![]() |
|
Identity & PolicyA Common Platform for a Pervasive
Policy Paradigm.
|
|||||||||||||||||||||
Overview This book is a sequel to the first book published in 2007, “Identity and Security” and is again based on the authors experience working at Sun Microsystems as an IT Architect specializing in Identity System Integration with Telecom Customers and Cable Customers along with Sun’s NEP (Network equipment partners) and integrating Sun Identity System with ISV (independent software vendor) partners. It also includes the author’s understanding of market developments in the Identity & Policy (XACML) space and potential future, based on the developments that have taken shape in the last 3 years (2005 to 2008). The objective of this book is to explore the strategic significance, market requirements and all the potential possibilities of leveraging Standards based Identity and Policy Systems for an Enterprise IT environment (& Enterprise Architecture) and Telecom environment to provide a pragmatic view for the future in network convergence based on NGN and converged services based on Service Oriented Architecture. This book also looks into the alignment and functional integration offered by a Policy Orchestration between multiple policy domains, including, device policies, NAC policies, QOE policies, Session Specific policies, Service Polices, Distributed System and Virtual System policies, Privacy policies, Policy assurance and more. Dr. Chandramouli from NIST and The University of Maryland has also collaborated in this book on "Identity and Policy", as a co-author. He is also the co-author of the well received second edition of the book on RBAC –Role Based Access Control. He has authored many papers as well in the area of RBAC and Policies.
|
|
|||
We will revisit and revise the 9 STEP R process for an Identity Enabled Architecture (IDEA) in this book. The 4th step begins with Role and Role Management; and steps 4, 5 and 6; the Role 2 Rule 2 Resource –alignment –talks to how roles, attributes, context changes, events and triggers can influence rules, rules associated with roles and rules associated with resources and more; these 3 steps, lay the;
What will I get by reading this book? This book is intended for Systems Architects, Network Architects, Software Architects, Security Architects, Enterprise Architects, CSO, CTO and other IT professionals, who work in the Identity and Policy space, both in the CME (communications, media and entertainment) Industry and Enterprises as well. This is the first book on the market that talks to the end-to-end spectrum of an Policy based Orchestration, and how an Identity System acts as a Core Building Block for Enterprise’s building their Architectures based on SOA and evolving IP Network that require a common POLICY platform (end to end policy alignment). This book talks about the value proposition of a Distributed Identity based Policy System for Access Networks, Devices, Sessions, Services, Content, Distributed Systems and more. It recaps all the major developments in the past 3 to 4 years and projects the potential developments that can take place in terms of a Pervasive Policy Paradigm in the next 5 years as multiple Billions of Dollars gets invested in the NG Network Architecture and Enterprise Architecture based on SOA and a Common Policy & Control Platform is deployed, which will include millions of PDP and billions of PEP (policy decision points and policy enforcement points). This book explains how an ID-entity Enabled Architecture, a.k.a., IDEA, a.k.a., Identity Centric Architecture (as the Security, Policy and Control Stratum), helps align SOA (the service signaling stratum) with NGN (packet handling stratum). It covers the nature of policies from privacy policies to device policies to QOS policies to Service Centric policies and more to address the range of Authentication, Admission Control, Access Control and Authorization models that exist. The book essentially captures the next wave of activity around an Identity System from a policy perspective, based on developments with the OASIS standard XACML version 1.0, version 2.0 and version 3.0. This is the first book on the market that covers the end to end application of XACML. What's the value of the content? Using this book’s content readers are expected to add value to their Enterprise from the following perspectives:
The real measure of the value of this book is for the readers to go through the Content and use it on their jobs to Architect and Align System Solutions around a Common Open Standards based Policy Architecture and Framework –that address Privacy, Trust and Security. Reviewers Comments:
|
||||
|
||||
|
||||
|
Dr. Ramaswamy Chandramouli is the Director –Personal Identity Verification Program, NIST and an Adjunct Associate Professor in University of Maryland, University College.
He has more than 20 years of experience in the design, development of IT solutions for government and industry. He has done extensive research in the area of Automated Security Testing, Role-based Access Control, Policy Specification and Enforcement and Conformance Testing of Smart Cards.
He has authored over 30 peer-reviewed publications and has received two Best Paper Awards. He is also the coauthor of the 2007 book on RBAC from NIST.
Ramaswamy is also Certified by TOG (on TOGAF 8), SEI (as a Software Architect) and OGC (Prince 2 and ITIL). He has Green Belt Six Sigma training. He is a ECCSE (Enterprise Computing Certified Systems Engineer -Competency 2000- from Sun ) and as a Systems Architect Pro (from Peoplesoft). He is a lifelong member of ACM.
|
|||
| © futuretext® Ltd 2005 | Web Design by Perfect Blue |