ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Desktop platforms Toolkit in association with http://ad.doubleclick.net/clk;205413468;14699245;m?http://adfarm.mediaplex.com/ad/ck/2397-58840-22058-14

Microsoft extends ID management

Published: 25 May 2004 08:45 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

On Tuesday Microsoft will display software that lets customers sign in to a Web site and then take their identity with them as they browse the Web to other federated sites, a representative said.

The technology, which won't be available until the software giant releases Windows Server 2003 R2 in the second half of 2005, will interoperate with other companies' identity management software, said Michael Stephenson, lead programme manager for Windows Server 2003.

"Federated identity lets companies securely extend their applications to suppliers and external users," he said. Though the software the company plans to show off won't be available immediately, Stephenson wanted to underscore that Microsoft is playing well with others: "We have been working closely with others in the industry on interoperability."

Microsoft's interoperability demonstration is the latest move in the software giant's plans to push for the ubiquitous use of identity management and Web services. Along with IBM, the company has been a cheerleader for the adoption of the Web Services standard by the Organisation for the Advancement of Structured Information Standards, or OASIS. WS-Security, which includes many of the federated identity specifications, passed muster in April.

The Web Services framework competes to some extent with the E-Business Extensible Markup Language (ebXML), which has also been adopted by OASIS. Both sets of services aim to allow Web sites to offer services to other e-commerce sites.

However, to share identity between sites on the Web and between servers inside a company only three options currently exist: the security assertion markup language (SAML) 1.1, the WS-Security standard or the Liberty Alliance's standard, which has become the base for the next version of SAML, 2.0. Such identity services promise to allow partners to share secure access to services by letting a person who signs in to one server access any other partner's server without having to sign in.

"We are showing how a user at one site might log on to a portal, and then they can enter a purchase order at another location without having to sign on again," Stephenson said. "Today it is very expensive to provide this type of functionality."

Originally, Microsoft had hoped that its Passport service would be the single-stop place for people to store their information on the Web. However, businesses and consumers did not agree, and so the software giant started to work on federated services.

While Microsoft played well with its partners, the software giant and the Liberty Alliance are still at odds. Microsoft and the Liberty Alliance have still not committed to supporting each others' standards. Stephenson said he is "very hopeful" that the two will work together.

However, the two groups continue to compete. The Liberty Alliance boasted on Monday that it offers the most mature method for sharing identity information.

"The WS family of specifications in general, with the exception of WS-Security, are not in any usable standards form," said Michael Barrett, vice president of privacy and security for American Express and president of Liberty Alliance's management board.

American Express currently has several identity projects in pilot, including internal identity management systems and simplifying traveller's check transactions between the financial firm and its resellers. However, the move to the new infrastructure, which the company started more than three years ago, won't be quick.

"It is a complex, multiyear strategy," he said, pointing out that Microsoft is just at the beginning as well.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Kyocera

Did you find this article useful?
58 out of 152 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:









Related Jobs

S&P (Security) IT Specialist

Non Technical skills - Security methods and practices - Data encryption technologies and products - Operational security and trust models - Physical ...

Tester Manager

All qualified applicants will receive consideration for employment without regard to race, colour, religion, gender, gender identity or expression, ...

Embedded systems, Linux OS and great career progression - Sign up now!

An Embedded Software Engineer is needed in the East Midlands to join a huge multi-national organisation that specialises in innovative product design ...

Featured Talkback

So if you upgrade to XP SP3 you can't uninstall Internet Explorer, I'm quite sure I'm having a Deja-vu feeling about MS preventing people from uninstalling Internet Explorer in other Windows products.

By: TheKLF99

Read full story:
Upgraders to XP SP3 warned over IE downgrades

Desktop Management Benchmarking

Test Your Desktop Management Systems

How good are your company's desktop management solutions? How do they compare with those of your peers?

Take two minutes to complete our new Desktop Management and Energy Consumption benchmark, and find out what issues your business needs to focus on.