<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Discovering Identity &#187; CloudComputing</title>
	<atom:link href="http://www.discoveringidentity.com/tag/cloudcomputing/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.discoveringidentity.com</link>
	<description>Exploring the science and magic of Identity and Access Management</description>
	<lastBuildDate>Wed, 28 Dec 2011 16:53:42 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Cloutage.org &#8211; Cloud Incidents, News, Resources</title>
		<link>http://www.discoveringidentity.com/2010/08/11/cloutage-org-cloud-incidents-news-resources/</link>
		<comments>http://www.discoveringidentity.com/2010/08/11/cloutage-org-cloud-incidents-news-resources/#comments</comments>
		<pubDate>Wed, 11 Aug 2010 11:16:43 +0000</pubDate>
		<dc:creator>Mark Dixon</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[CloudComputing]]></category>

		<guid isPermaLink="false">http://www.discoveringidentity.com/2010/08/11/cloutage-org-cloud-incidents-news-resources/</guid>
		<description><![CDATA[Thanks to my colleague Simon Thorpe for pointing out Cloutage.org, a website which provides up to date information about outages and security incidents in public cloud computing: ”Cloutage exists to empower organizations by providing cloud security knowledge and resources so that they may properly assess information security risks. The project aims to document known and [...]]]></description>
			<content:encoded><![CDATA[<p>Thanks to my colleague <a href="http://www.linkedin.com/pub/simon-thorpe/1/63/170" target="_blank">Simon Thorpe</a> for pointing out <a href="http://cloutage.org/" target="_blank">Cloutage.org</a>, a website which provides up to date information about outages and security incidents in public cloud computing: </p>
<blockquote><p><a href="http://cloutage.org/" target="_blank"><img style="border-bottom: 0px; border-left: 0px; margin: 5px 0px 5px 10px; display: inline; border-top: 0px; border-right: 0px" title="image" border="0" alt="image" align="right" src="http://www.discoveringidentity.com/wp-content/uploads/2010/08/image.png" width="244" height="138" /></a>”Cloutage exists to empower organizations by providing cloud security knowledge and resources so that they may properly assess information security risks. The project aims to document known and reported incidents with cloud services while also providing a one-stop shop for cloud security news and resources.”</p>
</blockquote>
<p>&#160;</p>
<p>The Cloutage <a href="http://cloutage.org/" target="_blank">home page</a> shows this a list of “Latest Cloud Incidents”:&#160; Here are the most recent three:</p>
<p><a href="http://cloutage.org/" target="_blank"><img style="border-bottom: 0px; border-left: 0px; display: block; float: none; margin-left: auto; border-top: 0px; margin-right: auto; border-right: 0px" title="image" border="0" alt="image" src="http://www.discoveringidentity.com/wp-content/uploads/2010/08/image1.png" width="484" height="242" /></a> </p>
<p>I was particularly interested in the <a href="http://evernote.com" target="_blank">Evernote</a> data loss, because I am a heavy Evernote user.&#160; I don’t think I lost anything, but it makes me rather nervous – and thankful for the local repository of everything stored in the Evernote cloud.</p>
<p>I suppose the message this brings most strongly home to me is this: Cloud Computing is not invulnerable.&#160; Our trust in cloud computing must be based on solid evidences of sufficient information security.&#160; We must demand (and, as security professionals help enable) auditable security technology and processes in cloud computing.&#160;&#160; </p>
<div style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:2a7f2391-89ba-4ff8-9a73-9e917fd27225" class="wlWriterEditableSmartContent">Technorati Tags: <a href="http://technorati.com/tags/Information+Security" rel="tag">Information Security</a>,<a href="http://technorati.com/tags/CloudComputing" rel="tag">CloudComputing</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.discoveringidentity.com/2010/08/11/cloutage-org-cloud-incidents-news-resources/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Perspectives on Identity and Cloud Computing</title>
		<link>http://www.discoveringidentity.com/2010/05/19/perspectives-on-identity-and-cloud-computing/</link>
		<comments>http://www.discoveringidentity.com/2010/05/19/perspectives-on-identity-and-cloud-computing/#comments</comments>
		<pubDate>Wed, 19 May 2010 16:28:59 +0000</pubDate>
		<dc:creator>Mark Dixon</dc:creator>
				<category><![CDATA[Identity]]></category>
		<category><![CDATA[CloudComputing]]></category>
		<category><![CDATA[DigitalIdentity]]></category>
		<category><![CDATA[IdentityManagement]]></category>

		<guid isPermaLink="false">http://www.discoveringidentity.com/2010/05/19/perspectives-on-identity-and-cloud-computing/</guid>
		<description><![CDATA[Dave Kearns indentified three separate focus areas for Identity and Cloud Computing in his Network World post today: Identity-in-the-cloud, or Identity as a Service: IdM services such as provisioning, governance, role management, compliance, etc. are hosted &#34;in the cloud.&#34; Identity-for-the-cloud: Provisioning services for cloud apps provided by traditional, on-premise, provisioning vendors as well as other [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://gregness.wordpress.com/2008/11/13/the-beginning-of-the-end-of-static-infrastructure/" target="_blank"><img style="border-bottom: 0px; border-left: 0px; margin: 5px 0px 5px 5px; display: inline; border-top: 0px; border-right: 0px" title="image" border="0" alt="image" align="right" src="http://www.discoveringidentity.com/wp-content/uploads/2010/05/image3.png" width="181" height="244" /></a> Dave Kearns indentified three separate focus areas for Identity and Cloud Computing in his <a href="http://www.networkworld.com/newsletters/dir/2010/051710id2.html?source=NWWNLE_nlt_security_identity_2010-05-19" target="_blank">Network World post</a> today:</p>
<p><strong>Identity-in-the-cloud, or Identity as a Service:</strong> </p>
<blockquote><p>IdM services such as provisioning, governance, role management, compliance, etc. are hosted &quot;in the cloud.&quot;</p>
</blockquote>
<p><strong>Identity-for-the-cloud:</strong> </p>
<blockquote><p>Provisioning services for cloud apps provided by traditional, on-premise, provisioning vendors as well as other identity services (privileged user management, compliance, etc.) extended to the cloud from your data center.</p>
</blockquote>
<p><strong>Meshed, or integrated, on-premise/in-the-cloud:</strong> </p>
<blockquote><p>Linking on-premises Identity Management infrastructure and cloud identity data from cloud-hosted applications.</p>
</blockquote>
<p>More than anything, this points out that Identity Management and Cloud Computing is a multi-faceted issue.&#160; “Cloud” may refer to where the Identity Management services are hosted, as well as where the applications reside that consume Identity Management services – or a combination of both.</p>
<p>Certainly worth further exploration.</p>
<div style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:81fa9247-4dd8-493e-a8db-82a5dca5c667" class="wlWriterEditableSmartContent">Technorati Tags: <a href="http://technorati.com/tags/CloudComputing" rel="tag">CloudComputing</a>,<a href="http://technorati.com/tags/IdentityManagement" rel="tag">IdentityManagement</a>,<a href="http://technorati.com/tags/DigitalIdentity" rel="tag">DigitalIdentity</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.discoveringidentity.com/2010/05/19/perspectives-on-identity-and-cloud-computing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Identity Services for Cloud Computing</title>
		<link>http://www.discoveringidentity.com/2010/02/09/identity-services-for-cloud-computing/</link>
		<comments>http://www.discoveringidentity.com/2010/02/09/identity-services-for-cloud-computing/#comments</comments>
		<pubDate>Tue, 09 Feb 2010 23:57:39 +0000</pubDate>
		<dc:creator>Mark Dixon</dc:creator>
				<category><![CDATA[Identity]]></category>
		<category><![CDATA[CloudComputing]]></category>
		<category><![CDATA[IDaaS]]></category>
		<category><![CDATA[IdentityManagement]]></category>
		<category><![CDATA[SOA]]></category>

		<guid isPermaLink="false">http://www.discoveringidentity.com/2010/02/09/identity-services-for-cloud-computing/</guid>
		<description><![CDATA[To support recent discussions about Identity Management and Cloud computing, I divided the types of Identity Services that might be needed to support Application services into three major categories as shown in the following diagram and explained in a bit more detail below: The specific services provided in each category could include: Identity Administration Services [...]]]></description>
			<content:encoded><![CDATA[<p>To support recent discussions about Identity Management and Cloud computing, I divided the types of Identity Services that might be needed to support Application services into three major categories as shown in the following diagram and explained in a bit more detail below:</p>
<p><a href="http://www.discoveringidentity.com/wp-content/uploads/2010/02/IDaaS.jpg"><img style="border-bottom: 0px; border-left: 0px; display: block; float: none; margin-left: auto; border-top: 0px; margin-right: auto; border-right: 0px" title="IDaaS" border="0" alt="IDaaS" src="http://www.discoveringidentity.com/wp-content/uploads/2010/02/IDaaS_thumb.jpg" width="470" height="433" /></a> </p>
<p>The specific services provided in each category could include:</p>
<p><strong>Identity Administration Services</strong></p>
<ul>
<li>Create, update, delete identities</li>
<li>Password/credential management</li>
<li>Entitlement definition/management</li>
<li>Provision/de-provision access privileges</li>
<li>Role engineering/management</li>
<li>Policy definition/management</li>
</ul>
<p><strong>Identity Enforcement Services</strong></p>
<ul>
<li>Authentication</li>
<li>Authorization</li>
<li>Access control</li>
<li>Federation</li>
<li>Web services security</li>
</ul>
<p><strong>Identity Audit Services</strong></p>
<ul>
<li>Reporting</li>
<li>Evaluation</li>
<li>Attestation</li>
<li>Validation</li>
<li>Remediation</li>
</ul>
<p>Did I miss any services that you think should be present?&#160; Any input on the categories or types of services?&#160; Any input or criticism would be most welcome.</p>
<div style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:882db36b-0c72-4443-8522-d4062cbe5df2" class="wlWriterEditableSmartContent">Technorati Tags: <a href="http://technorati.com/tags/Identity" rel="tag">Identity</a>, <a href="http://technorati.com/tags/IdentityManagement" rel="tag">IdentityManagement</a>, <a href="http://technorati.com/tags/CloudComputing" rel="tag">CloudComputing</a>, <a href="http://technorati.com/tags/IDaaS" rel="tag">IDaaS</a>, <a href="http://technorati.com/tags/SOA" rel="tag">SOA</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.discoveringidentity.com/2010/02/09/identity-services-for-cloud-computing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Users of Cloud-based Services</title>
		<link>http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/</link>
		<comments>http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/#comments</comments>
		<pubDate>Thu, 04 Feb 2010 16:54:19 +0000</pubDate>
		<dc:creator>Mark Dixon</dc:creator>
				<category><![CDATA[Identity]]></category>
		<category><![CDATA[CloudComputing]]></category>
		<category><![CDATA[IdentityManagement]]></category>

		<guid isPermaLink="false">http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/</guid>
		<description><![CDATA[The following chart may be helpful as we consider the different types of users that should be addressed by Identity and Access Management (IAM) technology and processes in cloud computing. At the Platform as a Service (PaaS) and Infrastructure as a Service (IaaS) layers, the only users are administrators of the platform or infrastructure services, [...]]]></description>
			<content:encoded><![CDATA[<p>The following chart may be helpful as we consider the different types of users that should be addressed by Identity and Access Management (IAM) technology and processes in cloud computing. </p>
<p><a href="http://www.discoveringidentity.com/wp-content/uploads/2010/02/CloudUsers.jpg"><img style="border-bottom: 0px; border-left: 0px; display: block; float: none; margin-left: auto; border-top: 0px; margin-right: auto; border-right: 0px" title="CloudUsers" border="0" alt="CloudUsers" src="http://www.discoveringidentity.com/wp-content/uploads/2010/02/CloudUsers_thumb.jpg" width="544" height="327" /></a> At the Platform as a Service (PaaS) and Infrastructure as a Service (IaaS) layers, the only users are administrators of the platform or infrastructure services, respectively.&#160; However, these administrative users may be either on the provider side or on the recipient or enterprise side.&#160; End users, whether within the enterprise (employees or contractors) or external to the enterprise (customers and partners), only exist at the application layer or Software as as Service (SaaS) layer.</p>
<p>This illustrates how cloud computing introduces increased complexity into IAM. Not only do the different layers (PaaS, IaaS and SaaS) have unique requirements, but multiple organizations (e.g. provider and enterprise) need to be considered.</p>
<p>For example, the nature of PaaS services will require provider administrators to have root access to the operating system, while enterprise administrators at the SaaS level may only need access to application configuration functions and external SaaS users only need to access to selected application functions.</p>
<p>Hopefully, this provides food for thought as we explore IAM in cloud computing.&#160; I’d be grateful to hear your comments.</p>
<div style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:5b8ce862-103f-479f-919c-d9e9d6d77a91" class="wlWriterEditableSmartContent">Technorati Tags: <a href="http://technorati.com/tags/CloudComputing" rel="tag">CloudComputing</a>, <a href="http://technorati.com/tags/Identity" rel="tag">Identity</a>, <a href="http://technorati.com/tags/IdentityManagement" rel="tag">IdentityManagement</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

