Welcome!

News Feed Item

User-Managed Access for the Enterprise: UMA Enables Web Access Management Modernization

Kantara Initiative Announces Revision 9 of the User-Managed Access (UMA) Protocol and a Free Public Webinar on March 20; When the API Economy and the Internet of Things Collide, How Will We Secure It All? UMA Builds on OAuth and OpenID Connect to Provide

PISCATAWAY, NJ -- (Marketwired) -- 03/18/14 -- The User-Managed Access (UMA) protocol was originally designed to help individuals control Internet data sharing, but UMA's notion of authorization-as-a-service can also help modern enterprises control access to sensitive resources in cloud and mobile environments.

Kantara Initiative's UMA Work Group published revision 9 of its OAuth-based protocol on March 6 to solve a broad range of "access management 2.0" challenges, and will shortly begin interoperability testing. On Thursday, March 20, at 8am Pacific, the UMA Work Group will conduct a free public webinar sponsored by Kantara board member CA Technologies to discuss UMA's benefits for enterprises.

Register for the webinar and find specifications and interoperability information at http://tinyurl.com/umawg. Follow along on Twitter at @UMAWG with the #UMAam20 webinar hashtag.

Scott Morrison, SVP and Distinguished Engineer at CA Technologies, comments: "The OAuth standard began an important process by letting individuals control inter-account data sharing. UMA takes this concept further, and empowers not only individuals but also organizations to control data access in highly distributed environments. We believe UMA is the missing piece in the identity puzzle and a critical part of 21st century IAM."

Maciej Machulak, CEO of Cloud Identity and Vice-Chair of the UMA Work Group, says: "Businesses require modern and standard-based technologies to secure the increasing number of APIs and Web-accessible resources on-premise and in the Cloud. UMA gives them the right solution and easily integrates with other IAM technologies. Without a doubt, UMA will play a pivotal role in the identity space."

"For enterprises, managing access to a vast array of APIs and websites is a daunting challenge that now extends beyond the organizational perimeter," notes Lasse Andresen, CTO of Kantara Board Member ForgeRock. "Standards are essential for creating secure and interoperable B2B ecosystems. We are looking forward to the UMA interop and encourage other vendors to participate."

Michael Schwartz, CEO of Gluu, says: "To date, we've required developers to implement most access policies in code. With UMA, people and businesses can gain back control of the process. UMA is destined to become the foundation of domain application security."

Joni Brennan, executive director of Kantara Initiative, says the organization is "proud to host the UMA group's work. UMA is one of our highest-profile activities, gaining attention from around the world from innovators big and small. Kantara Initiative will continue to support UMA interoperability and adoption initiatives through our open and transparent community. We invite all interested parties to join the effort!"

About Kantara Initiative
http://kantarainitiative.org/

About the UMA WG
http://tinyurl.com/umawg

Add to Digg Bookmark with del.icio.us Add to Newsvine

Media Contact
Joni Brennan
732 226 4223
Email Contact

More Stories By Marketwired .

Copyright © 2009 Marketwired. All rights reserved. All the news releases provided by Marketwired are copyrighted. Any forms of copying other than an individual user's personal reference without express written permission is prohibited. Further distribution of these materials is strictly forbidden, including but not limited to, posting, emailing, faxing, archiving in a public database, redistributing via a computer network or in a printed form.

Latest Stories
WebRTC is about the data channel as much as about video and audio conferencing. However, basically all commercial WebRTC applications have been built with a focus on audio and video. The handling of “data” has been limited to text chat and file download – all other data sharing seems to end with screensharing. What is holding back a more intensive use of peer-to-peer data? In her session at @ThingsExpo, Dr Silvia Pfeiffer, WebRTC Applications Team Lead at National ICT Australia, looked at differ...
Without a clear strategy for cost control and an architecture designed with cloud services in mind, costs and operational performance can quickly get out of control. To avoid multiple architectural redesigns requires extensive thought and planning. Boundary (now part of BMC) launched a new public-facing multi-tenant high resolution monitoring service on Amazon AWS two years ago, facing challenges and learning best practices in the early days of the new service. In his session at 19th Cloud Exp...
For basic one-to-one voice or video calling solutions, WebRTC has proven to be a very powerful technology. Although WebRTC’s core functionality is to provide secure, real-time p2p media streaming, leveraging native platform features and server-side components brings up new communication capabilities for web and native mobile applications, allowing for advanced multi-user use cases such as video broadcasting, conferencing, and media recording.
With major technology companies and startups seriously embracing IoT strategies, now is the perfect time to attend @ThingsExpo 2016 in New York. Learn what is going on, contribute to the discussions, and ensure that your enterprise is as "IoT-Ready" as it can be! Internet of @ThingsExpo, taking place June 6-8, 2017, at the Javits Center in New York City, New York, is co-located with 20th Cloud Expo and will feature technical sessions from a rock star conference faculty and the leading industry p...
"Plutora provides release and testing environment capabilities to the enterprise," explained Dalibor Siroky, Director and Co-founder of Plutora, in this SYS-CON.tv interview at @DevOpsSummit, held June 9-11, 2015, at the Javits Center in New York City.
Security, data privacy, reliability and regulatory compliance are critical factors when evaluating whether to move business applications from in-house client hosted environments to a cloud platform. In her session at 18th Cloud Expo, Vandana Viswanathan, Associate Director at Cognizant, In this session, will provide an orientation to the five stages required to implement a cloud hosted solution validation strategy.
SYS-CON Events announced today that CA Technologies has been named "Platinum Sponsor" of SYS-CON's 20th International Cloud Expo®, which will take place on June 6-8, 2017, at the Javits Center in New York City, New York, and 21st International Cloud Expo, which will take place in November in Silicon Valley, California.
The security needs of IoT environments require a strong, proven approach to maintain security, trust and privacy in their ecosystem. Assurance and protection of device identity, secure data encryption and authentication are the key security challenges organizations are trying to address when integrating IoT devices. This holds true for IoT applications in a wide range of industries, for example, healthcare, consumer devices, and manufacturing. In his session at @ThingsExpo, Lancen LaChance, vic...
SYS-CON Events announced today that delaPlex will exhibit at SYS-CON's @CloudExpo, which will take place on June 6-8, 2017, at the Javits Center in New York City, NY. delaPlex pioneered Software Development as a Service (SDaaS), which provides scalable resources to build, test, and deploy software. It’s a fast and more reliable way to develop a new product or expand your in-house team.
Wooed by the promise of faster innovation, lower TCO, and greater agility, businesses of every shape and size have embraced the cloud at every layer of the IT stack – from apps to file sharing to infrastructure. The typical organization currently uses more than a dozen sanctioned cloud apps and will shift more than half of all workloads to the cloud by 2018. Such cloud investments have delivered measurable benefits. But they’ve also resulted in some unintended side-effects: complexity and risk. ...
The explosion of new web/cloud/IoT-based applications and the data they generate are transforming our world right before our eyes. In this rush to adopt these new technologies, organizations are often ignoring fundamental questions concerning who owns the data and failing to ask for permission to conduct invasive surveillance of their customers. Organizations that are not transparent about how their systems gather data telemetry without offering shared data ownership risk product rejection, regu...
When you focus on a journey from up-close, you look at your own technical and cultural history and how you changed it for the benefit of the customer. This was our starting point: too many integration issues, 13 SWP days and very long cycles. It was evident that in this fast-paced industry we could no longer afford this reality. We needed something that would take us beyond reducing the development lifecycles, CI and Agile methodologies. We made a fundamental difference, even changed our culture...
More and more brands have jumped on the IoT bandwagon. We have an excess of wearables – activity trackers, smartwatches, smart glasses and sneakers, and more that track seemingly endless datapoints. However, most consumers have no idea what “IoT” means. Creating more wearables that track data shouldn't be the aim of brands; delivering meaningful, tangible relevance to their users should be. We're in a period in which the IoT pendulum is still swinging. Initially, it swung toward "smart for smart...
The Internet of Things can drive efficiency for airlines and airports. In their session at @ThingsExpo, Shyam Varan Nath, Principal Architect with GE, and Sudip Majumder, senior director of development at Oracle, discussed the technical details of the connected airline baggage and related social media solutions. These IoT applications will enhance travelers' journey experience and drive efficiency for the airlines and the airports.
In his keynote at @ThingsExpo, Chris Matthieu, Director of IoT Engineering at Citrix and co-founder and CTO of Octoblu, focused on building an IoT platform and company. He provided a behind-the-scenes look at Octoblu’s platform, business, and pivots along the way (including the Citrix acquisition of Octoblu).