<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-3806516006871756690</id><updated>2011-07-28T22:24:53.351-07:00</updated><category term='Identity cyberspace'/><category term='Identity Gartner Provisioning Access'/><category term='Identity Identity2.0 OpenID SAML Higgins InformationCards'/><category term='SSL Shor algorithm'/><category term='OAuth Identity Access IDM'/><title type='text'>Identity Unleashed</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://identityunleashed.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://identityunleashed.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Kiran Thakkar</name><uri>http://www.blogger.com/profile/06230583140441194599</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://2.bp.blogspot.com/_zrMXlRn5S-Y/SMwVv7OwadI/AAAAAAAAAF8/IfM2JyDXJkY/S220/kiran+choti.JPG'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>5</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-3806516006871756690.post-2888440733950320846</id><published>2009-07-07T04:09:00.000-07:00</published><updated>2009-07-07T04:26:04.553-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='OAuth Identity Access IDM'/><title type='text'>OAuth Access delegation Protocol</title><content type='html'>I have created a presentation on OAuth Access delegation protocol which I would like to share with viewers. As I cannot upload presentation to my blog, I have uploaded it on slide share. Here is the link. &lt;a href="http://www.slideshare.net/kiranthakkar/oauth-presentation-1691038"&gt;&lt;span style="text-decoration: underline;"&gt;OAuth Presentation&lt;/span&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3806516006871756690-2888440733950320846?l=identityunleashed.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identityunleashed.blogspot.com/feeds/2888440733950320846/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3806516006871756690&amp;postID=2888440733950320846' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/2888440733950320846'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/2888440733950320846'/><link rel='alternate' type='text/html' href='http://identityunleashed.blogspot.com/2009/07/oauth-access-delegation-protocol.html' title='OAuth Access delegation Protocol'/><author><name>Kiran Thakkar</name><uri>http://www.blogger.com/profile/06230583140441194599</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://2.bp.blogspot.com/_zrMXlRn5S-Y/SMwVv7OwadI/AAAAAAAAAF8/IfM2JyDXJkY/S220/kiran+choti.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3806516006871756690.post-2065448666401852888</id><published>2008-09-13T12:40:00.000-07:00</published><updated>2008-10-18T11:35:30.464-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Identity Identity2.0 OpenID SAML Higgins InformationCards'/><title type='text'>Identity 2.0</title><content type='html'>Traditionally Identity has been limited to one source and one verification agent of the same source. Identity information stored at one web portal or site cannot be shared with some other portal or site. Overcoming these limitations, Identity 2.0 resembles the real life Identity Systems where user has one driving license or passport which s/he can use as a proof of identity as and when required. The term Identity 2.0 stems from the web 2.0 term (world wide web transition).&lt;br /&gt;&lt;br /&gt;Identity 2.0 is also called digital Identity is a revolution of Identity verification over the internet using technologies like &lt;a href="http://en.wikipedia.org/wiki/Information_Card"&gt;Information cards&lt;/a&gt; and &lt;a href="http://www.sixapart.com/labs/openid/"&gt;OpenID&lt;/a&gt;. Every entity (user) can have different Information cards as we have in real life like Driving license, Passport, SSN number etc. User can chose to present one of those available cards as an Identity proof while verification.&lt;br /&gt;&lt;br /&gt;Now when user register to a new site, user can present one of the information cards and he need not give any other information. Site can communicate with the Identity provider and validate user's identity and gets other information associated with the user from the Identity provider. This helps user where s/he does not need to remember many user profiles at the same time it also helps site in reducing cost associated with the user management.&lt;br /&gt;&lt;br /&gt;Having said this, the transition from Identity 1.0 (Traditional Identity) to Identity 2.0 is not as easy as it looks. There are many technologies which could be used for communication between verification agent and Identity provider like federation (SAML 1.1, SAML 2.0, Liberty), web services but there are no standerds around this. At the same time trust of Identity Provider also remains one of the major issue to be addressed. Uninterrupted availability of Identity provider also is a matter of concern.  If user'e identity is compromised, The impact is much more than what i could have been with Identity 1.0 because Identity is shared across multiple sites.&lt;br /&gt;&lt;br /&gt;What I would love to see happening with Identity 2.0 is, user owns his Identity data. User has a some sort of device or may be a web page exposing user's Identity information in standerd format. All the sites whom I authorize, can fetch that inforamtion. With this, I become the owner of my Identity information. It brings in its own chellenges of securing data and making sure that only authorized sites can access it user's information.&lt;br /&gt;&lt;br /&gt;Following are the technologies will bring difference to Identity 2.0&lt;br /&gt;&lt;a href="http://www.sixapart.com/labs/openid/"&gt;OpenID&lt;/a&gt;&lt;br /&gt;&lt;a href="http://en.wikipedia.org/wiki/SAML"&gt;SAML&lt;/a&gt;&lt;br /&gt;&lt;a href="http://en.wikipedia.org/wiki/Web_2.0"&gt;Web 2.0&lt;/a&gt;&lt;br /&gt;&lt;a href="http://en.wikipedia.org/wiki/Information_Card"&gt;Information Cards&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.eclipse.org/higgins/"&gt;Higgins trust framework&lt;/a&gt;&lt;br /&gt;&lt;a href="http://en.wikipedia.org/wiki/Light-Weight_Identity"&gt;LID&lt;/a&gt;&lt;br /&gt;&lt;a href="http://en.wikipedia.org/wiki/YADIS"&gt;Yadis&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;From all the technologies listed above, I think Higgins framework will bring in the most difference as there are many giants involved in its development that will help to bring in standerds around it.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3806516006871756690-2065448666401852888?l=identityunleashed.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identityunleashed.blogspot.com/feeds/2065448666401852888/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3806516006871756690&amp;postID=2065448666401852888' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/2065448666401852888'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/2065448666401852888'/><link rel='alternate' type='text/html' href='http://identityunleashed.blogspot.com/2008/09/identity-20.html' title='Identity 2.0'/><author><name>Kiran Thakkar</name><uri>http://www.blogger.com/profile/06230583140441194599</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://2.bp.blogspot.com/_zrMXlRn5S-Y/SMwVv7OwadI/AAAAAAAAAF8/IfM2JyDXJkY/S220/kiran+choti.JPG'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3806516006871756690.post-2007893805081070438</id><published>2008-05-03T15:24:00.000-07:00</published><updated>2008-05-03T15:35:37.369-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SSL Shor algorithm'/><title type='text'>Is SSL secure communication</title><content type='html'>Is SSL secure communication? Many of people in IT industry will reply with Yes without any hesitation. So am I.&lt;br /&gt;&lt;br /&gt;Today I came across one of the papers published by &lt;span&gt;&lt;span&gt;Chao-Yang Lu at China's &lt;a href="http://arxiv.org/PS_cache/arxiv/pdf/0705/0705.1684v2.pdf"&gt;University of Science and Technology&lt;/a&gt;. Using &lt;a href="http://en.wikipedia.org/wiki/Shor%27s_algorithm"&gt;Shor's algorithm&lt;/a&gt; (a &lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt; non-linear method of factoring composite numbers) &lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;and &lt;/span&gt;&lt;/span&gt;quantum computers they could actually crack SSL communication.&lt;br /&gt;&lt;br /&gt;So the time has come for industry to think of a new more secure encryption algorithm.&lt;br /&gt;I have started brainstorming with myself in the search of more secure encryption algorithm, Have you?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3806516006871756690-2007893805081070438?l=identityunleashed.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identityunleashed.blogspot.com/feeds/2007893805081070438/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3806516006871756690&amp;postID=2007893805081070438' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/2007893805081070438'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/2007893805081070438'/><link rel='alternate' type='text/html' href='http://identityunleashed.blogspot.com/2008/05/is-ssl-secure-communication.html' title='Is SSL secure communication'/><author><name>Kiran Thakkar</name><uri>http://www.blogger.com/profile/06230583140441194599</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://2.bp.blogspot.com/_zrMXlRn5S-Y/SMwVv7OwadI/AAAAAAAAAF8/IfM2JyDXJkY/S220/kiran+choti.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3806516006871756690.post-8632401186174797900</id><published>2008-03-09T12:56:00.001-07:00</published><updated>2008-03-10T19:49:36.933-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Identity cyberspace'/><title type='text'>Identity Management in cyberspace</title><content type='html'>I came across a very nice article on Identity Management in cyberspace. Here is the &lt;a href="http://www-usr.rider.edu/%7Esuler/psycyber/identitymanage.html"&gt;link&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3806516006871756690-8632401186174797900?l=identityunleashed.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identityunleashed.blogspot.com/feeds/8632401186174797900/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3806516006871756690&amp;postID=8632401186174797900' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/8632401186174797900'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/8632401186174797900'/><link rel='alternate' type='text/html' href='http://identityunleashed.blogspot.com/2008/03/identity-management-in-cyberspace.html' title='Identity Management in cyberspace'/><author><name>Kiran Thakkar</name><uri>http://www.blogger.com/profile/06230583140441194599</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://2.bp.blogspot.com/_zrMXlRn5S-Y/SMwVv7OwadI/AAAAAAAAAF8/IfM2JyDXJkY/S220/kiran+choti.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3806516006871756690.post-2441961797298574093</id><published>2008-02-25T17:36:00.000-08:00</published><updated>2008-03-10T19:49:05.234-07:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Identity Gartner Provisioning Access'/><title type='text'>Why and Who of Identity Management</title><content type='html'>The one domain which is catching up on its business because of &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_0"&gt;compliance&lt;/span&gt; and increased awareness of data security is, Identity. Identity, The word sounds pretty much technical and new but if you actually look at it, we have been doing identity management since quite a long time. If you look at the Election cards, Ration cards in India and &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_1"&gt;SSN&lt;/span&gt; in US. All this essentially falls under Identity Management. Its just that There are now systems in place to manage identity for you.&lt;br /&gt;&lt;br /&gt;You may get to hear different definitions of identity but core idea is to associate information about an entity in one unique identifier and representing the whole bunch of information in one unit which is called as identity. Once you have the information or data, Comes information management and comes Identity management in this case.&lt;br /&gt;&lt;br /&gt;Identity Management starts from provisioning of identity and it also involves managing all the information of an identity, automating all the process associated with an identity, Making sure that identity has access to all the data he is authorized for, making sure that identity information is secured and is not &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_2"&gt;mis&lt;/span&gt;used.&lt;br /&gt;&lt;br /&gt;With all the systems in place to manage identity, &lt;a href="http://www.cifas.org.uk/default.asp?edit_id=556-56"&gt;Identity Theft&lt;/a&gt; has become a major issue. This is not the risk to &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_3"&gt;individual&lt;/span&gt; identity as data but this also risks &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_4"&gt;individual's&lt;/span&gt; privacy, reputation and &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_5"&gt;individual's&lt;/span&gt; assets. And that was the driving force behind &lt;a href="http://www.opsi.gov.uk/acts/acts1998/ukpga_19980029_en_1"&gt;Data Protection Act&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Traditionally Sun and IBM has dominated this market since long and &lt;a href="http://www.networkworld.com/newsletters/dir/2006/0522id2.html?fsrc=rss-id"&gt;Oracle&lt;/a&gt; is also joining the race now with its acquisitions in last few years. Also there are few players jumping into the domain making the &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_6"&gt;Idm&lt;/span&gt; market competitive. Read &lt;a href="http://mediaproducts.gartner.com/reprints/oracle/150475.html"&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_7"&gt;Gartnet&lt;/span&gt; Magic Quadrant for User provisioning&lt;/a&gt; and &lt;a href="http://mediaproducts.gartner.com/reprints/ca/152046.html"&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_8"&gt;Gartner&lt;/span&gt; Magic Quadrant for Web Access Management&lt;/a&gt; for more information about all the players in &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_9"&gt;Idm&lt;/span&gt; domain.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3806516006871756690-2441961797298574093?l=identityunleashed.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identityunleashed.blogspot.com/feeds/2441961797298574093/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3806516006871756690&amp;postID=2441961797298574093' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/2441961797298574093'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3806516006871756690/posts/default/2441961797298574093'/><link rel='alternate' type='text/html' href='http://identityunleashed.blogspot.com/2008/02/why-and-who-of-identity-management.html' title='Why and Who of Identity Management'/><author><name>Kiran Thakkar</name><uri>http://www.blogger.com/profile/06230583140441194599</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='24' src='http://2.bp.blogspot.com/_zrMXlRn5S-Y/SMwVv7OwadI/AAAAAAAAAF8/IfM2JyDXJkY/S220/kiran+choti.JPG'/></author><thr:total>0</thr:total></entry></feed>
