{"id":1035,"date":"2009-02-17T23:18:35","date_gmt":"2009-02-18T07:18:35","guid":{"rendered":"\/?p=1035"},"modified":"2009-02-17T23:26:35","modified_gmt":"2009-02-18T07:26:35","slug":"identity-software-services-roadmap","status":"publish","type":"post","link":"https:\/\/www.identityblog.com\/?p=1035","title":{"rendered":"Identity Software + Services Roadmap"},"content":{"rendered":"<p><a href=\"\/wp-content\/images\/2009\/01\/PDC-2008.pdf\"><img loading=\"lazy\" class=\"alignleft\" style=\"FLOAT: left\" src=\"\/wp-content\/images\/2009\/01\/PDC-cover.jpg\" alt=\"\" hspace=\"15\" vspace=\"10\" width=\"211\" height=\"290\" \/><\/a><br \/>\nI continue to receive many questions about how enterprise and government\u00a0environments\u00a0and systems can interact with new generations of\u00a0services that are being hosted in the cloud, especially\u00a0from an identity management point of view.<\/p>\n<p>It is a fascinating question and getting it right is key.\u00a0 I think about it a lot these days &#8211; as I&#39;m sure everyone in the industry does.<\/p>\n<p>One conclusion:\u00a0\u00a0these new\u00a0questions are\u00a0the side-effects of\u00a0trends we&#39;ve been witnessing for a long time now &#8211; in particular, the decline and fall of the &#8220;closed domain&#8221;.\u00a0<\/p>\n<p>Metadirectory, in the last half of the 1990&#8217;s,\u00a0was the first step towards\u00a0understanding that\u00a0even with standards and widespread technological agreement, there\u00a0would be\u00a0no single &#8220;center&#8221; to the world of information.\u00a0 There were multiple boundaries\u00a0required by business and government,\u00a0but by their very nature those boundaries\u00a0always had to be crossed&#8230;\u00a0 This was a profound contradiction but also a motor for innovation.\u00a0 We needed kinder, gentler systems predicated on the idea they would have to interact with other systems run by independent people and organizations.<\/p>\n<p>The concept of identity federation arose to facilitate this.\u00a0\u00a0Over time\u00a0agreement grew\u00a0that federation was actually something you\u00a0were able to do once you re-thought the world\u00a0from a multi-centered point of view &#8211; one which allowed multiple viewpoints and criteria for action (call it\u00a0truth).\u00a0 This became\u00a0generalized into\u00a0&#8220;claims-based&#8221;\u00a0system design\u00a0&#8211; an approach in which assertions always have a source and\u00a0must be evaluated prior to acting on them (i.e. we can accept assertions from multipe sources because\u00a0our systems include mechanisms for deciding what they mean).<\/p>\n<p>The notion of consuming and combining services, some of which we host ourselves, and others\u00a0which are hosted for us by third parties,\u00a0fits perfectly into this multi-centered view.\u00a0 And in\u00a0a world of\u00a0claims-based system design, the combination of cloud and enterprise computing is\u00a0a completely natural &#8220;atomic&#8221; capabiity.\u00a0 So all the work the industry has been doing to advance claims-based computing lays the foundation for these new computing paradigms and makes them dramatically more practicable.<\/p>\n<p>My\u00a0presentation to the Microsoft Professional Developers Conference\u00a0was a concrete look at how\u00a0claims-based system design affects developers, and the synergies they will obtain by adopting the model.\u00a0\u00a0It argued, in\u00a0essence, that there is ONE relevant architecture for identity (NOT to be confused with &#8220;one single\u00a0monolithic identity, which is an anathema!)\u00a0 That ONE architecture works in the enterprise, in the cloud and\u00a0in the\u00a0home, and works on many loosely-coupled systems designed by many vendors to do many things &#8211; in the enterprise and in the cloud.<\/p>\n<p>The presentation\u00a0also\u00a0discusses a number of\u00a0the components we are\u00a0beginning to make\u00a0available as software products and services across Microsoft.\u00a0\u00a0It underlines that these components implement widely adopted standards and their very goal is interoperable systems that are synergetic for customers.<\/p>\n<p>The PDF is <a href=\"\/wp-content\/images\/2009\/01\/PDC-2008.pdf\">here<\/a>, and the Word 2007 version is <a href=\"\/wp-content\/images\/2009\/01\/PDC-2009.docx\" class=\"broken_link\">here<\/a>.<\/p>\n<p>\u00a0<\/p>\n","protected":false},"excerpt":{"rendered":"<p>How claims-based identity advances the integration of cloud and enterprise computing.<\/p>\n","protected":false},"author":68,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[67,37,10,8],"tags":[],"_links":{"self":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts\/1035"}],"collection":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/users\/68"}],"replies":[{"embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1035"}],"version-history":[{"count":0,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts\/1035\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1035"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1035"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1035"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}