Microsoft to add identity meta system to current web services tools
Microsoft to add identity meta system to current web services tools

Web services nears federated ID nirvana

Identity meta system delivers on promise of authentication interoperability

Written by Tom Sanders at Digital ID World in San Francisco, vnunet.com

Microsoft will add an identity meta system to its current web services development tools to allow for interoperability between authentication technologies.

The system adds an abstraction layer between the web service and the authentication technology, allowing the web service to deal with multiple authentication methods without the need for code adjustments.

It will allow for user identities and rights to be verified between anything from modern internet software to legacy mainframe applications, the company said in a presentation at the Digital Identity World conference in San Francisco.

Advertisement

The technology will enable federated applications, software that relies on claims made by other applications. Although such applications are available today, their number is limited because they are complex and have to deal with multiple authentication standards which do not always interoperate.

"Until we have technologies like WS-Security that allow you to describe these complex relationships, we are going to be stuck with very fixed topologies," John Shewchuck, vice president of distributed systems at Microsoft, told vnunet.com.

"Today we have solutions that allow you to go from a single identity provider to a single relying party based on user name and password. You might be able to tweak the technology and get it to do more complicated things, but it's hard."

Rather than providing the web service with an actual log-in name and password, the abstraction layer sends a claim, or security token, which states that a user's identity has been verified.

A useful analogy would be a pub that needs to know whether a customer is above the legal drinking age, but not their actual date of birth.

The technology reaches interoperability through the use of existing standards under the WS-* banner, such as WS-Metadata exchange and WS-Trust.

The notion of an identity meta system is new, but the technologies that Microsoft used to get there have been around for some time. This makes it easy for providers of software development kits to add support.

Microsoft will ship a software kit that allows developers to create web services using these federated identities within a couple of weeks, according to Shewchuck.

The kit will be part of Indigo, a development tool for web services, of which a pre-release version was made available last March. The final product is slated for release by 2006.

Windows Server 2003 will add support for the technology through Active Directory Federation Services in the upcoming R2 update due later this year, Shewchuck told vnunet.com.

Although Microsoft's development tools will be limited to its .Net language, other vendors will release tools for languages such as Java and PHP.

Tags:

Reader comments

More from Computeractive

News

The latest home computing news

Downloads

The best PC tools, applications and more

Reviews

Independent opinions on new hardware and software

Step-by-step guides

Easy-to-follow projects with pictures

PC Help

Solve PC problems with our Q&A

Videos

PC projects demonstrated and product reviews

Articles

An in-depth look at how to get the best from your PC

Magazine

What's coming up in Computeractive

Forums

Get help with your PC problems from our readers

Competitions

Your chance to win computing prizes

Shopping

Great deals on products, services and more

Computeractive CD Rom 10
All 26 issues of Computeractive from 2007 on one CD-Rom.

Ultimate Guide to PC Troubleshooting
Everything you need to know to solve your PC problems.

Create your own calendars softwareCreate your own Calendars
The fun and easy way to create your own calendars!

Computeractive - Issue 280Computeractive Back Issues
Missed an issue? Click here to find a back issue

Blogs

Windows Watch

Windows Watch

Keeping an eye on the latest XP and Vista news

Got a Mac? Get anti-virus.

02 Dec 2008Apple Mac users have long boasted that, unlike their Windows (sorry, sorry, "PC") counterparts, they don't need to spend time and money...

Download Junkie

Download Junkie

Your daily dose of download discussion

Get the free commercial version of TuneUp Utilties 2007 worth £30

01 Dec 2008Only recently did we tell you about the fantastic new release of TuneUp Utilities 2009 , which will enable you to tweak,...

Advertisement

Free email newsletters

Techno babble demystified...

[Display all definitions]

Or type in any computer-related word and click "Go"

Advertisement

Computeractive is not reponsible for content of Google adverts

Primary Navigation

© Incisive Media Ltd. 2008. Incisive Media Limited, Haymarket House,
28-29 Haymarket, London SW1Y 4RX, is a company registered in the United Kingdom with company registration number 04038503

Search computeractive.co.uk