Security Patterns with the WSO2 ESB - Tuesday, 3rd April 2012Security is a key aspect of any successful enterprise SOA solution which allows channels for internal and external parties to access business assets. Security measures should also enable other vital aspects of the solution such as
The WSO2 Identity Server - An answer to your common XACML dilemmas - Tuesday, January 24th 2012Although XACML can create certain bottlenecks, it cannot be taken completely out of the picture. It is still a good choice for access control and the use of the WSO2 Identity Server can help augment the benefits it provides. Standardizing Identity Provisioning with SCIM - Wednesday, 18th January 2012Today enterprise solutions adopt products and services from multiple cloud providers in order to accomplish various business requirements. This means that it is no longer sufficient to maintain user identities only in corporate LDAP. In most cases, SaaS providers also need dedicated user accounts created for the cloud service users, which raises the need of identity provisioning mechanisms to be in place. Security in the Cloud - Thursday, October 27th 2011The benefits of cloud computing are undeniable – Faster project deployment, lower maintenance costs and ease of scalability are just a few. However, these benefits can only be enjoyed if the right security protocols are in place, thereby making security a key concern in the buildup and migration of applications on the cloud. Exploring the Evolution of Internet Identity and Related Technologies - Thursday, 5th May 2011Today Internet users require instant, secure seamless access to the applications regardless of the place and devices they are using to connect. Different entities have brought forward various innovative solutions to address this requirement. There are plethora of standards and technologies in this area some of which are thriving and others which introduced important identity concepts, yet became obsolete and in this ever evolving world, where new technologies with different flavors keep emerging.
Fine Grained Authorisation Policies Making Your Head Spin?? XACML to the Rescue!! - Thursday, 21st April 2011Imagine yourself to be the HR manager in an organization where you need some of your colleagues to access Employee Information but not salary particulars. And in no way should they be allowed access remotely, or over the weekend. Securing RESTful Services - Thursday, 27 January 2011REST-based services offer a simpler alternative to SOAP and WS-* services. But simpler structures does not guarantee that security issues need not be carefully considered and appropriate mechanisms put in place. This webinar shows how to leverage readily available technologies and practices to build secure RESTful services. Wikileaks CableGate: how can you ensure it doesn't happen to you! - Tuesday, 14th December 2010The CableGate affair has shown that even classified systems can have huge Governance and security issues. One reaction to this is to focus on removing CD drives from classified systems. Here at WSO2 we think that the "fix" for these kind of issues goes much deeper: Fundamentally, some of the blame for CableGate must lie with the system design that allowed too many people to access classified and confidential data. |