tfh
Volume 20, Number 34 -- October 10, 2011

Future Tivoli Tools Extend SSO To Clouds, Analyze Services

Published: October 10, 2011

by Timothy Prickett Morgan

Password management and the security issues (mostly human) that surround it continue to be a bone in the throat of IT departments. Having established standards like Security Assertion Markup Language (SAML) and OpenID to control how users access applications within the network and behind the firewall, now app-crazed employees want to roam outside the firewall and use the same single sign-on (SSO) tools that they have for enterprise apps to get them access to the cloudy apps. The good news is this is exactly what IT departments want to have happen, too.

So IBM is starting to tell customers about some enhancements to its Tivoli security products that will allow cloudy applications like LotusLive, Salesforce.com, and Google Apps to be brought into the same access control framework as internal apps and be giving SSO capability. You log in once and all the apps and systems under the watchful eyes of Tivoli let you bounce across public and private networks.

As we learn in announcement letter 211-468, Tivoli Federated Identity Manager will use SAML, OpenID, and OAuth--that last one is the new bit--to make it so someone working from an external Web-based application can authenticate against your internal systems and share data with your site. OAuth is an authentication method created by Twitter that has been expanded and used by a number of Media 2.0 sites to allow people to share their pictures, files, and contact lists from one Web site with another without having to pass their credentials to that outside Web site.

OpenID allows for a single user name and password to provide SSO capability across two Web sites. SAML provides a mechanism for doing authentication across distinct networks without resorting to saving cookies all over the place involving establishing a trusted store of identities that is also a repository of user names and passwords. You don't log in so much as prove to SAML who you are and then it logs you in. SAML has been around since 2002, but the problem is that most Web applications don't support it. And so, like everyone else, Tivoli Federated Identity Manager needs the OAuth hack to do authentication and also to allow for data to be shared across two different Web apps.

The Horizon Application Manager from VMware was created to solve the same authentication issue and to also provide a means to allow end users to subscribe to apps, both inside and outside the firewall, as if they were on iTunes.

Tivoli Federated Identity Manager Business Gateway, which already supported SAML and which does auditing and compliance control for end users coming into the corporate applications from outside the firewall, will before the end of the year get expanded token support, adding to its existing SAML support.

IBM also hinted that it was working on new product called Tivoli Analytics for Service Performance, which will launch sometime in the first half of 2012. This product is brand new and will be used to analyze how services on the corporate network--by which IBM means the stuff that comprises applications--are performing so you can figure out when things are going wrong before they die. It will gather and analyze performance data from systems, their applications, and the networks that connect them and their end users together. The idea is to watch what normal behavior is on these networks and then watch and alert administrators when something don't look quite right.


RELATED STORIES

IBM Updates Service Delivery Manager

Cloudy Infrastructure the Top CIO Priority in 2011

Tivoli Provisioning Manager Deal Chops Prices in Half

IBM Updates Tivoli Job Scheduler

SAML 2.0 Enables SSO Products to Work Over the Web



                     Post this story to del.icio.us
               Post this story to Digg
    Post this story to Slashdot


Sponsored By
VISION SOLUTIONS

The One Essential Guide to Disaster Recovery--
How to Ensure IT and Business Continuity

This white paper provides a basic understanding of the
building blocks of IT and business continuity--from
understanding the concepts of disaster recovery and
information availability to calculating the
business impact of downtime and selecting
the right software solution.

Readers can quickly match their specific optimum uptime objectives
with the easiest and most cost-effective IT strategy.

Read More


Editor: Timothy Prickett Morgan
Contributing Editors: Dan Burger, Joe Hertvik, Victor Rozek,
Jenny Thomas, Hesh Wiener, Alex Woodie
Publisher and Advertising Director: Jenny Thomas
Advertising Sales Representative: Kim Reed
Contact the Editors: To contact anyone on the IT Jungle Team
Go to our contacts page and send us a message.

Sponsored Links

System i Developer:  Join the Gurus at the RPG & DB2 Summit in St. Louis, October 17-19
The 400 School:  LIVE Online Training RPG IV & COBOL Boot Camps
inFORM Decisions:  Paperless saves $$$. Watch our iScan VIDEO DEMO and get FREE white papers.

 

 

IT Jungle Store Top Book Picks

BACK IN STOCK: Easy Steps to Internet Programming for System i: List Price, $49.95

The iSeries Express Web Implementer's Guide: List Price, $49.95
The iSeries Pocket Database Guide: List Price, $59
The iSeries Pocket SQL Guide: List Price, $59
The iSeries Pocket WebFacing Primer: List Price, $39
Migrating to WebSphere Express for iSeries: List Price, $49
Getting Started with WebSphere Express for iSeries: List Price, $49
The All-Everything Operating System: List Price, $35
The Best Joomla! Tutorial Ever!: List Price, $19.95


 
Four Hundred Stuff
Seagull Delivers Major New Release of LegaSuite

Crossroads Shrinks its SPHiNX VTL, Adds SAS Support

Mobile Malware Set to Explode, Security Pros Say

Vision Updates Database Replication Solution

Attunity Unveils New Data Replication Suite

Four Hundred Guru
Call Again and Again and Again...

Another Way to Pass Parms to SBMJOB

Admin Alert: How to Retrieve Password Parameters for Auditors

Four Hundred Monitor
Four Hundred Monitor's
Full iSeries Events Calendar

System i PTF Guide
October 1, 2011: Volume 13, Number 4

September 23, 2011: Volume 13, Number 3

September 17, 2011: Volume 13, Number 2

September 10, 2011: Volume 13, Number 1

September 25, 2010: Volume 12, Number 39

September 18, 2010: Volume 12, Number 38

TPM at The Register
Job creation better than expected in the US

Oracle settles with Feds over price gouging

Oracle floats Fusion apps, puffs up public cloud

Oracle previews RHEL-ish 2 Linux kernel

Teradata adds hardware compression to data warehouses

HP uncloaks 10GbE top-of-racker, IPv6 guidance

Dell building its own Exadata killer

Oracle previews Solaris 11, due in November

Red Hat snatches storage Gluster file system for $136m

EMC Project Lightning flash cards promised 'this year'

EMC goes virtual with in-house Oracle apps

Oracle rolls its own NoSQL and Hadoop

THIS ISSUE SPONSORED BY:

BCD
Infor
Townsend Security
Vision Solutions
Shield Advanced Solutions


Printer Friendly Version


TABLE OF CONTENTS
IBM Readies October Power Systems Announcements

Speaking of IBM i Innovation . . .

Oracle Drives Java Technology Forward at Annual Conference

As I See It: The Other Final Frontier

Oracle Has Built A Modern, Cloudy AS/400

But Wait, There's More:

Infor Wants You, Channel Partner . . . IBM Grabs Q1 Labs and Creates New Security Division . . . IBM's Wheels And Deals On 10 Gigabit BNT Switches . . . Future Tivoli Tools Extend SSO To Clouds, Analyze Services . . . IBM Offers Tech Support Try-and-Buy Services . . .

The Four Hundred

BACK ISSUES




 
Subscription Information:
You can unsubscribe, change your email address, or sign up for any of IT Jungle's free e-newsletters through our Web site at http://www.itjungle.com/sub/subscribe.html.

Copyright © 1996-2011 Guild Companies, Inc. All Rights Reserved.
Guild Companies, Inc., 50 Park Terrace East, Suite 8F, New York, NY 10034

Privacy Statement