• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
  • Future Tivoli Tools Extend SSO To Clouds, Analyze Services

    October 10, 2011 Timothy Prickett Morgan

    Password management and the security issues (mostly human) that surround it continue to be a bone in the throat of IT departments. Having established standards like Security Assertion Markup Language (SAML) and OpenID to control how users access applications within the network and behind the firewall, now app-crazed employees want to roam outside the firewall and use the same single sign-on (SSO) tools that they have for enterprise apps to get them access to the cloudy apps. The good news is this is exactly what IT departments want to have happen, too.

    So IBM is starting to tell customers about some enhancements to its Tivoli security products that will allow cloudy applications like LotusLive, Salesforce.com, and Google Apps to be brought into the same access control framework as internal apps and be giving SSO capability. You log in once and all the apps and systems under the watchful eyes of Tivoli let you bounce across public and private networks.

    As we learn in announcement letter 211-468, Tivoli Federated Identity Manager will use SAML, OpenID, and OAuth–that last one is the new bit–to make it so someone working from an external Web-based application can authenticate against your internal systems and share data with your site. OAuth is an authentication method created by Twitter that has been expanded and used by a number of Media 2.0 sites to allow people to share their pictures, files, and contact lists from one Web site with another without having to pass their credentials to that outside Web site.

    OpenID allows for a single user name and password to provide SSO capability across two Web sites. SAML provides a mechanism for doing authentication across distinct networks without resorting to saving cookies all over the place involving establishing a trusted store of identities that is also a repository of user names and passwords. You don’t log in so much as prove to SAML who you are and then it logs you in. SAML has been around since 2002, but the problem is that most Web applications don’t support it. And so, like everyone else, Tivoli Federated Identity Manager needs the OAuth hack to do authentication and also to allow for data to be shared across two different Web apps.

    The Horizon Application Manager from VMware was created to solve the same authentication issue and to also provide a means to allow end users to subscribe to apps, both inside and outside the firewall, as if they were on iTunes.

    Tivoli Federated Identity Manager Business Gateway, which already supported SAML and which does auditing and compliance control for end users coming into the corporate applications from outside the firewall, will before the end of the year get expanded token support, adding to its existing SAML support.

    IBM also hinted that it was working on new product called Tivoli Analytics for Service Performance, which will launch sometime in the first half of 2012. This product is brand new and will be used to analyze how services on the corporate network–by which IBM means the stuff that comprises applications–are performing so you can figure out when things are going wrong before they die. It will gather and analyze performance data from systems, their applications, and the networks that connect them and their end users together. The idea is to watch what normal behavior is on these networks and then watch and alert administrators when something don’t look quite right.

    RELATED STORIES

    IBM Updates Service Delivery Manager

    Cloudy Infrastructure the Top CIO Priority in 2011

    Tivoli Provisioning Manager Deal Chops Prices in Half

    IBM Updates Tivoli Job Scheduler

    SAML 2.0 Enables SSO Products to Work Over the Web



                         Post this story to del.icio.us
                   Post this story to Digg
        Post this story to Slashdot

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Tags:

    Sponsored by
    Computer Keyes

    Fax Directly from your IBM i

    KeyesFax is a full function automated IBM i fax system. Spooled files are burst by fax number and auto transmitted with overlays.  It combines both a send and receive facsimile processing system with a complete image package.

    The fax software will edit, send, receive, display, print, and track fax documents or images using any standard IBM i without additional expensive hardware, software or subscriptions.

    Computer Keyes has been developing Software Solutions since 1978!

    www.computerkeyes.com

    Share this:

    • Reddit
    • Facebook
    • LinkedIn
    • Twitter
    • Email

    Admin Alert: How to Retrieve Password Parameters for Auditors GXS Shares Development Plans for IBM i Customers

    Leave a Reply Cancel reply

Volume 20, Number 34 -- October 10, 2011
THIS ISSUE SPONSORED BY:

BCD
Infor
Townsend Security
Vision Solutions
Shield Advanced Solutions

Table of Contents

  • IBM Readies October Power Systems Announcements
  • Speaking of IBM i Innovation . . .
  • Oracle Drives Java Technology Forward at Annual Conference
  • As I See It: The Other Final Frontier
  • Oracle Has Built A Modern, Cloudy AS/400
  • Infor Wants You, Channel Partner
  • IBM Grabs Q1 Labs and Creates New Security Division
  • IBM’s Wheels And Deals On 10 Gigabit BNT Switches
  • Future Tivoli Tools Extend SSO To Clouds, Analyze Services
  • IBM Offers Tech Support Try-and-Buy Services

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • IBM Unveils Manzan, A New Open Source Event Monitor For IBM i
  • Say Goodbye To Downtime: Update Your Database Without Taking Your Business Offline
  • i-Rays Brings Observability To IBM i Performance Problems
  • Another Non-TR “Technology Refresh” Happens With IBM i TR6
  • IBM i PTF Guide, Volume 27, Number 18
  • Will The Turbulent Economy Downdraft IBM Systems Or Lift It?
  • How IBM Improved The Database With IBM i 7.6
  • Rocket Celebrates 35th Anniversary As Private Equity Owner Ponders Sale
  • 50 Acres And A Humanoid Robot With An AI Avatar
  • IBM i PTF Guide, Volume 27, Number 17

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle