home
NEWS       BLOGS       FORUMS       NEWSLETTERS       RESEARCH       EVENTS       DIGITAL LIBRARY       CAREERS  
Network Computing Network Computing Powered by InformationWeek Business Technology Network

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers







Directory Disservice: Why Can't They All Just Get Along?
February 22, 1999



Missing Links: Authentication & Single Sign-On

Still waiting for single sign-on? Don't hold your breath. Today's single sign-on services still rely on password caching and some sort of screen-scraping or scripting interfaces in order to be automatically entered. To be truly effective, a single sign-on system needs to support a token-based authentication mechanism that relies on an enterprise directory service for ACLs (access-control lists). In fact, both essential functions of a single sign-on system are still missing: user authentication services are far from being standardized, and there's no unified enterprise directory to define and store ACLs.

Designed to make user administration across multiple servers easier, NOS directories do include authentication services. For instance, Novell's NDS includes a proprietary RSA-based authentication system; Microsoft Corp.'s Windows 4.0's NT Domain provides a challenge-response authentication mechanism; Lotus Notes includes a public-key client authentication service; and Netscape Communications' SuiteSpot relies on simple LDAP authentication (user name and password BINDs). In addition, Microsoft's Active Directory is built on a Kerberos V5 authentication system (like DCE).

However, to implement a token-based single sign-on system effectively, all network services need to share not only a common directory service, but also a common authentication system. In this case, a user receives a digital token when he or she first logs in. All subsequent authentication challenges are automatically satisfied behind the scenes. To date, the most likely scenario involves the widespread support for X.509 PKI, where network services are authenticated based on certificate authentication similar to that in certificate-authenticated Web services.



Page 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8


Print This Page


e-mail E-mail this URL





Ready to take that job and shove it?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
Go beyond Google and get vertical. These specialized search sites will help you find the business information you need -- fast.

Ari Balogh was named to the post of chief technology officer as the companys for a "realignment" of employees.










InformationWeek U.S. IT Salary Survey 2008
Salaries for business technology professionals are falling. Here's what you need to know in order to make good hiring decisions and personal career choices. Download Today
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips



Techweb
IWKBTN
InformationweekInformationweek 500Informationweek 500 ConferenceInformationweek AnalyticsInformationweek Events
Informationweek ReportsInformationweek MagazinebMightyByte and SwitchDark ReadingDigital Library
Intelligent EnterpriseInternet EvolutionNetwork ComputingPlug Into The CloudDr. Dobbs
space
Techweb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0Mobile Business ExpoSoftware ConferenceNoJitterMobile Connect
Black HatGTECEnergy CampMashup CampStartup CampCloud Connect
space
Light Reading Communications Network
Light ReadingLight Reading EuropeUnstrungCable Digital NewsConstantinopleInternet EvolutionPyramid Research
Heavy ReadingLight Reading LiveLight Reading InsiderEthrnet ExpoOptical ExpoTelco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems and TechnologyInsurance and TechnologyWall Street and TechnologyAccelerating WallstreetBST SummitBuyside Trading SummitIT Summit
space
Microsoft Technology Network
MSDNTechNetTotal IT ProTotal Dev Pro
space


App Infrastructure   |   Messaging & Collaboration   |   Network & Systems Mgmt   |   Network Infrastructure   |   Security  |   Storage & Servers   |   Wireless   |   Enterprise Apps
About Us  |  Contact Us  |  Site Map  |  Technology Marketing Solutions  |  Advertising Contacts  |   Briefing Centers
Copyright © 2009  United Business Media LLC  |  Privacy Statement  |  Terms of Service  |  Your California Privacy Rights