HPC in the Cloud


Dedicated to covering high-end cloud computing
in science, industry and the datacenter

Language Flags

WSO2 Simplifies Authentication Across Web Apps


COLOMBO, Sri Lanka, and MOUNTAIN VIEW, Calif., Dec. 11 -- WSO2, the open source SOA company, announced today the launch of the WSO2 Identity Solution (IS) to help customers address the challenges of managing user identities in Web applications and protect against attacks, such as phishing. Providing an easy-to-use management console, the highly interoperable WSO2 IS removes the barriers to implementing consistent identity management across the many applications, data sources and services that comprise a service-oriented architecture (SOA).

The WSO2 IS enables LAMP and Java Web sites to provide strong authentication based on the new interoperable Microsoft CardSpace technology, which is built on the open standards Security Assertion Mark-up Language (SAML) and WS-Trust. WSO2s new open source security offering features an easy-to-use Identity Provider that is controlled by a simple Web-based management console and supports interoperability with multiple vendors CardSpace components, including those provided by Microsoft .NET. The WSO2 IS also works with enterprises current identity directories, such as those based on the Lightweight Directory Access Protocol (LDAP) and Microsoft Active Directory, allowing them to leverage their existing infrastructure.

The inherent heterogeneous nature of modern SOA and Web applications brings a new challenge in managing and protecting the identities of the users it serves, said Sanjiva Weerawarana, CEO of WSO2. With our new Identity Solution, we can help developers and administrators solve this challenge using open standards and open source to deliver a proven secure and interoperable system with a simple, intuitive interface that anyone can readily use.

WSO2 Open Source Approach to Identity Metasystem

CardSpace is Microsofts approach to the Identity Metasystem, an interoperable architecture for digital identity that has emerged to address the growing problem of securely maintaining and managing identities across extended spaces, including large enterprises and the Web. WSO2s Identity Solution offers customers a new open source alternative that works with popular open source and Java websites while supporting the new CardSpace approach found in Microsofts Internet Explorer 7.0 browser and Mozillas Firefox.

Built on a core of open standards such as SAML and WS-Trust with proven interoperability, the WSO2 IS ensures interoperability with CardSpace components from different vendors. At the same time, it allows easy integration and migration of traditional identity management solutions to CardSpace-based identity management. The WSO2 Identity Solution also works closely with existing websites, including those built on the market-leading Apache HTTPD and Tomcat servers, as well as many PHP, LAMP and J2EE servers.

By working with existing IT infrastructures, the WSO2 IS helps enterprises to address the top identity management issues they face today, including:

  • Protecting users from identity-related attacks.
  • Empowering users to securely provide the minimum required private information to Web sites.
  • Eliminating the need for websites to maintain unnecessary or duplicate user information.
  • Reducing overall the data that Web sites must store while minimizing the dangers of identity theft.

WSO2 Identity Solution Features

The WSO2 IS features two primary components: the Identity Provider and Relying Party Component Set.

The Identity Provider is an application that provides the ability to issue cards -- a new cross-vendor standard for identity management. WSO2 supports both managed information cards, which are issued by the Identity Provider and backed by a username and password, as well as self-issued cards, which enable users to manage their own identities using software in their browsers. Once a user has a card, this can be used to login to any Web application that supports CardSpace authentication. One key benefit is that the security details are only stored by the trusted Identity Provider -- the Web site doesnt need to store any passwords or other personal details. Key features of the Identity Provider include:

  • User store support. Identity Provider supports most common directories that offer the standard LDAP or Java Database Connectivity (JDBC) interfaces, in addition to offering a simple built-in user store for smaller companies.
  • Claim support. By providing full support for standard and custom claims, the Identity Provider helps users keep full control over what personal information is shared with Web sites.
  • Statistics, reporting and an audit trail. These functions enable administrators to monitor user accounts and issuances of information cards and tokens for login requests to relying party Web applications.
  • Revoking mechanism. Administrators can revoke issued information cards and block them from being used for authentication.

The other key part of the WSO2 Identity Solution is the Relying Party Component Set which plugs into the most common website servers to add support for CardSpace authentication requests. At the core is the Apache HTTPD module (mod_cspace), which processes incoming CardSpace authentication requests and provides the extracted information from the received token to the Web application. Because this is independent of any server-side Web framework, the module can be used to set up CardSpace authentication with any Web framework running on Apache2, including PHP, Python and Perl applications.

Significantly, the Apache HTTPD Relying Party component enables CardSpace authentication for both dynamic Web applications and static content, including a special feature to allow access control for static content in Apache HTTPD. Other key features of the Apache HTTPD module include an easy integration interface for developers; simple configuration for server administrators; and support for leading content management frameworks, such as Drupal and MediaWiki. In addition, the Relying Party support includes a Java servlet filter that provides an easy integration point for J2EE-based Web applications, including the popular Apache Tomcat and JBoss application servers.

Service and Support Options

WSO2 offers a range of service and support options for the WSO2 Identity Solution. These include full commercial support, training, consulting, custom development, and sponsorship of open source feature development. For information on the webinars, as well as service and support fees, visit www.wso2.com. Additionally, the WSO2 Oxygen Tank (wso2.org) is an open portal that provides in-depth product information, tutorials, tools, forums, wikis and more.

About WSO2

WSO2 is the open source SOA company founded by pioneers in Web services and of members of the Apache Software Foundation Web services community. The company is delivering a new, entirely open source middleware stack that is optimized for Web services and SOA. The companys first products are the WSO2 Web Services Application Server (based on Apache Axis2) and WSO2 Enterprise Service Bus (based on Apache Synapse), which are built on the WSO2 Web Services Framework. The company is backed by Intel Capital and maintains operations in the United States, United Kingdom and Sri Lanka.

Most Read Blogs

Aspen

Feature Articles

CometCloud: Using a Federated HPC-Cloud to Understand Fluid Flow in Microchannels

The ever-growing complexity of scientific and engineering problems continues to pose new computational challenges. Thus, we present a novel federation model that enables end-users with the ability to aggregate heterogeneous resource scale problems. The feasibility of this federation model has been proven, in the context of the UberCloud HPC Experiment, by gathering the most comprehensive information to date on the effects of pillars on microfluid channel flow.
Read more...

CERN, Google, and the Future of Global Science Initiatives

Large-scale, worldwide scientific initiatives rely on some cloud-based system to both coordinate efforts and manage computational efforts at peak times that cannot be contained within the combined in-house HPC resources. Last week at Google I/O, Brookhaven National Lab’s Sergey Panitkin discussed the role of the Google Compute Engine in providing computational support to ATLAS, a detector of high-energy particles at the Large Hadron Collider (LHC).
Read more...

Avoiding Scientific Computing Bottlenecks in the Cloud

Frank Ding, engineering analysis & technical computing manager at Simpson Strong-Tie, discussed the advantages of utilizing the cloud for occasional scientific computing, identified the obstacles to doing so, and proposed workarounds to some of those obstacles.
Read more...

Short Takes

Running Computational Fluid Dynamics in the Cloud

May 16, 2013 | When it comes to cloud, long distances mean unacceptably high latencies. Researchers from the University of Bonn in Germany examined those latency issues of doing CFD modeling in the cloud by utilizing a common CFD and its utilization in HPC instance types including both CPU and GPU cores of Amazon EC2.
Read more...

In Support of Cloud-based Rendering

May 10, 2013 | Australian visual effects company, Animal Logic, is considering a move to the public cloud.
Read more...

Internet2 Awards Program Seeks Innovative Applications

May 10, 2013 | Program provides cash awards up to $10,000 for the best open-source end-user applications deployed on 100G network.
Read more...

Sponsored Whitepapers

Best Practices in Big Data Storage

05/10/2013 | Cleversafe, Cray, DDN, NetApp, & Panasas | From Wall Street to Hollywood, drug discovery to homeland security, companies and organizations of all sizes and stripes are coming face to face with the challenges – and opportunities – afforded by Big Data. Before anyone can utilize these extraordinary data repositories, however, they must first harness and manage their data stores, and do so utilizing technologies that underscore affordability, security, and scalability.

Exploring the Potential of Heterogeneous Computing

04/02/2012 | AMD | Developers today are just beginning to explore the potential of heterogeneous computing, but the potential for this new paradigm is huge. This brief article reviews how the technology might impact a range of application development areas, including client experiences and cloud-based data management. As platforms like OpenCL continue to evolve, the benefits of heterogeneous computing will become even more accessible. Use this quick article to jump-start your own thinking on heterogeneous computing.

Sponsored Multimedias

Newsletters

Stay informed! Subscribe to HPC in the Cloud email Newsletters.

HPC in the Cloud Update
HPCwire Weekly Update
Digital Manufacturing Report
Datanami
HPCwire Conferences & Events
Job Bank
HPCwire Product Showcases


ISC

HPC Job Bank


Featured Events



  • June 16, 2013 - June 20, 2013
    ISC'13
    Leipzig,
    Germany

  • June 17, 2013 - June 18, 2013
    Forecast 2013
    San Francisco, CA
    United States




HPC in the Cloud Conferences & Events