Monday, October 10. 2005The dangers of single sign-onTrackbacks
Trackback specific URI for this entry
No Trackbacks
Comments
Display comments as
(Linear | Threaded)
It would not do to have Dan Brown or any Holy Grail issues to complicate the already obfuscated question of SOA. Nor would it do to combine business and systems SOA services.
SOA services are, ad must be, divided into business services and systems services. Business SOA services are part of the application layer, and part of a ‘composite’ application. Systems services – security, messaging, transformation, business process choreography, etc., etc. – are the top layer of enterprise infrastructure. Collectively, some of these systems services might be known as ESB services. SSO/IDM is a systems service which would be used by many business services. Users at the edge would access an initial business service which would authenticate them using the infrastructure provided SSO/IDM systems service. Other downstream SOA business services would, as required, authenticate on an individual pair-wise basis using infrastructure provided security services. This approach makes SSO/IDM part of an infrastructure architecture and not part of a business SOA strategy. Seem from this standpoint, SSO/IDM is a user requirement for comprehensive infrastructure security strategy and architecture. |
Calendar
Quicksearch |
|||||||||||||||||||||||||||||||||||||||||||||||||

