EcommerceInternet Jobs ZDNet Asia: Wanted Architecture security IT pros ยท Spore directs $3.9B to enhance productiv... http://bit.ly/cp11MK
31 minutes ago by addiegibson on topsyZDNet is available in the following editions:
Effort aims to simplify the process of signing on to multiple Web sites.
The "single sign-on" standard produced by the Liberty Alliance Project lets users who sign on to one Web site carry over that authenticated status when moving to other Web sites. It's based on another newly released standard, the Security Assertion Markup Language.
A more feature-rich second phase of Liberty is expected early in 2003, said Michael Barrett, vice president of Internet strategy for American Express and a member of the Liberty Alliance.
While version 1.0 handles usernames and passwords, version 2 will provide a standard way to exchange other information as well, such as credit card numbers or addresses, said Jonathan Schwartz, Sun's newly appointed executive vice president of software.
Liberty includes "opt-in" features that let computer users specify which accounts they want to link with Liberty and, with version 2, what other information such as phone numbers they're willing to let those accounts share. Version 2 also will let users grant companies one-time permission to exchange information.
Allies on Monday billed Liberty chiefly as a boon to consumers and a way to reduce the headaches imposed by having to remember multiple login names and passwords. Navigating different Web sites requires frequent stops to sign on, the equivalent of running into a toll booth every mile on the highway, according to Rob Robless, United Airlines chief technology officer.
"There are some issues we need to overcome to increase the consumer acceptance to buy things or use services on the Internet," Robless said. Also needed is a foundation for partnerships "so we can make more interesting products or services to buy off the Internet."
When Sun launched Liberty in September, it was a direct assault on Microsoft's Passport service, which handled single-sign on by using a centralized authentication site run by Microsoft. At the time, Sun Chief Executive Scott McNealy called Passport Microsoft's strategy to profit from owning users' personal information, while Microsoft CEO Steve Ballmer derided Liberty, saying it had "has absolutely zero probability of mattering to the world."
Those days of acrimony are passing, though. Sun is receding to more of an advisory role while potential corporate users such as Fidelity Investments and Visa International are taking over more of the actual work involved in implementing the technology.
"In a year or two we'll look back and say, 'What was all the fuss about?'" Barrett said.
Adam Sohn, product manager for Microsoft's .Net Platform strategy, believes Liberty, Passport and other authentication schemes will effectively merge, the same way different banks once maintained separate, exclusive automated teller machine (ATM) networks, but now allow any bank card to work with any machine.
"Liberty is what Passport would have looked like if it was thought up by the likes of United Airlines and Visa International," said Illuminata analyst James Governor.
Passport once was an independent technology, but Microsoft is expanding by allowing Passport to "federate" with other authentication sites, quite possibly including Liberty. This more open-armed expansion of Passport will be released in 2003, Sohn said. The company will also let third-party companies perform services necessary to implement Passport.
As it stands, Passport, with an estimated 14 million users, according to Gartner Group, has many more participants than the brand-new Liberty. But a host of new Liberty-enabled products are expected.
Sun itself, which sells servers and Sun Open Network Environment (Sun ONE) software for authenticating users and governing their access to computing resources, plans to announce its plans for incorporating Liberty into its Identity Server software package.
Six other companies companies announced plans Monday to build Liberty features into their software. Novell, which had an early start in software for directories of information such as username-password pairs, will release its Liberty-enabled products by the end of 2002.
Other companies with Liberty software planned include NeuStar; RSA Security, OneName, which sells digital identity software; Communicator, which sells secure electronic communications products; and Entrust, which provides Internet security software and services.
While Passport may have more users, Liberty members have some powerful subscriber lists of their own that potentially could give Liberty a huge boost. Liberty members include online service companies such as America Online, EarthLink and Intuit; old economy companies such as United Airlines, American Airlines and General Motors; mobile phone giants Vodafone, NTT Docomo, Nokia, Nextel and France Telecom; and financial services companies Bank of America, Visa, American Express, Citigroup and MasterCard.
This smoother world of e-commerce, however, requires a profusion of alliances between companies that want to become Liberty partners. But Mark Foster, chief technology officer of network identity company NeuStar, foresees a day when such alliance issues recede.
In the early phases of Liberty, allies will join in "circles of trust" in which authenticated users may move easily among the Web sites of those companies, Foster said. In a second generation, different circles of trust will federate, and in a third phase, trust relationships could be created on demand instead of needing to be set up in advance.
With Liberty, a person buying music at Sony's Web site could follow a concert advertisement link, then buy a ticket from concert promoter's site without having to login again, Schwartz said.
John Worrall, vice president of worldwide marketing for RSA Security, bemoaned the headaches of trying to remember who he is on the Net.
"I'm John Worrall. I've had that identity forever. But a funny thing happened with the electronic age. As I started going online, I started acquiring multiple identities," he said. He has with five professional identities and six personal ones.
The Liberty specification was technically complete two months ago, but it couldn't be released until corporations finished hammering out the intellectual property arrangement, Bennett said.
Royalty issues have come to the fore as Sun and others have tried to ensure that Internet standards will be used widely and not become a mechanism for profits. Liberty is mostly, though not quite, a royalty-free specification.
"By default, the direction of the organization is to move in a royalty-free direction...We cross-license intellectual property on a royalty-free basis to each other," Bennett said. However, members with "sensitive pieces of intellectual property may wish to opt out," he said.
AOL Time Warner, a late arrival to the Liberty group, has disclosed it has intellectual property in the Liberty realm, Schwartz said. It has agreed to license that intellectual property to Liberty for free, though, he added.
The SAML technology is a product of the Oasis standards group, a possible paving of the way for making Liberty a formal standard. American Express' Bennett said the alliance wants to standardize Liberty, but is first focusing on hammering out the technology before deciding to standardize through Oasis, the World Wide Web Consortium or the Internet Engineering Task Force.
Liberty could bump up against other standards, though. For example, while the WS-Security standard under development at Oasis currently is complementary with Liberty, some of the future directions that IBM and Microsoft plan for it overlap with Liberty, Bennett said.
It's not clear yet how much Liberty and WS-Security will step on each other's toes in the future. Sun has joined IBM and Microsoft in backing WS-Security, raising the possibility that there's room for some accommodation.
Liberty also uses the XML Signature specification, Bennett said.
At a higher level, Liberty is designed to work with a world of cell phones so people on the road can use it. It also includes a provision to let people log off of Liberty-connected services in one fell swoop.
And Liberty records the mechanism by which a user has been authenticated, a necessary measure to handle alliances between Internet sites that require different levels of authentication. For example, one site may require only a username and password, but more rigorous sites may require physical authentication such as thumbprints or smart cards.
EcommerceInternet Jobs ZDNet Asia: Wanted Architecture security IT pros ยท Spore directs $3.9B to enhance productiv... http://bit.ly/cp11MK
31 minutes ago by addiegibson on topsyMake BitDefender? Hati-hati!! Baca: http://j.mp/9nM4X7 http://koprol.com/s/3FzN
1 hour 24 minutes ago by pepoluan on topsythe ugly side of socmed marketing... companies, beware! http://j.mp/cIqelG http://koprol.com/s/3FyS
1 hour 31 minutes ago by pepoluan on topsyForeign LBS players need local tie-ups for commercial success in the region. http://tinyurl.com/yco936k
2 hours 7 minutes ago by zdnetasia on twitterPersonal Finance Software - Productivity Software - Mac - Free ...: SEE Finance. Personal finance manager featurin... http://bit.ly/a38bXY
2 hours 55 minutes ago by alisha204 on topsyFor BitDefender antivirus users, check out what the company said regarding its bad security update: http://bit.ly/cYTGug
3 hours 12 minutes ago by zdnetasia on twitterAsia not ready for zero-client computing, says analyst. http://bit.ly/cALkZB
3 hours 12 minutes ago by zdnetasia on twitterAsia not ready for zero-client computing, says analyst. http://bit.ly/cALkZB
3 hours 51 minutes ago by vivianzdnetasia on topsyFour news blogs today, from Inside India, Msia Explorer, Mister Tech and Tech Legal. Do check them out. http://www.zdnetasia.com/blogs/
3 hours 58 minutes ago by zdnetasia on twitterRead my blog post on getting the most from your Nexus One: http://www.zdnetasia.com/blogs/m...
1 day 56 minutes ago by mistertechblog on twitterRT @3wconsulting: Whitepaper from http://3W.com.au "Outsourcing Your IT Requirements to Philippines" now on @zdnetaustralia & @zdnetasia http://ow.ly/1oY9f
1 day 10 minutes ago by LeesaAT3W on twitterWhitepaper from http://3W.com.au "Outsourcing Your IT Requirements to Philippines" now on @zdnetaustralia & @zdnetasia http://ow.ly/1oYbA
1 day 11 minutes ago by itemployment on twitterWhitepaper from http://3W.com.au "Outsourcing Your IT Requirements to Philippines" now on @zdnetaustralia & @zdnetasia http://ow.ly/1oYbz
1 day 12 minutes ago by brucemills on twitterZdnetasia.com Estimated Worth $178,365 USD. Daily Ad Revenue:$244 USD, Daily Views:81,445 Pages... - http://www.haplog.com/www.zdneta...
1 day 54 minutes ago by Haplog on twitterThe receivers don't transmit back to the satellite. Unless there is a phone line attached to the receiver, they don't have any wa...
2 days 37 minutes ago by bessellbrowne on Apple to join the geolocation craze?whatever little understanding I have we 'll only progress toward end of the world if we use HPCs to lenthen life of human being. Huma...
2 days 43 minutes ago by abhi32002@gmail.com on High computing promises elixir of lifeThanks for the knowledgeable article on SDDs. Allas...when all this reasearch will happen in Indian Universities. Hope the new bill on Fo...
2 days 56 minutes ago by abhi32002@gmail.com on APAC HPC users eye solid-state drivesIt was a good article. This brings a good opportunity for Indian IT firms to come up with new solutions in this field. HPC can become a b...
2 days 15 minutes ago by abhi32002@gmail.com on High computing most-wanted job in AsiaCOL KR DHARMADHIKARY(RETD) its very late to reply the link, but if it is still alive and looking for opportunity, i would like to know th...
3 days 12 minutes ago by deb021280 on Education takes off in rural India, helped by PCsHigh performance computing (HPC) most-wanted job in Asia http://bit.ly/9vFC3i (via @zdnetasia) #singapore
3 days 29 minutes ago by mySingapore on twitterRT @zdnetasia: EMC COO, Pat Gelsinger, on bridging gaps in the organization and its cloud ambitions in Asia. (cont) http://tl.gd/i5jjd
3 days 17 minutes ago by mistymaitimoe on twitterEMC COO, Pat Gelsinger, on bridging gaps in the organization and its cloud ambitions in Asia. http://bit.ly/9etOZW
3 days 21 minutes ago by zdnetasia on twitterAsian SMBs need to pay more attention to disaster recovery planning http://bit.ly/bDet08 via @zdnetasia
3 days 37 minutes ago by asiapacsolution on twitterAsian SMBs need to pay more attention to disaster recovery planning http://bit.ly/bDet08
3 days 52 minutes ago by zdnetasia on twitterall of sg's isps have been practising compulsory invisible proxy for all home subscribers at their backend since many years back alre...
4 days 56 minutes ago by melvinchia on Web filters mean bad news for businessit is not to good for china.
Proactol
Very good explanation of JMX
5 days 46 minutes ago by Babith B on Managing applications with JMXThe reaction to a report issued Tuesday by Flurry Analytics managed to completely overlook some interesting news--the Android-based Motorola Droid outsold the original iPhone over the same period of time following their respective launches--to focus instead on the sales numbers for the Nexus One.
5 days 49 minutes ago by lonemavericks on diggsAnother ZTE story....
5 days 51 minutes ago by Moderate Your Greed on Philippines opens bid for final 3G licenseWe at www.fifosys.com have also seen a growth in IT outsourcing and anticipate it as a growing field.
5 days 25 minutes ago by sarah Jane on Companies' outsourcing spend to increaseI agree with you. The iSiVaL is super portable and TVs can't expand their image size. I recorded a video that might bring some ideas to...
5 days 55 minutes ago by Jesse B Andersen on Buying a projector? Try an LED TV insteadhermm... he deserved it.. he shud not talk abt sensitive things like tat, well, he shud think twice before saying all those things, event...
5 days 33 minutes ago by ... on Facebook user charged in MalaysiaPassword manager tools are potential security threat. Criminals who hack into the computer can use the password manager to log onto any s...
6 days 33 minutes ago by ohanae on What defaults should random password generators use?I've found the cross platform utility unetbootin to be rather handy for this kind of thing as well.
6 days 7 minutes ago by Jim on Use Live USB Creator to install Fedora 12 from a USB stickThanks for the article. I think the debug command has an "\" after "C:" it should say w32tm /debug /enable /file:C:\l...
6 days 8 minutes ago by Roger Biefer on Manage time accuracy with W32TmThe Desktop Virtualization Revolution is here!
Find our more with Citrix Simplicity is Power
2010 IT Salary & Skills Report
Find out the salary range of IT professionals. Join activeTechPros for free access to the report.
The Internet Show 2010, 21-22 Apr 2010, Singapore
FREE admission for visitors who pre-register online. Register Today!