Presentation is loading. Please wait.

Presentation is loading. Please wait.

Federated IdM Across Heterogeneous Clouding Environment

Similar presentations


Presentation on theme: "Federated IdM Across Heterogeneous Clouding Environment"— Presentation transcript:

1 Federated IdM Across Heterogeneous Clouding Environment
20th meeting CJK UNIOT-WG Nov , 2010 Tokyo China Communications Standards Association Jing Wu

2 Content 1 Background 2 Challenges of IdM in the Cloud 3
Federated IdM cross heterogeneous environment 4 Summary

3 Cloud Computing: over the telco network and the internet
How is the internet hop breached? What is required from the telco network operator to support Cloud Computing traffic? Bandwidth on demand? QoS assurance? Addressing? Synchronization? Telecom Network Cloud computing describes a new supplement, consumption, and delivery model for IT services based on the Internet, and it typically involves over-the-Internet provision of dynamically scalable and often virtualized resources. Cloud computing is an approach to delivering IT services that promises to be highly agile and lower costs for consumers and enterprises.Most cloud computing infrastructures consist of services delivered through common centers and built on servers. Enterprise data center

4 Identity Management (IdM) is an Essential Infrastructure of ICT
IdM is A set of functions and capabilities (e.g., administration, management and maintenance, discovery, communication exchanges, correlation and binding, policy enforcement, authentication and assertions) used for assurance of identity information (e.g., identifiers, credentials, attributes); assurance of the identity of an entity and supporting business and security applications. Identity Management is becoming an essential basis for transaction, communication and governance; it has been an infrastructural brick in generalized convergence of communication (specialized convergence of fixed and mobile), information and Internet services as well. Identity-based services are exponentially increasing and available on many different services platforms; Next-Generation business model for network operators demands subscriber-centric data consolidation; Identity management is an essential infrastructure for both telecomunication network and the Internet.

5 Challenges of IdM on Cloud Computing
Potential security risk clients prefer to integrate with client's identity management systems for SSO, user authentication, authorization, accounting, audit, provisioning, role management, and governance than share with others in public infrastructure. New business model Dedicated and multi-tenant model provide sharply different storage and virtualized layering techniques for data isolation and application partitioning in response to clients security risk concerns. Lack of industry standards Ensure to provide seamless integration with idm function, the cloud providers have to offer standard-based and identity-based security services . More challenges we will be facing with the emerging complex cloud computing circumstances.

6 Challenges of IdM Mechanisms
In new cloud computing, users authentication, authorization, accounting mechanism have to been re-invent over their cloud services in contrast to the legacy datacenter, hosting, enterprise inhouse services. Users must be strongly authenticated to validate their identity All user interactions must be logged to ensure non-repudiation User accounts must be de-provisioned in a timely manner Dormant accounts must be identified and removed quickly Access permissions must be certified on a continuous basis

7 Federated IdM Cross Heterogeneous Environment
The datacenter requests Cloud 1’s service catalog of the type of service, its configuration details, SLA details, network security, etc. Cloud 2 provides extra computing capacity to Cloud 1 when the datacenter’s request exceeded 1’s capacity. There is the basic federated IdM cross the heterogeneous environment. The broker federates resources from C1 and C2. Federation of indentities maintained by multiple Service providers on the cloud is very critical to cloud based service composition and application integration.

8 New Dimensions of IdM in the Clouds
SaaS requires application access; Paas requires system access; Both require a common IdM that can integrate into the existing authentication mechanisms. Microsoft Windows based authentication LDAP authentication OpenID Oauth etc..

9 4.Summary IdM is an important infrastructure of ICT systems.
A lot of new technologies of cloud computing are emerging rapidly and how to combine the IdM and the cloud is a new trend. Federated IdM solutions is to be a complete all-round solution addressing all possible issues of cloud IdM. Need to launch the IdM in the cloud research, especially in the Internet-of-things environment.

10 Supplementary Slides

11 Weblinks ITU-T Identity Management web page - Join coordination activity for identity management OASIS

12 Thanks for your Attention!


Download ppt "Federated IdM Across Heterogeneous Clouding Environment"

Similar presentations


Ads by Google