{"id":761,"date":"2007-04-23T10:38:04","date_gmt":"2007-04-23T18:38:04","guid":{"rendered":"\/?p=761"},"modified":"2007-04-24T08:27:53","modified_gmt":"2007-04-24T16:27:53","slug":"cardspace-and-opensso","status":"publish","type":"post","link":"https:\/\/www.identityblog.com\/?p=761","title":{"rendered":"CardSpace and OpenSSO"},"content":{"rendered":"<p><img src=\"\/wp-content\/images\/2007\/04\/sundev.jpg\" \/><\/p>\n<p>The Sun Developer Network has published an&nbsp;article by <a href=\"http:\/\/icsynergy.com\/martin\/\">Martin Gee<\/a> entitled <a href=\"http:\/\/developers.sun.com\/identity\/reference\/techart\/cardspace.html\">Securing Site Access with CardSpace and OpenSSO<\/a>:<\/p>\n<blockquote><p>With today&#39;s ever-increasing demands for robust security software and systems, alternative authentication and trust mechanisms are gaining popularity. In particular, the user name-password authentication model is typically the root cause of many security frauds. Why? First, many of us record passwords somewhere, rendering them vulnerable for snooping. Second, our tendency to create passwords that are easy to remember makes them easy to be guessed or detected. Consequently, enterprises that have established processes along that model are looking for ways to better safeguard and optimize their systems <strong>without<\/strong> major overhauls.<\/p>\n<p>Enter <a target=\"_blank\" href=\"http:\/\/msdn2.microsoft.com\/en-us\/winfx\/aa663320.aspx\">Windows CardSpace<\/a> (henceforth, CardSpace), a Microsoft-led specification that has been gaining recognition over the past months. CardSpace defines a simplified paradigm that employs a security token called InfoCard for managing digital credentials and is available in Windows XP and Vista.<\/p>\n<p><a target=\"_blank\" href=\"https:\/\/opensso.dev.java.net\/\" class=\"broken_link\">OpenSSO<\/a> is Sun&#39;s open Web access management project based on Sun Java System Access Manager source code. As part of the open-source <a target=\"_blank\" href=\"https:\/\/cardspaceauthn.dev.java.net\/\" class=\"broken_link\">Project CardSpace<\/a> on <code>java.net<\/code>, ICSynergy has extended OpenSSO to include CardSpace as a simple authentication module. In addition, ICSynergy offers a commercial CardSpace implementation for OpenSSO and Sun Java System Access Manager along with <a target=\"_blank\" href=\"http:\/\/www.icsynergy.com\/Training.htm\">training programs<\/a>.<\/p>\n<p><a href=\"http:\/\/developers.sun.com\/identity\/reference\/techart\/cardspace.html\">This article<\/a> describes the benefits, basic architecture, and process flow of the CardSpace-OpenSSO authentication module.<\/p><\/blockquote>\n<p>It is good to see things coming together across the &#8220;crevasses&#8221; that used to separate different industry forces.&nbsp; If you do Java you should look at the Project CardSpace site.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Enterprises are looking for ways to better safeguard and optimize their systems without major overhauls, and ICSynergy has built a &#8220;simple authentication module&#8221; they say can help.<\/p>\n","protected":false},"author":68,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[19,10,8,15,4],"tags":[],"_links":{"self":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts\/761"}],"collection":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/users\/68"}],"replies":[{"embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=761"}],"version-history":[{"count":0,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts\/761\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=761"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=761"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=761"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}