Separating single sign-on myths from fact
by Geoff Webb - Director of Solution Strategy at NetIQ - Tuesday, 26 February 2013.
Bookmark and Share
Social identity allows organizations to engage with users with the least amount of friction, at the lowest cost, and with minimal management burden. It also allows a business to grant more access to more people with less overhead and management headache, and therefore, provides an organization with SSO functionality to access public-facing web services. Therefore, SSO and social identity are complementary concepts that organizations can use to enable frictionless access to anything, from anywhere from any device, based upon an individual’s identity.

BYOI and the way forward

When we look at how things are evolving and changing with the consumerization of IT, it is likely that we are going to have to continue to assess how to utilize both SSO and social identity frameworks support business objectives.

We want to achieve verifiable identity based upon unique identities, within the given context of what those identities are seeking to access, from where, when and with what device. Therefore, social identity may provide the first step in authenticating an individual, but would need to be part of a process of secure and scalable authentication.


It may be that it is all that is required to access some services, or be part of a multi-factor authentication approach to really verify identity in order to access other, more sensitive data.

As social identity becomes more ubiquitous, we are already entering the era of “Bring Your Own Identity” (BYOI), where user identity is decoupled from traditional control, while businesses have the ability to rapidly provision, deprovision and manage individual access of data across public and private cloud services.

For CIOs that can get past these entrenched myths, and apply SSO in light of today’s disruptive IT trends, such as cloud, consumerization of IT, mobile and of course, social Identity, SSO’s long track record as a proven technology and solution offers additional layers of protection to existing identity and access solutions for comprehensive access authentication that circumvents the weakest link – humans who have challenges remembering dozens of user names and passwords. Perhaps most importantly, it strengthens today’s move towards far more comprehensive data protection measures to meet business and compliance demands.

Spotlight

A closer look at Mega cloud storage

Posted on 21 May 2013.  |  Once a novelty, nowadays many cloud storage services are fighting for their piece of the market in the virtual world. Mega offers 50GB of free space with great pricing on Pro accounts.


Daily digest

By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
  

Weekly newsletter

With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.
  

 
DON'T
MISS

Wed, May 22nd
    COPYRIGHT 1998-2013 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //