Tuesday, November 11, 2008

Service oriented identity

Early identity:

SSO, on boarding, provisioning to various applications

Today: Strong Authentication, Federation, encrypted laptops

What we need?
Externalized authorizations policies
Abstraction of deployment details from the application
integration of security with IDE's
Roles, context, trust
Hot pluggable functions....cross platform

All of these mean Service Oriented Security

Authentication Service
Oracle Access Manager (Web SSO) for Java and .NET
Oracle Adaptive Access Manager (Risk based access manager)
compares current behavior to behavioral baseline to assess risk

Authorizations Service
Oracle Role Manager
Oracle Entitlements Server

Oracle entitlements sit in the same namespace as the application, its not centralized, its localized so it doesnt go over the network (this sounds DAMN SEXY...i want details!!)

Identity, Profile Service
Oracle Identity Manager – manages identity lifecycle
Oracle Virtual Directory – replaces main directory in real time

the benefit of SOA Approach is that we can replace it as we see fit

lots of the standards for all of this are in flux and oracle is leading development of them

XACML is an XML representative of policy on disk

1 comment:

Anonymous said...

Extrusion molding forces a steel slug or cylinder via or around a die, lowering or increasing the unique piece diameter to the cross-section of the die. Extrusion includes hot and cold processes and can result in|may end up in|can high precision machining lead to} long continuous items or a collection of shorter items. While dies are used in molding, they additionally be|may additionally be|can be} used within the cutting process. For eighty years, Eckstrom Industries Inc. has been fabricating sheet steel for companies across the Greater Seattle Area. Our many years of experience and proven track record have established us as leaders within the local fabrication industry.