There's an elephant in the room out there folks and it's called authorization...
p.s. Gerry Gebel over at the Burton Group has a good blog entry on this topic.
Technorati Tags:identity management, authorization
Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.
p.s. Gerry Gebel over at the Burton Group has a good blog entry on this topic.
Technorati Tags:
1 comment:
We concentrate on authentication because that's the "feeder document". If the authentication gets it wrong then no amount of authorization control will matter. And young James' prattling about "provisional authorization" overlooks lots of work on what I've called "contextual authorization" - authorization based on the context of the authentication. See www.networkworld.com/newsletters/dir/2006/1113id2.html for example.
Post a Comment