment
<ul>
<li>Alternatively (or additionally), consider supporting <strong>User-Centric Identity</strong></li>
</ul>
</li>
<li>Strong <strong>User and Access Lifecycle Management</strong> (Provisioning/De-Provisioning Capabilities)</li>
<li>A <strong>Claims-Based Authorization</strong> model, coupled with strong <strong>XACML-based Entitlement Management</strong></li>
<li><strong>Enterprise Identity Providers</strong> protected by IGF-style policy controls</li>
<li><strong>DLP</strong> (Data Leakage Protection) tools that protect sensitive data moved to the cloud</li>
<li>A standardized <strong>Audit Framework</strong> for creating, managing and analyzing audit trails across cloud services</li>
</ul>
<p>In my follow-up posts (and in the talks I am giving), I will look at each of these in more detail. In the meantime, register for <a href="http://bit.ly/13eTCU" target="_blank">the KuppingerCole webinar</a> I&#8217;ll be doing and lets exchange some thoughts.</p>
<p><a href="http://geekandpoke.typepad.com/geekandpoke/2009/03/simply-explained-part-37-agility.html"><img class="alignnone" title="Get Me The Cloud" src="http://geekandpoke.typepad.com/.a/6a00d8341d3df553ef011279196d6828a4-800wi" alt="" width="800" height="1134" /></a></p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/federated-identity" rel="tag">Federated Identity</a>, <a href="http://blog.talkingidentity.com/tag/identity-services" rel="tag">Identity Services</a>, <a href="http://blog.talkingidentity.com/tag/user-centric-identity" rel="tag">User-Centric Identity</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html%26amp%3Btitle%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right%26amp%3Bbodytext%3DOver%25202%2520months%2520ago%2520%2528wow%252C%2520time%2520really%2520flies%2520when%2520you%2520are%2520trying%2520to%2520keep%2520up%2520with%2520the%2520Twitter%2520firehose%2529%252C%2520I%2520wrote%2520an%2520introductory%2520post%2520%2520to%2520a%2520topic%2520that%2520I%2520am%2520beginning%2520to%2520examine%2520in%2520some%2520detail%2520-%2520the%2520impact%2520Cloud%2520Computing%2520will%2520have%2520on%2520Identity%2520Management.';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html%26amp%3Bt%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html%26amp%3Btitle%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html%26amp%3Btitle%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right%26amp%3Bannotation%3DOver%25202%2520months%2520ago%2520%2528wow%252C%2520time%2520really%2520flies%2520when%2520you%2520are%2520trying%2520to%2520keep%2520up%2520with%2520the%2520Twitter%2520firehose%2529%252C%2520I%2520wrote%2520an%2520introductory%2520post%2520%2520to%2520a%2520topic%2520that%2520I%2520am%2520beginning%2520to%2520examine%2520in%2520some%2520detail%2520-%2520the%2520impact%2520Cloud%2520Computing%2520will%2520have%2520on%2520Identity%2520Management.';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html%26amp%3Btitle%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right%26amp%3Bnotes%3DOver%25202%2520months%2520ago%2520%2528wow%252C%2520time%2520really%2520flies%2520when%2520you%2520are%2520trying%2520to%2520keep%2520up%2520with%2520the%2520Twitter%2520firehose%2529%252C%2520I%2520wrote%2520an%2520introductory%2520post%2520%2520to%2520a%2520topic%2520that%2520I%2520am%2520beginning%2520to%2520examine%2520in%2520some%2520detail%2520-%2520the%2520impact%2520Cloud%2520Computing%2520will%2520have%2520on%2520Identity%2520Management.';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html%26amp%3Btitle%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html%26amp%3Bh%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html%2520IdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DIdM%2520and%2520the%2520Cloud%253A%2520A%2520Chance%2520To%2520Do%2520Things%2520Right%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F09%252Fidm-and-the-cloud-a-chance-to-do-things-right.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/09/idm-and-the-cloud-a-chance-to-do-things-right.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Burton Catalyst 2009: The Twisted Web We Weave</title>
		<link>http://blog.talkingidentity.com/2009/08/burton-catalyst-2009-the-twisted-web-we-weave.html</link>
		<comments>http://blog.talkingidentity.com/2009/08/burton-catalyst-2009-the-twisted-web-we-weave.html#comments</comments>
		<pubDate>Wed, 05 Aug 2009 20:02:09 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Identity Services]]></category>
		<category><![CDATA[Insight IdM]]></category>
		<category><![CDATA[Authorization]]></category>
		<category><![CDATA[Burton Catalyst Conference]]></category>
		<category><![CDATA[Catalyst09]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[eBay]]></category>
		<category><![CDATA[Kantara Initiative]]></category>
		<category><![CDATA[Oracle_IDM]]></category>
		<category><![CDATA[Project Concordia]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=581</guid>
		<description><![CDATA[I&#8217;m finally settling back into work after a wonderful week out in sunny San Diego at Burton Group&#8217;s annual Catalyst Conference. And it wasn&#8217;t just the weather outside that was wonderful. Inside you could find some thought-provoking sessions, inspiring discussions and great people. It&#8217;s given me way too much to blog about, and I hope [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m finally settling back into work after a wonderful week out in sunny San Diego at <strong>Burton Group</strong>&#8217;s annual <strong>Catalyst Conference</strong>. And it wasn&#8217;t just the weather outside that was wonderful. Inside you could find some thought-provoking sessions, inspiring discussions and great people. It&#8217;s given me way too much to blog about, and I hope to be able to put some of it out here. But if you are interested, I have captured <a href="http://blog.talkingidentity.com/downloads/my-catalyst-2009-tweet-stream">my tweet stream from the conference</a> (since Twitter search only goes back a few days), though it can be rough reading. But as Dave Kearns <a href="http://vquill.com/2009/07/dearth-of-blogging.html" target="_blank">tried to remind us tweeters</a>, we shouldn&#8217;t forget the value of a well written blog post (or two).</p>
<h3>The SIG Meetings</h3>
<p>For me, the conference was divided into two parts. Monday and Tuesday I attended a few SIG meetings on topics that were varied yet highly interconnected. Monday was a meeting of the Concordia Workshop, which is now a <a href="http://kantarainitiative.org/confluence/display/concordia/Home" target="_blank">discussion group</a> under the new Kantara Initiative. The focus of the meeting was <em><strong>Use Cases driving Identity in Enterprise 2.0: The Consumerization of IT</strong></em>. The ever intrepid Eve Maler has <a href="http://projectconcordia.org/index.php/Catalyst_pre-conference_workshop_agenda#Agenda" target="_blank">posted materials from the day</a> to the Concordia site, so you can check them out yourself. While the individual discussions covered all manner of areas, the connecting thread throughout was <strong>Authorization</strong>. There was a morning discussion where a panel talked about the progress made in the authorization space, from the <a href="http://lists.oasis-open.org/archives/xacml/200907/msg00019.html" target="_blank">XACML API contributed to the TC</a> by Oracle and Cisco, to the emergence of AuthZ as the critical service in the identity services reference architecture being developed in the Burton Group ISWG (which I have been participating in and writing about). <a href="http://twitter.com/MikeG514" target="_blank">Mike Gotta</a> and Alice Wang gave an excellent talk on the emerging concerns regarding social tools in the enterprise, and a lot of those concerns again boil down to authorization issues, in this case regarding data and information. Eve talked about <a href="http://www.xmlgrrl.com/blog/categories/protectserve/" target="_blank">her work on the ProtectServe protocol</a> that enables authorized data sharing from a user perspective. And the day finished with a talk on Levels of Assurance, a critical piece in allowing for partners to make informed authorization decisions.</p>
<p>Tuesday started with a meeting on <em><strong>Cloud Computing Security and Identity Management</strong></em>. As readers of my blog/twitter know, I have been saying for a while that cloud computing is going to have a major impact on the identity management business, in much the same way that compliance concerns did a few years ago. It is probably a sign of the immaturity of the market that the discussion was focused on describing the challenges to be solved rather than any solutions.</p>
<p>The meeting included a deep dive presentation by Liam Lynch, Ebay&#8217;s Chief Security Strategist, on how the auction giant tackles their internal cloud computing needs. There were a few points made during his presentation that I found interesting:</p>
<ul>
<li>eBay is into cloud computing as a provider, not a consumer, since they allow 3rd party developers to create their own auction sites on eBay infrastructure using a development kit called eBox</li>
<li>As such, eBay feels that security considerations have to be made inherent in cloud architecture as they cannot rely on these 3rd party developers to not make mistakes</li>
<li>eBay uses contextual behavior and reputation, including biometric analysis, as the underpinnings of its identity management strategy. Reputation and behavior analysis generate (over time) dynamic identity claims that then get used in access control decisions</li>
<li>eBay found RBAC to be a bad match for their performance requirements, and shifted to a claims-based model for authorization. In this model, claims are attached to the data object being accessed itself (sort of a next-generation ACL). The access then compares the claims the actor has at runtime with these to make an authorization decision.</li>
<li>Liam made the point that managing access through roles was a bad model for them, which is why they went claims-based. I understand the performance concerns that arise when evaluating RBAC at runtime, but for managing the grants of access, nothing beats a role-based model. So I was a little surprised by his statement. When I dug deeper, it turned out that they simply replaced RBAC with Organization-based AC, and not because of performance reasons but because of compliance reasons since the org change has approval attached while the role change did not. So it wasn&#8217;t really an issue with RBAC, just the implementation they had in-house.</li>
<li>Liam pointed out that a move to the cloud can be an opportunity to fix broken internal processes, since the cloud will amplify any issues you may have</li>
</ul>
<p>The meeting also had Nils Puhlmann, co-founder of the <a href="http://www.cloudsecurityalliance.org/" target="_blank"><strong>Cloud Security Alliance</strong></a>, speaking to the participants on the need to come up with a practical security checklist that all Cloud Service Providers could be measured against, so that enterprise customers can make accurate assessments of the risk with using a particular CSP. He called for greater vendor involvement and focus on the cloud, since the cost dynamics of the cloud make adoption inevitable. And that CSPs need to be more transparent about their security controls and policies.</p>
<p>Later that afternoon I attended the next meeting of the <em><strong>Identity Services Working Group</strong></em> that I&#8217;ve been participating in. There were a lot of new folks in the audience, so it was a good opportunity to recruit new blood into the effort. As Kevin Kampman presented the work that had been done previously on the Authentication service and laid out the effort lying ahead on the Authorization service, we got into highly spirited, and productive, discussions on the nature of the services architecture. One of the points made repeatedly (and which was echoed later in the week during the sessions) was the terminology issue that plagues the identity community, in this case around words like Policy (vs. policy). There was a strong sentiment from the group that policy management needs to be made part of the overall framework for it to work properly. And there was also a strong push from the group to try and condense the best of the prior efforts at defining AuthZ services into our vision.</p>
<p>While on the surface all of these SIGs were on different topics, I found them to be highly intertwined. Identity concerns in cloud computing are tied in directly to the need for an identity services architecture that allows cloud services to leverage enterprise identity (and therefore security) apparatus, thus reducing risk for the enterprise and providing compliance with both internal and regulatory controls. And Enteprise 2.0 is mostly about the intrusion of  cloud-based services like social media into the enterprise environment (or the extrusion of the enterprise into commercialized IT services, depending on how you want to look at it), where concerns about consistency of identity and controls are foremost in the minds of CIOs and CISOs everywhere. So while the discussion is still somewhat fragmented (as it probably should be at this time), I look forward to all of this coming together nicely in the future (maybe even at a future Catalyst conference).</p>
<p>I think I need to do a better job breaking these posts into smaller, more readable chunks. My next post(s) will focus on the sessions themselves.</p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/authorization" rel="tag">Authorization</a>, <a href="http://blog.talkingidentity.com/tag/burton-catalyst-conference" rel="tag">Burton Catalyst Conference</a>, <a href="http://blog.talkingidentity.com/tag/catalyst09" rel="tag">Catalyst09</a>, <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/ebay" rel="tag">eBay</a>, <a href="http://blog.talkingidentity.com/tag/identity-services" rel="tag">Identity Services</a>, <a href="http://blog.talkingidentity.com/tag/kantara-initiative" rel="tag">Kantara Initiative</a>, <a href="http://blog.talkingidentity.com/tag/oracle_idm" rel="tag">Oracle_IDM</a>, <a href="http://blog.talkingidentity.com/tag/project-concordia" rel="tag">Project Concordia</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html%26amp%3Btitle%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave%26amp%3Bbodytext%3DI%2527m%2520finally%2520settling%2520back%2520into%2520work%2520after%2520a%2520wonderful%2520week%2520out%2520in%2520sunny%2520San%2520Diego%2520at%2520Burton%2520Group%2527s%2520annual%2520Catalyst%2520Conference.%2520And%2520it%2520wasn%2527t%2520just%2520the%2520weather%2520outside%2520that%2520was%2520wonderful.%2520Inside%2520you%2520could%2520find%2520some%2520thought-provoking%2520sessions%252C%2520inspirin';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html%26amp%3Bt%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html%26amp%3Btitle%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html%26amp%3Btitle%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave%26amp%3Bannotation%3DI%2527m%2520finally%2520settling%2520back%2520into%2520work%2520after%2520a%2520wonderful%2520week%2520out%2520in%2520sunny%2520San%2520Diego%2520at%2520Burton%2520Group%2527s%2520annual%2520Catalyst%2520Conference.%2520And%2520it%2520wasn%2527t%2520just%2520the%2520weather%2520outside%2520that%2520was%2520wonderful.%2520Inside%2520you%2520could%2520find%2520some%2520thought-provoking%2520sessions%252C%2520inspirin';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html%26amp%3Btitle%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave%26amp%3Bnotes%3DI%2527m%2520finally%2520settling%2520back%2520into%2520work%2520after%2520a%2520wonderful%2520week%2520out%2520in%2520sunny%2520San%2520Diego%2520at%2520Burton%2520Group%2527s%2520annual%2520Catalyst%2520Conference.%2520And%2520it%2520wasn%2527t%2520just%2520the%2520weather%2520outside%2520that%2520was%2520wonderful.%2520Inside%2520you%2520could%2520find%2520some%2520thought-provoking%2520sessions%252C%2520inspirin';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html%26amp%3Btitle%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html%26amp%3Bh%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html%2520Burton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DBurton%2520Catalyst%25202009%253A%2520The%2520Twisted%2520Web%2520We%2520Weave%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F08%252Fburton-catalyst-2009-the-twisted-web-we-weave.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/08/burton-catalyst-2009-the-twisted-web-we-weave.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>The Twitter Break-In: Anything to learn here?</title>
		<link>http://blog.talkingidentity.com/2009/07/the-twitter-break-in-anything-to-learn-here.html</link>
		<comments>http://blog.talkingidentity.com/2009/07/the-twitter-break-in-anything-to-learn-here.html#comments</comments>
		<pubDate>Wed, 15 Jul 2009 15:49:49 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Insight IdM]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[OAAM]]></category>
		<category><![CDATA[Oracle_IDM]]></category>
		<category><![CDATA[Password Management]]></category>
		<category><![CDATA[Password Recovery Techniques]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=557</guid>
		<description><![CDATA[The answer is: Plenty.
In a nutshell, here is what happened as I understand it: A hacker named Hacker Croll (who has been a pain in Twitter&#8217;s behind for a while now) was able to gain access to the Gmail accounts of various twitter employees, including founder Evan Williams. He was then able to use the [...]]]></description>
			<content:encoded><![CDATA[<p>The answer is: Plenty.</p>
<p>In a nutshell, <a href="http://www.techcrunch.com/2009/07/14/twitters-ev-confirms-hacker-targeted-personal-accounts-attack-was-highly-distressing/" target="_blank">here is what happened</a> as I understand it: A hacker named <strong>Hacker Croll</strong> (who has been a pain in Twitter&#8217;s behind for a while now) was able to gain access to the Gmail accounts of various twitter employees, including founder <strong>Evan Williams</strong>. He was then able to use the regular password-recovery techniques that rely on email-based mechanisms to gain access to other services being used like <em>Paypal</em>, <em>GoDaddy</em>, <em>Amazon</em> and <em>Apple</em>. But most notably, he had access to the <em>Google Docs</em> service that the Twitter folks were using extensively to store sensitive corporate documents. This landed Hacker Croll a goldmine (that <a href="http://www.techcrunch.com/2009/07/14/in-our-inbox-hundreds-of-confidential-twitter-documents/" target="_blank">has been shared with TechCrunch</a>) of documents, including &#8220;financial projections, product plans and notes from executive strategy meetings&#8221;. Twitter has a lot to deal with here. But this is an important IdM and Cloud Computing related cautionary tale for all of us. And the takeaways, while obvious, bear repeating.</p>
<p>This episode underscores the fact that password recovery techniques that rely on email delivery of passwords or password-reset links are highly insecure. Secret question based mechanisms (aka <strong><em><a href="http://identityblog.burtongroup.com/bgidps/kba/" target="_blank">Static Knowledge-Based Authentication</a></em></strong>) are not that much more reliable either (anyone and everyone can find out the name of any celebrity&#8217;s first car, dog, mother&#8217;s maiden name, etc). Services that deal with sensitive information NEED to rely on <em><strong>Dynamic Knowledge-Based Authentication</strong></em> (where the data source for the authentication questions could be the content stored in the service itself, which only the users should have knowledge of) or <em><strong>Out-Of-Band Identity Proofing</strong></em> (something <a href="http://www.oracle.com/technology/products/id_mgmt/oaam/index.html" target="_blank">Oracle Adaptive Access Manager</a> can help with).</p>
<p>As more and more companies rely on the cloud, the security of cloud services (or lack thereof) needs to be evaluated very carefully, as will corporate security policies on access to those services. <em><strong>Strong passwords</strong></em> need to exist not only on the service access, but also on the accounts that have access to the service. Ideally, the service provider should support <em><strong>Multi-Factor Authentication</strong></em> and <em><strong>federated identity and authentication</strong></em> for higher identity assurance by corporate clients. And encryption of sensitive documents and data is a must. Cloud service providers need to understand the implications of entering the enterprise market, and that includes deploying enterprise-grade identity management and security technology.</p>
<p>Unfortunately this event will sow doubts in the minds of those that are considering using cloud-based services. Which is why we have to work hard to define the standards cloud services need to live up to. As Michael Arrington <a href="http://www.techcrunch.com/2009/07/15/our-reaction-to-your-reactions-on-the-twitter-confidential-documents-post/" target="_blank">so bluntly put it</a>:</p>
<blockquote><p>It’s not our fault that Google has a ridiculously easy way to get access to accounts via their password recovery question. It’s not our fault that Twitter stored all of these documents and sensitive information in the cloud and had easy-to-guess passwords and recovery questions.</p></blockquote>
<p>That is quite plainly an unacceptable state of affairs.</p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/oaam" rel="tag">OAAM</a>, <a href="http://blog.talkingidentity.com/tag/oracle_idm" rel="tag">Oracle_IDM</a>, <a href="http://blog.talkingidentity.com/tag/password-management" rel="tag">Password Management</a>, <a href="http://blog.talkingidentity.com/tag/password-recovery-techniques" rel="tag">Password Recovery Techniques</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html%26amp%3Btitle%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F%26amp%3Bbodytext%3DThe%2520answer%2520is%253A%2520Plenty.%250D%250A%250D%250AIn%2520a%2520nutshell%252C%2520here%2520is%2520what%2520happened%2520as%2520I%2520understand%2520it%253A%2520A%2520hacker%2520named%2520Hacker%2520Croll%2520%2528who%2520has%2520been%2520a%2520pain%2520in%2520Twitter%2527s%2520behind%2520for%2520a%2520while%2520now%2529%2520was%2520able%2520to%2520gain%2520access%2520to%2520the%2520Gmail%2520accounts%2520of%2520various%2520twitter%2520employees%252C%2520inclu';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html%26amp%3Bt%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html%26amp%3Btitle%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html%26amp%3Btitle%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F%26amp%3Bannotation%3DThe%2520answer%2520is%253A%2520Plenty.%250D%250A%250D%250AIn%2520a%2520nutshell%252C%2520here%2520is%2520what%2520happened%2520as%2520I%2520understand%2520it%253A%2520A%2520hacker%2520named%2520Hacker%2520Croll%2520%2528who%2520has%2520been%2520a%2520pain%2520in%2520Twitter%2527s%2520behind%2520for%2520a%2520while%2520now%2529%2520was%2520able%2520to%2520gain%2520access%2520to%2520the%2520Gmail%2520accounts%2520of%2520various%2520twitter%2520employees%252C%2520inclu';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html%26amp%3Btitle%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F%26amp%3Bnotes%3DThe%2520answer%2520is%253A%2520Plenty.%250D%250A%250D%250AIn%2520a%2520nutshell%252C%2520here%2520is%2520what%2520happened%2520as%2520I%2520understand%2520it%253A%2520A%2520hacker%2520named%2520Hacker%2520Croll%2520%2528who%2520has%2520been%2520a%2520pain%2520in%2520Twitter%2527s%2520behind%2520for%2520a%2520while%2520now%2529%2520was%2520able%2520to%2520gain%2520access%2520to%2520the%2520Gmail%2520accounts%2520of%2520various%2520twitter%2520employees%252C%2520inclu';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html%26amp%3Btitle%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html%26amp%3Bh%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html%2520The%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DThe%2520Twitter%2520Break-In%253A%2520Anything%2520to%2520learn%2520here%253F%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fthe-twitter-break-in-anything-to-learn-here.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/07/the-twitter-break-in-anything-to-learn-here.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Identity Management and Cloud Computing: This Ain&#8217;t No Shotgun Wedding</title>
		<link>http://blog.talkingidentity.com/2009/07/identity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html</link>
		<comments>http://blog.talkingidentity.com/2009/07/identity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html#comments</comments>
		<pubDate>Thu, 09 Jul 2009 19:48:49 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Identity Services]]></category>
		<category><![CDATA[Insight IdM]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[IaaS]]></category>
		<category><![CDATA[Oracle_IDM]]></category>
		<category><![CDATA[PaaS]]></category>
		<category><![CDATA[SaaS]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=534</guid>
		<description><![CDATA[This is the introductory post in a series I hope to write regarding Identity Management and Cloud Computing, leading up to a talk I will be giving at Oracle OpenWorld on the topic (details to come). But before we dive into the topic, I do need to lay some groundwork around some relevant concepts.
What Is [...]]]></description>
			<content:encoded><![CDATA[<p>This is the introductory post in a series I hope to write regarding <strong>Identity Management and Cloud Computing</strong>, leading up to a talk I will be giving at Oracle OpenWorld on the topic (details to come). But before we dive into the topic, I do need to lay some groundwork around some relevant concepts.</p>
<h3>What Is Cloud Computing?</h3>
<p>You&#8217;d think this would be easy, given how much everyone is talking about it. But a search on google will show you that there is actually <a href="http://news.cnet.com/8301-13953_3-9938949-80.html" target="_blank">a lot of debate on what the term stands for</a>. Cloud Computing is a fairly elastic term that has been shape-shifting over time to encompass more and more disciplines in the area of IT operations. For a detailed explanation, I would suggest checking out <a href="http://www.burtongroup.com/Guest/Pdf/CloudOverview.pdf" target="_blank">this (free) research paper</a> by the Burton Group. For the purpose of my discussion, I am going with the <a href="http://en.wikipedia.org/wiki/Cloud_computing" target="_blank">basic view</a> that Cloud Computing encompasses all those *aaS concepts we have been hearing about for years now that allow every single layer in the architecture of an application (including hardware) to be utilized as a service over the internet:</p>
<ul>
<li><strong>SaaS (Software as a Service):</strong> through which application services are offered (examples abound like Gmail, Salesforce.com, Zoho)</li>
<li><strong>PaaS (Platform as a Service): </strong>through which application platform/middleware services are offered (like the Google App Engine)</li>
<li><strong>IaaS (Infrastructure as a Service): </strong>through which underlying computing resources like processing,storage and networking are offered (think Amazon’s EC2)</li>
</ul>
<p><a href="http://www.echannelline.com/usa/story.cfm?item=24691" target="_blank">Gartner has said</a> that there are 5 basic attributes of a cloud computing model:</p>
<ul>
<li>It is service-based</li>
<li>It is scalable and elastic</li>
<li>It shares a pool of resources</li>
<li>It is metered by use (aka pay-as-you-go)</li>
<li>It uses internet technologies</li>
</ul>
<h3>Different Types of Clouds</h3>
<p>There has also been some <a href="http://datacenterdialog.blogspot.com/2009/01/are-internal-clouds-bogus.html" target="_blank">controversy around the concept of private clouds</a>, with different folks defining it differently, or even positing that there is no such thing. I think <a href="http://www.informationweek.com/news/software/hosted/showArticle.jhtml?articleID=216500083" target="_blank">Private Clouds</a> are real and different from traditional data centers, and essentially refer to cloud computing environments dedicated to a single tenant (thereby not adhering to the sharing attribute). The waters get muddied even further when you bring up the concept of <a href="http://en.wikipedia.org/wiki/Cloud_computing#Hybrid_cloud" target="_blank">Hybrid Clouds</a>. We&#8217;ll see how this is relevant later.</p>
<h3>What Does This All Mean For Identity?</h3>
<p>When we start to think about applications being delivered over the cloud, or enterprises relying on a cloud computing model instead of a data center model, we start to see certain implications for the identity architecture within.</p>
<ul>
<li> What is the identity model for these services? Can it co-exist with the enterprises existing identity model?</li>
<li> Fundamentally, how will the users of these cloud services authenticate? And how will their access rights be managed and enforced?</li>
<li> Will the cloud services have access to the enterprise identity stores (that are likely not in the cloud)? Is there a integration approach? Is there a replication strategy?</li>
<li> What security controls exist around the identity data gathered, stored or used by these cloud services? Will they be in compliance with applicable regulations (like jurisdictional regulations on geographic location of data, PCI DSS) and an enterprises internal controls?</li>
<li> Who (from the service provider side) will have access to the data? How will that be managed?</li>
<li> How will the enterprises data be effectively segregated in a shared environment?</li>
<li> What audit controls exist to allow investigation and discovery?</li>
</ul>
<p>Generally speaking, the reason companies are considering cloud computing is to avoid the expense involved in building or acquiring the infrastructure, and to some extent managing it. However, without paying attention to the security and governance implications, those cost savings will actually evaporate when they either try to retrofit their existing business policies and controls into the cloud environment, or when they have to deal with the fallout from a breach or issue. I think we&#8217;ve all seen this particular movie before, so the question is whether we are paying attention to the lessons learnt. Lets talk about this, and examine how externalizing identity is crucial to making cloud computing viable.</p>
<p><a href="http://geekandpoke.typepad.com/geekandpoke/2009/03/let-the-clouds-make-your-life-easier.html"></a><a href="http://geekandpoke.typepad.com/geekandpoke/2009/03/let-the-clouds-make-your-life-easier.html"><img class="alignnone size-full wp-image-553" title="Let the Cloud Make Life Easier" src="http://blog.talkingidentity.com/wp-content/uploads/2009/07/6a00d8341d3df553ef01156f3f1664970b-800wi.jpg" alt="Let the Cloud Make Life Easier" width="500" height="403" /></a></p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/compliance" rel="tag">Compliance</a>, <a href="http://blog.talkingidentity.com/tag/iaas" rel="tag">IaaS</a>, <a href="http://blog.talkingidentity.com/tag/identity-services" rel="tag">Identity Services</a>, <a href="http://blog.talkingidentity.com/tag/oracle_idm" rel="tag">Oracle_IDM</a>, <a href="http://blog.talkingidentity.com/tag/paas" rel="tag">PaaS</a>, <a href="http://blog.talkingidentity.com/tag/saas" rel="tag">SaaS</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Bbodytext%3DThis%2520is%2520the%2520introductory%2520post%2520in%2520a%2520series%2520I%2520hope%2520to%2520write%2520regarding%2520Identity%2520Management%2520and%2520Cloud%2520Computing%252C%2520leading%2520up%2520to%2520a%2520talk%2520I%2520will%2520be%2520giving%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2528details%2520to%2520come%2529.%2520But%2520before%2520we%2520dive%2520into%2520the%2520topic%252C%2520I%2520do%2520need%2520to%2520lay';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Bt%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Bannotation%3DThis%2520is%2520the%2520introductory%2520post%2520in%2520a%2520series%2520I%2520hope%2520to%2520write%2520regarding%2520Identity%2520Management%2520and%2520Cloud%2520Computing%252C%2520leading%2520up%2520to%2520a%2520talk%2520I%2520will%2520be%2520giving%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2528details%2520to%2520come%2529.%2520But%2520before%2520we%2520dive%2520into%2520the%2520topic%252C%2520I%2520do%2520need%2520to%2520lay';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Bnotes%3DThis%2520is%2520the%2520introductory%2520post%2520in%2520a%2520series%2520I%2520hope%2520to%2520write%2520regarding%2520Identity%2520Management%2520and%2520Cloud%2520Computing%252C%2520leading%2520up%2520to%2520a%2520talk%2520I%2520will%2520be%2520giving%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2528details%2520to%2520come%2529.%2520But%2520before%2520we%2520dive%2520into%2520the%2520topic%252C%2520I%2520do%2520need%2520to%2520lay';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Bh%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%2520Identity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/07/identity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
