SlideShare uma empresa Scribd logo
1 de 12
Baixar para ler offline
OpenSSO Roadmap


Sidharth Mishra
sid@sun.com

                  1
What's Next
• More Ease-of-Use Task Flows
• Mobile One Time Password.
• Reverse Proxy with Password Replay.
• Carrier-Grade Monitoring
• Entitlement Enforcement
• Fedlet for .NET
• Embedded Glassfish Container
                                        2
More Ease-of-Use Task Flows (Q1 / Q2 2009)
• Protect a Resource Flow
• Create a Realm Flow
• Configure / Deploy and Agent Flow
• Configure an Authentication Store
• Configure an Instance
• Select an Admin for a Realm




                                             3
SaaS Federation Task Flows (Q2 2009)

• Provide simple task flows for configuring federated
  SSO with popular SaaS services
• Focus on standards-based services rather than
  proprietary




                                                        4
Carrier grade monitoring
• Server level monitoring and management across
  entire OpenSSO deployment
  > Test agents to ensure they are responding to client
    requests.
  > Real-time of view of OpenSSO Deployment
  > Quickly identify and address problems on Server side
    and client side.
• Integrates with 3rd party monitoring and reporting
  tools.(OpenView, Unicenter, OpenNMS, Zenoss).
• Basic monitoring data viewer and graphing.

                                                           5
Reverse Proxy Agent
•   100% pure Java
•   Standards compliant reverse proxy.
•   Standard war file deployment
•   Transparent authentication.
•   Session loss recognition and re-authentication
•   Dispatch via regular expressions.
•   Central management of access control policies.
•   Policies are enforced by standard policy agent.

                                                      6
OTP - One Time Password (Q4 2009)
•   Based on OATH reference architecture.
•   Support for HOTP & TOTP specification.
•   Supports either 6 digits or 8 digits.
•   Configurable validity for an OTP password.
•   Support for both email and OTP password.
•   Will be used in conjunction with other authentication
    modules.


                                                            7
Entitlement Enforcement (Spring 2009)
• Extend OpenSSO to solve access management,
  federation, secure web services and
  ENTITLEMENT ENFORCEMENT.
  >   Policy Engine Benchmark – A million policies.
  >   Killer Policy Management User interface
  >   Build as reusable composite service for RM and IM.
  >   XACML enhancements.
      – XACML Policy Definition Language.
      – Support for XACML Import / Export.

• 3 +1 = 4 SSO Problems. One powerful solution.
                                                           8
Fedlet (.NET)
Problem                                              Benefits
• How do I federation enable an online
  business partner (Service Provider)                • Greater ROI on existing investments (e.g.
  without it having to deploy and manage a             hardware)
  full fledged heavy weight Federation               • Simple to deploy and embed an SP
  solution?                                            application.
OpenSSO Fedlet                                       • Ideal for scenarios where SSO with IDP and
                                                       retrieval of user attributes is the
• A lightweight service provider                       requirement.
  implementation of SAML protocol which
  can be deployed on a Java EE container.
• Can be easily embedded in a Service
  Provider application enabling it to
  communicate with an Identity Provider
  using SAML.



                       Fedlet – The lightest and fastest way to federate.

                                                                                                    9
OpenSSO Enterprise 8.1




        OpenSSO Enterprise Roadmap

                                     10
More Information
• OpenSSO Wiki
  http://wiki.opensso.org/
• OpenSSO Project
  http://www.opensso.org
• OpenSSO Enterprise
  http://www.sun.com/opensso




                               11
Thank You.




             12

Mais conteúdo relacionado

Semelhante a OpenSSO Roadmap Aquarium

Open sso enterprise customer pitch
Open sso enterprise customer pitchOpen sso enterprise customer pitch
Open sso enterprise customer pitch
xKinAnx
 
B1 roadmap to cloud platform with oracle web logic server-oracle coherence ...
B1   roadmap to cloud platform with oracle web logic server-oracle coherence ...B1   roadmap to cloud platform with oracle web logic server-oracle coherence ...
B1 roadmap to cloud platform with oracle web logic server-oracle coherence ...
Dr. Wilfred Lin (Ph.D.)
 

Semelhante a OpenSSO Roadmap Aquarium (20)

Open sso enterprise customer pitch
Open sso enterprise customer pitchOpen sso enterprise customer pitch
Open sso enterprise customer pitch
 
The Three Stages of Cloud Adoption - RightScale Compute 2013
The Three Stages of Cloud Adoption - RightScale Compute 2013The Three Stages of Cloud Adoption - RightScale Compute 2013
The Three Stages of Cloud Adoption - RightScale Compute 2013
 
Make the Shift from Manual to Automation with Open Source
Make the Shift from Manual to Automation with Open SourceMake the Shift from Manual to Automation with Open Source
Make the Shift from Manual to Automation with Open Source
 
Overzicht van de GlassFish technologie, Eugene Bogaart
Overzicht van de GlassFish technologie, Eugene BogaartOverzicht van de GlassFish technologie, Eugene Bogaart
Overzicht van de GlassFish technologie, Eugene Bogaart
 
Progress core product group strategy and roadmap - PUG Baltic Annual Conferen...
Progress core product group strategy and roadmap - PUG Baltic Annual Conferen...Progress core product group strategy and roadmap - PUG Baltic Annual Conferen...
Progress core product group strategy and roadmap - PUG Baltic Annual Conferen...
 
Fuji Overview
Fuji OverviewFuji Overview
Fuji Overview
 
B1 roadmap to cloud platform with oracle web logic server-oracle coherence ...
B1   roadmap to cloud platform with oracle web logic server-oracle coherence ...B1   roadmap to cloud platform with oracle web logic server-oracle coherence ...
B1 roadmap to cloud platform with oracle web logic server-oracle coherence ...
 
Web Space10 Overview
Web Space10 OverviewWeb Space10 Overview
Web Space10 Overview
 
WebLogic 12c - OMF Canberra June 2014
WebLogic 12c - OMF Canberra June 2014WebLogic 12c - OMF Canberra June 2014
WebLogic 12c - OMF Canberra June 2014
 
Whats new in web methods 9.12
Whats new in web methods 9.12Whats new in web methods 9.12
Whats new in web methods 9.12
 
E g innovations overview
E g innovations overviewE g innovations overview
E g innovations overview
 
MuleSoft Surat Virtual Meetup#25 - Anypoint Platform Features and Capabilitie...
MuleSoft Surat Virtual Meetup#25 - Anypoint Platform Features and Capabilitie...MuleSoft Surat Virtual Meetup#25 - Anypoint Platform Features and Capabilitie...
MuleSoft Surat Virtual Meetup#25 - Anypoint Platform Features and Capabilitie...
 
RESTful Services and Distributed OSGi - 04/2009
RESTful Services and Distributed OSGi - 04/2009RESTful Services and Distributed OSGi - 04/2009
RESTful Services and Distributed OSGi - 04/2009
 
The elegant way of implementing microservices with istio
The elegant way of implementing microservices with istioThe elegant way of implementing microservices with istio
The elegant way of implementing microservices with istio
 
12월 16일 Meetup [Deep Dive] Microservice 트래픽 관리를 위한 Istio 알아보기 | 강인호 컨설턴트, 오라클
12월 16일 Meetup [Deep Dive] Microservice 트래픽 관리를 위한 Istio 알아보기 | 강인호 컨설턴트, 오라클12월 16일 Meetup [Deep Dive] Microservice 트래픽 관리를 위한 Istio 알아보기 | 강인호 컨설턴트, 오라클
12월 16일 Meetup [Deep Dive] Microservice 트래픽 관리를 위한 Istio 알아보기 | 강인호 컨설턴트, 오라클
 
The Good, The Bad, and The Avro (Graham Stirling, Saxo Bank and David Navalho...
The Good, The Bad, and The Avro (Graham Stirling, Saxo Bank and David Navalho...The Good, The Bad, and The Avro (Graham Stirling, Saxo Bank and David Navalho...
The Good, The Bad, and The Avro (Graham Stirling, Saxo Bank and David Navalho...
 
Avinash_Aug_2015
Avinash_Aug_2015Avinash_Aug_2015
Avinash_Aug_2015
 
OSMC 2008 | Application Transaction Monitoring using Nagios by Satish Jonnavi...
OSMC 2008 | Application Transaction Monitoring using Nagios by Satish Jonnavi...OSMC 2008 | Application Transaction Monitoring using Nagios by Satish Jonnavi...
OSMC 2008 | Application Transaction Monitoring using Nagios by Satish Jonnavi...
 
Oracle SOA Tips & Tricks
Oracle SOA Tips & TricksOracle SOA Tips & Tricks
Oracle SOA Tips & Tricks
 
Updated resume
Updated resumeUpdated resume
Updated resume
 

Mais de Eduardo Pelegri-Llopart

Mais de Eduardo Pelegri-Llopart (20)

Juggling at freenome
Juggling   at freenomeJuggling   at freenome
Juggling at freenome
 
Digital activitymanagement
Digital activitymanagementDigital activitymanagement
Digital activitymanagement
 
Progress next iot_pelegri
Progress next iot_pelegriProgress next iot_pelegri
Progress next iot_pelegri
 
Pelegri Desarrollando en una nueva era de software
Pelegri   Desarrollando en una nueva era de software Pelegri   Desarrollando en una nueva era de software
Pelegri Desarrollando en una nueva era de software
 
Market trends in IT - exchange cala - October 2015
Market trends in IT - exchange cala - October 2015Market trends in IT - exchange cala - October 2015
Market trends in IT - exchange cala - October 2015
 
The impact of IOT - exchange cala - 2015
The impact of IOT - exchange cala - 2015The impact of IOT - exchange cala - 2015
The impact of IOT - exchange cala - 2015
 
IOT - Presentation to PEP @ Progress
IOT - Presentation to PEP @ ProgressIOT - Presentation to PEP @ Progress
IOT - Presentation to PEP @ Progress
 
Node.js as an IOT Bridge
Node.js as an IOT BridgeNode.js as an IOT Bridge
Node.js as an IOT Bridge
 
What is IoT and how Modulus and Pacific can Help - Featuring Node.js and Roll...
What is IoT and how Modulus and Pacific can Help - Featuring Node.js and Roll...What is IoT and how Modulus and Pacific can Help - Featuring Node.js and Roll...
What is IoT and how Modulus and Pacific can Help - Featuring Node.js and Roll...
 
What is the Internet of Things and How it Impacts You
What is the Internet of Things and How it Impacts YouWhat is the Internet of Things and How it Impacts You
What is the Internet of Things and How it Impacts You
 
Community Update 25 Mar2010 - English
Community Update 25 Mar2010 - EnglishCommunity Update 25 Mar2010 - English
Community Update 25 Mar2010 - English
 
GlassFish Community Update 25 Mar2010
GlassFish Community Update 25 Mar2010GlassFish Community Update 25 Mar2010
GlassFish Community Update 25 Mar2010
 
Glass Fish Portfolio C1 West V3.Mini
Glass Fish Portfolio C1 West V3.MiniGlass Fish Portfolio C1 West V3.Mini
Glass Fish Portfolio C1 West V3.Mini
 
Virtual Box Aquarium May09
Virtual Box Aquarium May09Virtual Box Aquarium May09
Virtual Box Aquarium May09
 
Introduction To Web Beans
Introduction To Web BeansIntroduction To Web Beans
Introduction To Web Beans
 
Ehcache Architecture, Features And Usage Patterns
Ehcache Architecture, Features And Usage PatternsEhcache Architecture, Features And Usage Patterns
Ehcache Architecture, Features And Usage Patterns
 
OpenDS Primer Aquarium
OpenDS Primer AquariumOpenDS Primer Aquarium
OpenDS Primer Aquarium
 
Nuxeo 5.2 Glassfish
Nuxeo 5.2 GlassfishNuxeo 5.2 Glassfish
Nuxeo 5.2 Glassfish
 
OpenSSO Deployments
OpenSSO DeploymentsOpenSSO Deployments
OpenSSO Deployments
 
ICEfaces and JSF 2.0 on GlassFish
ICEfaces and JSF 2.0 on GlassFishICEfaces and JSF 2.0 on GlassFish
ICEfaces and JSF 2.0 on GlassFish
 

Último

Breaking Down the Flutterwave Scandal What You Need to Know.pdf
Breaking Down the Flutterwave Scandal What You Need to Know.pdfBreaking Down the Flutterwave Scandal What You Need to Know.pdf
Breaking Down the Flutterwave Scandal What You Need to Know.pdf
UK Journal
 

Último (20)

AI presentation and introduction - Retrieval Augmented Generation RAG 101
AI presentation and introduction - Retrieval Augmented Generation RAG 101AI presentation and introduction - Retrieval Augmented Generation RAG 101
AI presentation and introduction - Retrieval Augmented Generation RAG 101
 
WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024WebRTC and SIP not just audio and video @ OpenSIPS 2024
WebRTC and SIP not just audio and video @ OpenSIPS 2024
 
Google I/O Extended 2024 Warsaw
Google I/O Extended 2024 WarsawGoogle I/O Extended 2024 Warsaw
Google I/O Extended 2024 Warsaw
 
TopCryptoSupers 12thReport OrionX May2024
TopCryptoSupers 12thReport OrionX May2024TopCryptoSupers 12thReport OrionX May2024
TopCryptoSupers 12thReport OrionX May2024
 
Behind the Scenes From the Manager's Chair: Decoding the Secrets of Successfu...
Behind the Scenes From the Manager's Chair: Decoding the Secrets of Successfu...Behind the Scenes From the Manager's Chair: Decoding the Secrets of Successfu...
Behind the Scenes From the Manager's Chair: Decoding the Secrets of Successfu...
 
Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024Extensible Python: Robustness through Addition - PyCon 2024
Extensible Python: Robustness through Addition - PyCon 2024
 
Breaking Down the Flutterwave Scandal What You Need to Know.pdf
Breaking Down the Flutterwave Scandal What You Need to Know.pdfBreaking Down the Flutterwave Scandal What You Need to Know.pdf
Breaking Down the Flutterwave Scandal What You Need to Know.pdf
 
Oauth 2.0 Introduction and Flows with MuleSoft
Oauth 2.0 Introduction and Flows with MuleSoftOauth 2.0 Introduction and Flows with MuleSoft
Oauth 2.0 Introduction and Flows with MuleSoft
 
Your enemies use GenAI too - staying ahead of fraud with Neo4j
Your enemies use GenAI too - staying ahead of fraud with Neo4jYour enemies use GenAI too - staying ahead of fraud with Neo4j
Your enemies use GenAI too - staying ahead of fraud with Neo4j
 
ECS 2024 Teams Premium - Pretty Secure
ECS 2024   Teams Premium - Pretty SecureECS 2024   Teams Premium - Pretty Secure
ECS 2024 Teams Premium - Pretty Secure
 
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...
TEST BANK For, Information Technology Project Management 9th Edition Kathy Sc...
 
Long journey of Ruby Standard library at RubyKaigi 2024
Long journey of Ruby Standard library at RubyKaigi 2024Long journey of Ruby Standard library at RubyKaigi 2024
Long journey of Ruby Standard library at RubyKaigi 2024
 
PLAI - Acceleration Program for Generative A.I. Startups
PLAI - Acceleration Program for Generative A.I. StartupsPLAI - Acceleration Program for Generative A.I. Startups
PLAI - Acceleration Program for Generative A.I. Startups
 
Integrating Telephony Systems with Salesforce: Insights and Considerations, B...
Integrating Telephony Systems with Salesforce: Insights and Considerations, B...Integrating Telephony Systems with Salesforce: Insights and Considerations, B...
Integrating Telephony Systems with Salesforce: Insights and Considerations, B...
 
Syngulon - Selection technology May 2024.pdf
Syngulon - Selection technology May 2024.pdfSyngulon - Selection technology May 2024.pdf
Syngulon - Selection technology May 2024.pdf
 
Designing for Hardware Accessibility at Comcast
Designing for Hardware Accessibility at ComcastDesigning for Hardware Accessibility at Comcast
Designing for Hardware Accessibility at Comcast
 
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdfHow Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
How Red Hat Uses FDO in Device Lifecycle _ Costin and Vitaliy at Red Hat.pdf
 
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
 
FDO for Camera, Sensor and Networking Device – Commercial Solutions from VinC...
FDO for Camera, Sensor and Networking Device – Commercial Solutions from VinC...FDO for Camera, Sensor and Networking Device – Commercial Solutions from VinC...
FDO for Camera, Sensor and Networking Device – Commercial Solutions from VinC...
 
The Metaverse: Are We There Yet?
The  Metaverse:    Are   We  There  Yet?The  Metaverse:    Are   We  There  Yet?
The Metaverse: Are We There Yet?
 

OpenSSO Roadmap Aquarium

  • 2. What's Next • More Ease-of-Use Task Flows • Mobile One Time Password. • Reverse Proxy with Password Replay. • Carrier-Grade Monitoring • Entitlement Enforcement • Fedlet for .NET • Embedded Glassfish Container 2
  • 3. More Ease-of-Use Task Flows (Q1 / Q2 2009) • Protect a Resource Flow • Create a Realm Flow • Configure / Deploy and Agent Flow • Configure an Authentication Store • Configure an Instance • Select an Admin for a Realm 3
  • 4. SaaS Federation Task Flows (Q2 2009) • Provide simple task flows for configuring federated SSO with popular SaaS services • Focus on standards-based services rather than proprietary 4
  • 5. Carrier grade monitoring • Server level monitoring and management across entire OpenSSO deployment > Test agents to ensure they are responding to client requests. > Real-time of view of OpenSSO Deployment > Quickly identify and address problems on Server side and client side. • Integrates with 3rd party monitoring and reporting tools.(OpenView, Unicenter, OpenNMS, Zenoss). • Basic monitoring data viewer and graphing. 5
  • 6. Reverse Proxy Agent • 100% pure Java • Standards compliant reverse proxy. • Standard war file deployment • Transparent authentication. • Session loss recognition and re-authentication • Dispatch via regular expressions. • Central management of access control policies. • Policies are enforced by standard policy agent. 6
  • 7. OTP - One Time Password (Q4 2009) • Based on OATH reference architecture. • Support for HOTP & TOTP specification. • Supports either 6 digits or 8 digits. • Configurable validity for an OTP password. • Support for both email and OTP password. • Will be used in conjunction with other authentication modules. 7
  • 8. Entitlement Enforcement (Spring 2009) • Extend OpenSSO to solve access management, federation, secure web services and ENTITLEMENT ENFORCEMENT. > Policy Engine Benchmark – A million policies. > Killer Policy Management User interface > Build as reusable composite service for RM and IM. > XACML enhancements. – XACML Policy Definition Language. – Support for XACML Import / Export. • 3 +1 = 4 SSO Problems. One powerful solution. 8
  • 9. Fedlet (.NET) Problem Benefits • How do I federation enable an online business partner (Service Provider) • Greater ROI on existing investments (e.g. without it having to deploy and manage a hardware) full fledged heavy weight Federation • Simple to deploy and embed an SP solution? application. OpenSSO Fedlet • Ideal for scenarios where SSO with IDP and retrieval of user attributes is the • A lightweight service provider requirement. implementation of SAML protocol which can be deployed on a Java EE container. • Can be easily embedded in a Service Provider application enabling it to communicate with an Identity Provider using SAML. Fedlet – The lightest and fastest way to federate. 9
  • 10. OpenSSO Enterprise 8.1 OpenSSO Enterprise Roadmap 10
  • 11. More Information • OpenSSO Wiki http://wiki.opensso.org/ • OpenSSO Project http://www.opensso.org • OpenSSO Enterprise http://www.sun.com/opensso 11