Identity & Access Management
In this post, that follows the first of the series, we will go through the installation of Velo server and all its pre-requirements. It’s important to note that all the instructions reported here should be replicated only for testing purposes and not in production environments. The main aim is to evaluate the identity management features of the software and not to show how the software should be installed, configured, and used in real use cases. Aspects as software optimizations, hardening and so on are out of topic. [read more...]
Wednesday, January 20th, 2010
Tags:identity management, open source, OpenSourceLAB, velo
Posted in Identity & Access Management | No Comments »
Since I’ve noticed a lot of interest around open source IAM projects, I thought that an “Open source LAB” blog series could be useful to provide some information gathered during my practical investigations, in the hope to be helpful for corporations deploying their open source identity management solution.
The first projects I would like to evaluate is Velo developed by Safehaus.org. Velo is an open source user provisioning software that helps company by automating many administrative tasks associated with user account setup and maintenance and it seems to be one of the most promising IAM suites available.
[read more...]
Wednesday, January 13th, 2010
Tags:identity management, open source, OpenSourceLAB, velo
Posted in Identity & Access Management | 1 Comment »
This post is to recommend you a new white paper by Hitachi: “Best Practices for Identity Management Projects”.
The paper presents some best practices related to project management topics useful deploying and operating an identity management infrastructure.
[read more...]
Monday, January 11th, 2010
Tags:change management, consulting, digital identity, hitachi, identity management, information security, project management
Posted in Identity & Access Management | No Comments »
Identropy’s blogger Ash Motiwala has started an interesting series on developing an identity management roadmap.
“I thought a blog series was in order to provide some of our insights into aiding corporations develop an Identity Management Roadmap (which is a step by step guide for your organization to follow when deploying an identity management solution). I got a chance to sit down and interview some of our 10+ year identity gurus to collect some of their golden nuggets of identity wisdom for this series. Heck, this may even inspire and enable some of you ambitious folks out there to develop an IDM Roadmap for your organizations yourselves!” Ash says in the first post of the series.
[read more...]
Friday, December 11th, 2009
Tags:architectures, change management, identity management, identropy, project management
Posted in Identity & Access Management | No Comments »
A quite recent Burton’s research found that organizations that deploy provisioning products rarely achieve their objectives during the first project iteration.
While these provisioning projects address some important challenges, they rarely address all the initial expectations and, even if they meet their goals, they result in high maintenance costs and in the inability to adapt to changing needs also in organizations that are on their second or third iteration of a provisioning product deployment.
[read more...]
Monday, December 7th, 2009
Tags:burton, consulting, identity management, identity provisioning, project management
Posted in Identity & Access Management | 1 Comment »
Here I am going to provide a small set of identity and access management best practices that enterprises can benefit from to better approach new or revised IAM initiatives that, for their nature are, often complex and expensive.
[read more...]
Monday, November 23rd, 2009
Tags:best practices, consulting, identity management, identity provisioning
Posted in Identity & Access Management | No Comments »
Some days ago I was wondering why among the enterprise level Identity and Access Management (IAM) infrastructures, I’ve never seen an open source solution.
The main driver of my curiosity was the following question: Why small and medium size companies spend a lot of money to pay very expensive licenses for products offering features that they will never use? Why companies which require only few simple identity provisioning and access control tasks don’t use open source solutions?
Then, I started a brief research on one of the most publicized open source identity management project: SUN Identity Management Community Project.
[read more...]
Wednesday, November 18th, 2009
Tags:connectors, open source, opends, openptk, openspml, opensso, SUN
Posted in Identity & Access Management | 2 Comments »
Some days ago I was wondering why among the enterprise level Identity and Access Management (IAM) infrastructures, I’ve never seen an open source solution.
Sun claims “to open sourcing all of its identity management software products by early 2011″ but in the meanwhile, is there any complete, enterprise level, open source identity & access management suite?
If not, is there any set of open source components that can be combined together to build a complete IAM suite?
[read more...]
Monday, November 9th, 2009
Tags:access management, connectors, digital identity, identity management, identity provisioning, identity synchronization, open source, openadaptor, opends, openptk, opensso, oracle, SUN
Posted in Identity & Access Management | 2 Comments »
Openadaptor is an open source Java toolkit that may be classified as a lightweight Enterprise Application Integration (EAI) solution. The toolkit provides a framework and components for building links between systems and various middleware solutions.
[read more...]
Friday, November 6th, 2009
Tags:architectures, connectors, identity provisioning, identity synchronization, openadaptor
Posted in Identity & Access Management | No Comments »
In every identity management solution there is one identity management system and one or more managed systems, also known as target or resource systems.
Identity synchronization is the task of synchronize identity data across a wide range of heterogeneous applications, directories, databases, and other data stores that are connected to the identity management system in order to capitalize its provisioning capabilities and, inherently, all the benefit that the identity management systems brings.
So, we can say that the main duties of identity synchronization is to keep synchronized and aligned identity data stored across different systems.
[read more...]
Wednesday, October 28th, 2009
Tags:compliance, digital identity, identity management, identity provisioning, identity synchronization, information security, policy, reporting
Posted in Identity & Access Management | No Comments »