<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Talking Identity &#124; Nishant Kaushik&#039;s Look at the World of Identity Management &#187; IaaS</title>
	<atom:link href="http://blog.talkingidentity.com/tag/iaas/feed" rel="self" type="application/rss+xml" />
	<link>http://blog.talkingidentity.com</link>
	<description>An Architect&#039;s Quest to make sense of the world of Identity and Access Management</description>
	<lastBuildDate>Tue, 24 Aug 2010 17:16:51 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Identity Management and Cloud Computing: This Ain&#8217;t No Shotgun Wedding</title>
		<link>http://blog.talkingidentity.com/2009/07/identity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html</link>
		<comments>http://blog.talkingidentity.com/2009/07/identity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html#comments</comments>
		<pubDate>Thu, 09 Jul 2009 19:48:49 +0000</pubDate>
		<dc:creator>Nishant Kaushik</dc:creator>
				<category><![CDATA[Identity Services]]></category>
		<category><![CDATA[Insight IdM]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[IaaS]]></category>
		<category><![CDATA[Oracle_IDM]]></category>
		<category><![CDATA[PaaS]]></category>
		<category><![CDATA[SaaS]]></category>

		<guid isPermaLink="false">http://blog.talkingidentity.com/?p=534</guid>
		<description><![CDATA[This is the introductory post in a series I hope to write regarding Identity Management and Cloud Computing, leading up to a talk I will be giving at Oracle OpenWorld on the topic (details to come). But before we dive into the topic, I do need to lay some groundwork around some relevant concepts.
What Is [...]]]></description>
			<content:encoded><![CDATA[<p>This is the introductory post in a series I hope to write regarding <strong>Identity Management and Cloud Computing</strong>, leading up to a talk I will be giving at Oracle OpenWorld on the topic (details to come). But before we dive into the topic, I do need to lay some groundwork around some relevant concepts.</p>
<h3>What Is Cloud Computing?</h3>
<p>You&#8217;d think this would be easy, given how much everyone is talking about it. But a search on google will show you that there is actually <a href="http://news.cnet.com/8301-13953_3-9938949-80.html" target="_blank">a lot of debate on what the term stands for</a>. Cloud Computing is a fairly elastic term that has been shape-shifting over time to encompass more and more disciplines in the area of IT operations. For a detailed explanation, I would suggest checking out <a href="http://www.burtongroup.com/Guest/Pdf/CloudOverview.pdf" target="_blank">this (free) research paper</a> by the Burton Group. For the purpose of my discussion, I am going with the <a href="http://en.wikipedia.org/wiki/Cloud_computing" target="_blank">basic view</a> that Cloud Computing encompasses all those *aaS concepts we have been hearing about for years now that allow every single layer in the architecture of an application (including hardware) to be utilized as a service over the internet:</p>
<ul>
<li><strong>SaaS (Software as a Service):</strong> through which application services are offered (examples abound like Gmail, Salesforce.com, Zoho)</li>
<li><strong>PaaS (Platform as a Service): </strong>through which application platform/middleware services are offered (like the Google App Engine)</li>
<li><strong>IaaS (Infrastructure as a Service): </strong>through which underlying computing resources like processing,storage and networking are offered (think Amazon’s EC2)</li>
</ul>
<p><a href="http://www.echannelline.com/usa/story.cfm?item=24691" target="_blank">Gartner has said</a> that there are 5 basic attributes of a cloud computing model:</p>
<ul>
<li>It is service-based</li>
<li>It is scalable and elastic</li>
<li>It shares a pool of resources</li>
<li>It is metered by use (aka pay-as-you-go)</li>
<li>It uses internet technologies</li>
</ul>
<h3>Different Types of Clouds</h3>
<p>There has also been some <a href="http://datacenterdialog.blogspot.com/2009/01/are-internal-clouds-bogus.html" target="_blank">controversy around the concept of private clouds</a>, with different folks defining it differently, or even positing that there is no such thing. I think <a href="http://www.informationweek.com/news/software/hosted/showArticle.jhtml?articleID=216500083" target="_blank">Private Clouds</a> are real and different from traditional data centers, and essentially refer to cloud computing environments dedicated to a single tenant (thereby not adhering to the sharing attribute). The waters get muddied even further when you bring up the concept of <a href="http://en.wikipedia.org/wiki/Cloud_computing#Hybrid_cloud" target="_blank">Hybrid Clouds</a>. We&#8217;ll see how this is relevant later.</p>
<h3>What Does This All Mean For Identity?</h3>
<p>When we start to think about applications being delivered over the cloud, or enterprises relying on a cloud computing model instead of a data center model, we start to see certain implications for the identity architecture within.</p>
<ul>
<li> What is the identity model for these services? Can it co-exist with the enterprises existing identity model?</li>
<li> Fundamentally, how will the users of these cloud services authenticate? And how will their access rights be managed and enforced?</li>
<li> Will the cloud services have access to the enterprise identity stores (that are likely not in the cloud)? Is there a integration approach? Is there a replication strategy?</li>
<li> What security controls exist around the identity data gathered, stored or used by these cloud services? Will they be in compliance with applicable regulations (like jurisdictional regulations on geographic location of data, PCI DSS) and an enterprises internal controls?</li>
<li> Who (from the service provider side) will have access to the data? How will that be managed?</li>
<li> How will the enterprises data be effectively segregated in a shared environment?</li>
<li> What audit controls exist to allow investigation and discovery?</li>
</ul>
<p>Generally speaking, the reason companies are considering cloud computing is to avoid the expense involved in building or acquiring the infrastructure, and to some extent managing it. However, without paying attention to the security and governance implications, those cost savings will actually evaporate when they either try to retrofit their existing business policies and controls into the cloud environment, or when they have to deal with the fallout from a breach or issue. I think we&#8217;ve all seen this particular movie before, so the question is whether we are paying attention to the lessons learnt. Lets talk about this, and examine how externalizing identity is crucial to making cloud computing viable.</p>
<p><a href="http://geekandpoke.typepad.com/geekandpoke/2009/03/let-the-clouds-make-your-life-easier.html"></a><a href="http://geekandpoke.typepad.com/geekandpoke/2009/03/let-the-clouds-make-your-life-easier.html"><img class="alignnone size-full wp-image-553" title="Let the Cloud Make Life Easier" src="http://blog.talkingidentity.com/wp-content/uploads/2009/07/6a00d8341d3df553ef01156f3f1664970b-800wi.jpg" alt="Let the Cloud Make Life Easier" width="500" height="403" /></a></p>
<p class="tags">Tags: <a href="http://blog.talkingidentity.com/tag/cloud-computing" rel="tag">Cloud Computing</a>, <a href="http://blog.talkingidentity.com/tag/compliance" rel="tag">Compliance</a>, <a href="http://blog.talkingidentity.com/tag/iaas" rel="tag">IaaS</a>, <a href="http://blog.talkingidentity.com/tag/identity-services" rel="tag">Identity Services</a>, <a href="http://blog.talkingidentity.com/tag/oracle_idm" rel="tag">Oracle_IDM</a>, <a href="http://blog.talkingidentity.com/tag/paas" rel="tag">PaaS</a>, <a href="http://blog.talkingidentity.com/tag/saas" rel="tag">SaaS</a></p>


Share This:


	<a rel="nofollow" id="twitter" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter" alt="Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="digg" href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Bbodytext%3DThis%2520is%2520the%2520introductory%2520post%2520in%2520a%2520series%2520I%2520hope%2520to%2520write%2520regarding%2520Identity%2520Management%2520and%2520Cloud%2520Computing%252C%2520leading%2520up%2520to%2520a%2520talk%2520I%2520will%2520be%2520giving%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2528details%2520to%2520come%2529.%2520But%2520before%2520we%2520dive%2520into%2520the%2520topic%252C%2520I%2520do%2520need%2520to%2520lay';" title="Digg"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg" alt="Digg" class="sociable-hovers" /></a>
	<a rel="nofollow" id="facebook" href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Bt%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="Facebook"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook" alt="Facebook" class="sociable-hovers" /></a>
	<img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn" alt="LinkedIn" class="sociable-hovers" /></a>
	<a rel="nofollow" id="stumbleupon" href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="StumbleUpon"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon" alt="StumbleUpon" class="sociable-hovers" /></a>
	<a rel="nofollow" id="google" href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Bannotation%3DThis%2520is%2520the%2520introductory%2520post%2520in%2520a%2520series%2520I%2520hope%2520to%2520write%2520regarding%2520Identity%2520Management%2520and%2520Cloud%2520Computing%252C%2520leading%2520up%2520to%2520a%2520talk%2520I%2520will%2520be%2520giving%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2528details%2520to%2520come%2529.%2520But%2520before%2520we%2520dive%2520into%2520the%2520topic%252C%2520I%2520do%2520need%2520to%2520lay';" title="Google Bookmarks"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks" alt="Google Bookmarks" class="sociable-hovers" /></a>
	<a rel="nofollow" id="identi.ca" href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="Identi.ca"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca" alt="Identi.ca" class="sociable-hovers" /></a>
	<a rel="nofollow" id="del.icio.us" href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Bnotes%3DThis%2520is%2520the%2520introductory%2520post%2520in%2520a%2520series%2520I%2520hope%2520to%2520write%2520regarding%2520Identity%2520Management%2520and%2520Cloud%2520Computing%252C%2520leading%2520up%2520to%2520a%2520talk%2520I%2520will%2520be%2520giving%2520at%2520Oracle%2520OpenWorld%2520on%2520the%2520topic%2520%2528details%2520to%2520come%2529.%2520But%2520before%2520we%2520dive%2520into%2520the%2520topic%252C%2520I%2520do%2520need%2520to%2520lay';" title="del.icio.us"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us" alt="del.icio.us" class="sociable-hovers" /></a>
	<a rel="nofollow" id="reddit" href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Btitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="Reddit"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit" alt="Reddit" class="sociable-hovers" /></a>
	<a rel="nofollow" id="technorati" href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="Technorati"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati" alt="Technorati" class="sociable-hovers" /></a>
	<a rel="nofollow" id="newsvine" href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%26amp%3Bh%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="NewsVine"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine" alt="NewsVine" class="sociable-hovers" /></a>
	<a rel="nofollow" id="slashdot" href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="Slashdot"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot" alt="Slashdot" class="sociable-hovers" /></a>
	<a rel="nofollow" id="techmeme" href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html%2520Identity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding';" title="Suggest to Techmeme via Twitter"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter" alt="Suggest to Techmeme via Twitter" class="sociable-hovers" /></a>
	<a rel="nofollow" id="email" href="javascript:window.location='mailto%3A%3Fsubject%3DIdentity%2520Management%2520and%2520Cloud%2520Computing%253A%2520This%2520Ain%2527t%2520No%2520Shotgun%2520Wedding%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2009%252F07%252Fidentity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html';" title="E-mail this story to a friend!"><img src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!" alt="E-mail this story to a friend!" class="sociable-hovers" /></a>


<br/><br/>]]></content:encoded>
			<wfw:commentRss>http://blog.talkingidentity.com/2009/07/identity-management-and-cloud-computing-this-aint-no-shotgun-wedding.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
