<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Discovering Identity &#187; CloudComputing</title>
	<atom:link href="http://www.discoveringidentity.com/tag/cloudcomputing/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.discoveringidentity.com</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Fri, 16 Jul 2010 23:28:40 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Perspectives on Identity and Cloud Computing</title>
		<link>http://www.discoveringidentity.com/2010/05/19/perspectives-on-identity-and-cloud-computing/</link>
		<comments>http://www.discoveringidentity.com/2010/05/19/perspectives-on-identity-and-cloud-computing/#comments</comments>
		<pubDate>Wed, 19 May 2010 16:28:59 +0000</pubDate>
		<dc:creator>Mark Dixon</dc:creator>
				<category><![CDATA[Identity]]></category>
		<category><![CDATA[CloudComputing]]></category>
		<category><![CDATA[DigitalIdentity]]></category>
		<category><![CDATA[IdentityManagement]]></category>

		<guid isPermaLink="false">http://www.discoveringidentity.com/2010/05/19/perspectives-on-identity-and-cloud-computing/</guid>
		<description><![CDATA[ Dave Kearns indentified three separate focus areas for Identity and Cloud Computing in his Network World post today:
Identity-in-the-cloud, or Identity as a Service: 
IdM services such as provisioning, governance, role management, compliance, etc. are hosted &#34;in the cloud.&#34;

Identity-for-the-cloud: 
Provisioning services for cloud apps provided by traditional, on-premise, provisioning vendors as well as other identity [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://gregness.wordpress.com/2008/11/13/the-beginning-of-the-end-of-static-infrastructure/" target="_blank"><img style="border-bottom: 0px; border-left: 0px; margin: 5px 0px 5px 5px; display: inline; border-top: 0px; border-right: 0px" title="image" border="0" alt="image" align="right" src="http://www.discoveringidentity.com/wp-content/uploads/2010/05/image3.png" width="181" height="244" /></a> Dave Kearns indentified three separate focus areas for Identity and Cloud Computing in his <a href="http://www.networkworld.com/newsletters/dir/2010/051710id2.html?source=NWWNLE_nlt_security_identity_2010-05-19" target="_blank">Network World post</a> today:</p>
<p><strong>Identity-in-the-cloud, or Identity as a Service:</strong> </p>
<blockquote><p>IdM services such as provisioning, governance, role management, compliance, etc. are hosted &quot;in the cloud.&quot;</p>
</blockquote>
<p><strong>Identity-for-the-cloud:</strong> </p>
<blockquote><p>Provisioning services for cloud apps provided by traditional, on-premise, provisioning vendors as well as other identity services (privileged user management, compliance, etc.) extended to the cloud from your data center.</p>
</blockquote>
<p><strong>Meshed, or integrated, on-premise/in-the-cloud:</strong> </p>
<blockquote><p>Linking on-premises Identity Management infrastructure and cloud identity data from cloud-hosted applications.</p>
</blockquote>
<p>More than anything, this points out that Identity Management and Cloud Computing is a multi-faceted issue.&#160; “Cloud” may refer to where the Identity Management services are hosted, as well as where the applications reside that consume Identity Management services – or a combination of both.</p>
<p>Certainly worth further exploration.</p>
<div style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:81fa9247-4dd8-493e-a8db-82a5dca5c667" class="wlWriterEditableSmartContent">Technorati Tags: <a href="http://technorati.com/tags/CloudComputing" rel="tag">CloudComputing</a>,<a href="http://technorati.com/tags/IdentityManagement" rel="tag">IdentityManagement</a>,<a href="http://technorati.com/tags/DigitalIdentity" rel="tag">DigitalIdentity</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.discoveringidentity.com/2010/05/19/perspectives-on-identity-and-cloud-computing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Identity Services for Cloud Computing</title>
		<link>http://www.discoveringidentity.com/2010/02/09/identity-services-for-cloud-computing/</link>
		<comments>http://www.discoveringidentity.com/2010/02/09/identity-services-for-cloud-computing/#comments</comments>
		<pubDate>Tue, 09 Feb 2010 23:57:39 +0000</pubDate>
		<dc:creator>Mark Dixon</dc:creator>
				<category><![CDATA[Identity]]></category>
		<category><![CDATA[CloudComputing]]></category>
		<category><![CDATA[IDaaS]]></category>
		<category><![CDATA[IdentityManagement]]></category>
		<category><![CDATA[SOA]]></category>

		<guid isPermaLink="false">http://www.discoveringidentity.com/2010/02/09/identity-services-for-cloud-computing/</guid>
		<description><![CDATA[To support recent discussions about Identity Management and Cloud computing, I divided the types of Identity Services that might be needed to support Application services into three major categories as shown in the following diagram and explained in a bit more detail below:
 
The specific services provided in each category could include:
Identity Administration Services

Create, update, [...]]]></description>
			<content:encoded><![CDATA[<p>To support recent discussions about Identity Management and Cloud computing, I divided the types of Identity Services that might be needed to support Application services into three major categories as shown in the following diagram and explained in a bit more detail below:</p>
<p><a href="http://www.discoveringidentity.com/wp-content/uploads/2010/02/IDaaS.jpg"><img style="border-bottom: 0px; border-left: 0px; display: block; float: none; margin-left: auto; border-top: 0px; margin-right: auto; border-right: 0px" title="IDaaS" border="0" alt="IDaaS" src="http://www.discoveringidentity.com/wp-content/uploads/2010/02/IDaaS_thumb.jpg" width="470" height="433" /></a> </p>
<p>The specific services provided in each category could include:</p>
<p><strong>Identity Administration Services</strong></p>
<ul>
<li>Create, update, delete identities</li>
<li>Password/credential management</li>
<li>Entitlement definition/management</li>
<li>Provision/de-provision access privileges</li>
<li>Role engineering/management</li>
<li>Policy definition/management</li>
</ul>
<p><strong>Identity Enforcement Services</strong></p>
<ul>
<li>Authentication</li>
<li>Authorization</li>
<li>Access control</li>
<li>Federation</li>
<li>Web services security</li>
</ul>
<p><strong>Identity Audit Services</strong></p>
<ul>
<li>Reporting</li>
<li>Evaluation</li>
<li>Attestation</li>
<li>Validation</li>
<li>Remediation</li>
</ul>
<p>Did I miss any services that you think should be present?&#160; Any input on the categories or types of services?&#160; Any input or criticism would be most welcome.</p>
<div style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:882db36b-0c72-4443-8522-d4062cbe5df2" class="wlWriterEditableSmartContent">Technorati Tags: <a href="http://technorati.com/tags/Identity" rel="tag">Identity</a>, <a href="http://technorati.com/tags/IdentityManagement" rel="tag">IdentityManagement</a>, <a href="http://technorati.com/tags/CloudComputing" rel="tag">CloudComputing</a>, <a href="http://technorati.com/tags/IDaaS" rel="tag">IDaaS</a>, <a href="http://technorati.com/tags/SOA" rel="tag">SOA</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.discoveringidentity.com/2010/02/09/identity-services-for-cloud-computing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Users of Cloud-based Services</title>
		<link>http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/</link>
		<comments>http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/#comments</comments>
		<pubDate>Thu, 04 Feb 2010 16:54:19 +0000</pubDate>
		<dc:creator>Mark Dixon</dc:creator>
				<category><![CDATA[Identity]]></category>
		<category><![CDATA[CloudComputing]]></category>
		<category><![CDATA[IdentityManagement]]></category>

		<guid isPermaLink="false">http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/</guid>
		<description><![CDATA[The following chart may be helpful as we consider the different types of users that should be addressed by Identity and Access Management (IAM) technology and processes in cloud computing. 
 At the Platform as a Service (PaaS) and Infrastructure as a Service (IaaS) layers, the only users are administrators of the platform or infrastructure [...]]]></description>
			<content:encoded><![CDATA[<p>The following chart may be helpful as we consider the different types of users that should be addressed by Identity and Access Management (IAM) technology and processes in cloud computing. </p>
<p><a href="http://www.discoveringidentity.com/wp-content/uploads/2010/02/CloudUsers.jpg"><img style="border-bottom: 0px; border-left: 0px; display: block; float: none; margin-left: auto; border-top: 0px; margin-right: auto; border-right: 0px" title="CloudUsers" border="0" alt="CloudUsers" src="http://www.discoveringidentity.com/wp-content/uploads/2010/02/CloudUsers_thumb.jpg" width="544" height="327" /></a> At the Platform as a Service (PaaS) and Infrastructure as a Service (IaaS) layers, the only users are administrators of the platform or infrastructure services, respectively.&#160; However, these administrative users may be either on the provider side or on the recipient or enterprise side.&#160; End users, whether within the enterprise (employees or contractors) or external to the enterprise (customers and partners), only exist at the application layer or Software as as Service (SaaS) layer.</p>
<p>This illustrates how cloud computing introduces increased complexity into IAM. Not only do the different layers (PaaS, IaaS and SaaS) have unique requirements, but multiple organizations (e.g. provider and enterprise) need to be considered.</p>
<p>For example, the nature of PaaS services will require provider administrators to have root access to the operating system, while enterprise administrators at the SaaS level may only need access to application configuration functions and external SaaS users only need to access to selected application functions.</p>
<p>Hopefully, this provides food for thought as we explore IAM in cloud computing.&#160; I’d be grateful to hear your comments.</p>
<div style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:5b8ce862-103f-479f-919c-d9e9d6d77a91" class="wlWriterEditableSmartContent">Technorati Tags: <a href="http://technorati.com/tags/CloudComputing" rel="tag">CloudComputing</a>, <a href="http://technorati.com/tags/Identity" rel="tag">Identity</a>, <a href="http://technorati.com/tags/IdentityManagement" rel="tag">IdentityManagement</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
