Andras Cser serves Security & Risk Professionals. See the full Analyst bio.
Visit Forrester.com to learn how we make Security & Risk Professionals successful every day.
OpenID family grows – How it can transform Identity Federation between enteprises
Posted by Andras Cser on February 7, 2008
- 227 Recommendations
- 0 comments
With Google, IBM, Microsoft, VeriSign, and Yahoo! joining the OpenID Foundation, we may actually feel that something in federated access management is going to change. It is finally not the case of a vendor proposing a new standard – and adding to the cacophony of federation standards – but a set of moves towards a simple technology that today can alleviate password management woes at service providers.
Technology aside, OpenID will greatly help with reducing and removing the legal obstacles in the way of identity federation’s proliferation. When payment-grade, commercial, and trusted identity provider service becomes a reality – VeriSign’s joining the OpenID camp clearly points in that direction – and software-as-a-service companies (like salesforce.com), accept OpenID authentication from these trusted identity providers, then enterprises can truly start thinking about outsourcing password management identity management processes. When required, strong authentication integration with OpenID can rely on VerSign’s VIP or other vendors’ strong authentication acceptance network.
In addition to the above factors, resolving DNS spoofing vulnerabilities and productized integration with SAML and other federation technologies will be key enablers in OpenID’s success and promotion from the current low-value (e.g. blogsite) authentication usage, to becoming a full-fledged, enterprise-level federation solution.
Categories:
search forrester's blogs
Secure the digital business future.
Attend Forrester’s Forum for Security & Risk Professionals EMEA, June 10-11, London UK
Analyst Blogs
- Andras Cser (31)
- Andrew Rose (17)
- Chris McClean (54)
- Christopher Sherman (1)
- Edward Ferrara (20)
- Eve Maler (19)
- Heidi Shey (9)
- John Kindervag (28)
- Khalid Kark (13)
- Laura Koetzle (2)
- Nick Hayes (5)
- Rick Holland (20)
- Stephanie Balaouras (50)
Top Categories
- Identity and access management (7)
- Security & Risk (2)
- Acquisition (1)
- application security (1)
- cloud (1)
- Enterprise Role Management (1)
- IT Risk Management (1)
- IT security (1)
- provisioning (1)
- RSA (1)
- See all
Archives
- May 2013 (3)
- April 2013 (3)
- February 2013 (2)
- May 2012 (2)
- April 2012 (1)
- March 2012 (1)
- December 2011 (1)
- June 2011 (1)
- March 2011 (1)
- February 2011 (3)
- October 2010 (1)
- September 2010 (1)
- June 2010 (1)
- See all