Wir verwenden Cookies und Analyse-Tools, um die Nutzerfreundlichkeit der Internet-Seite zu verbessern und für Marketingzwecke. Wenn Sie fortfahren, diese Seite zu verwenden, nehmen wir an, dass Sie damit einverstanden sind. Zur Datenschutzerklärung.
Securing the Perimeter
Details
Leverage existing free open source software to build an identity and access management (IAM) platform that can serve your organization for the long term. With the emergence of open standards and open source software, it's now easier than ever to build and operate your own IAM stack.
The most common culprit of the largest hacks has been bad personal identification. In terms of bang for your buck, effective access control is the best investment you can make. Financially, it's more valuable to prevent than to detect a security breach. That's why Identity and Access Management (IAM) is a critical component of an organization's security infrastructure. In the past, IAM software has been available only from large enterprise software vendors. Commercial IAM offerings are bundled as suites because IAM is not just one component. It's a number of components working together, including web, authentication, authorization, cryptographic, and persistence services. Securing the Perimeter documents a recipe to take advantage of open standards to build an enterprise-class IAM service using free open source software. This recipe can be adapted to meet the needs of both small and large organizations. While not a comprehensive guide for every application, this book provides the key concepts and patterns to help administrators and developers leverage a central security infrastructure. Cloud IAM service providers would have you believe that managing an IAM is too hard. Anything unfamiliar is hard, but with the right road map, it can be mastered. You may find SaaS identity solutions too rigid or too expensive. Or perhaps you don't like the idea of a third party holding the credentials of your usersthe keys to your kingdom. Open source IAM provides an alternative. Take control of your IAM infrastructure if digital services are key to your organization's success. ****
What You'll Learn
Understand why you should deploy a centralized authentication and policy management infrastructure
- Use the SAML or Open ID Standards for web or single sign-on, and OAuth for API Access Management
Synchronize data from existing identity repositories such as Active Directory
Deploy two-factor authentication services Who This Book Is For
Security architects (CISO, CSO), system engineers/administrators, and software developers
Allows you to save money buying a book and using free open source options vs. licensing expensive enterprise software that can cost six figures Presents technical information in an easy-to-understand manner Is a holistic how-to guide that provides what is typically fragmented information on how to configure products to work together
Autorentext
Michael Schwartz is a domain expert on digital authentication and centralized application security policy management. Since starting an ISP in 1995, he has been directly involved in network and application security. In 2009, he founded Gluu Inc, a security software development company that has created an IAM distribution based on free open source components. In addition to his participation in several identity standards, Mike is the co-chair of the OTTO working group at the Kantara Initiative, which is developing new standards for identity federation. Mike has worked with organizations in many sectors, including finance, government, education, and enterprise. A graduate of Washington University in St. Louis, he currently resides with his family in Austin, TX.
Maciej Machulak is an expert in security, privacy and trust in the Cloud. He works on digital identity and security at HSBC. In the past, Maciej worked for various companies in the identity and access management space. He also founded and became the CEO of Cloud Identity Limited (acquired by Synergetics), a company that developed innovative security software based on proprietary and open source components. Maciej serves as the Vice-Chair of the User-Managed Access (UMA) Work Group at Kantara Initiative and is one of the authors of the award-winning UMA protocol and of two OAuth-related specifications used in Open Banking. In June 2015, Maciej was awarded the prestigious MIT Technology Review Innovators Under 35 Poland award for his work on privacy and security. Maciej is a PhD graduate from Newcastle University. Outside of work, he enjoys various outdoor activities and sports with his family.
Inhalt
Chapter 1: Introduction.- Chapter 2: LDAP.- Chapter 3: SAML.- Chapter 4: Oauth.- Chapter 5: OpenID Connect.- Chapter 6: Proxy.- Chapter 7: Strong Authentication.- Chapter 8: User-Managed Access.- Chapter 9: Identity Management.- Chapter 10: Multiparty Federation.- <p
Weitere Informationen
- Allgemeine Informationen
- GTIN 09781484226001
- Genre Information Technology
- Auflage First Edition
- Lesemotiv Verstehen
- Anzahl Seiten 396
- Größe H254mm x B178mm x T22mm
- Jahr 2018
- EAN 9781484226001
- Format Kartonierter Einband
- ISBN 1484226003
- Veröffentlichung 13.12.2018
- Titel Securing the Perimeter
- Autor Maciej Machulak , Michael Schwartz
- Untertitel Deploying Identity and Access Management with Free Open Source Software
- Gewicht 742g
- Herausgeber Apress
- Sprache Englisch