<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Layer 7 - Blogs &#187; Cloud Access Control</title>
	<atom:link href="http://www.layer7tech.com/blogs/index.php/tag/cloud-access-control/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.layer7tech.com/blogs</link>
	<description>API Management &#124; SOA Governance &#124; Cloud Integration</description>
	<lastBuildDate>Thu, 23 May 2013 22:38:12 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Returning from #CIS2012</title>
		<link>http://www.layer7tech.com/blogs/index.php/returning-from-cis2012-2/</link>
		<comments>http://www.layer7tech.com/blogs/index.php/returning-from-cis2012-2/#comments</comments>
		<pubDate>Fri, 20 Jul 2012 17:45:04 +0000</pubDate>
		<dc:creator>Francois Lascelles</dc:creator>
				<category><![CDATA[Cloud Access Control]]></category>
		<category><![CDATA[Cloud Computing]]></category>
		<category><![CDATA[Cloud Security]]></category>
		<category><![CDATA[Conferences]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[OAuth]]></category>
		<category><![CDATA[OpenID Connect]]></category>

		<guid isPermaLink="false">http://www.layer7tech.com/blogs/?p=2595</guid>
		<description><![CDATA[Cloud Identity Summit was definitely worth the trip. The talks were great, the audience was great and the venue was outstanding. Sign me up for next year in Napa! It’s beautiful and quiet at Vail Cascade this morning. As I stepped outside, I’m pretty sure I saw SAML scurrying away into the trees. This is [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.cloudidentitysummit.com/" target="_blank"><img class="alignleft size-full wp-image-2601" style="margin: 10px;" title="Francois Lascelles at Cloud Identity Summit" src="http://www.layer7tech.com/blogs/wp-content/uploads/2012/07/Francois-Lascelles-at-Cloud-Identity-Summit.jpg" alt="Francois Lascelles at Cloud Identity Summit" width="263" height="300" /></a>Cloud Identity Summit was definitely worth the trip. The talks were great, the audience was great and the venue was outstanding. Sign me up for next year in Napa!</p>
<p>It’s beautiful and quiet at <a href="http://www.vailcascade.com/" target="_blank">Vail Cascade</a> this morning. As I stepped outside, I’m pretty sure I saw SAML scurrying away into the trees. This is weird given this week’s proclamations that SAML was dead. Although we won&#8217;t be rid of SAML anytime soon, I do look forward to enterprise adoption of the new kid on the block: <a href="http://www.layer7tech.com/tutorials/openid-connect" target="_blank">OpenID Connect</a>. Easier federation, <a href="http://www.layer7tech.com/blogs/index.php/mobile-friendly-federated-identity-part-2-openid-connect/" target="_blank">OpenID Connect-style</a> is already common for consumer identity providers; enterprise identity providers should take note and follow suit. As a vendor of API Management infrastructure, it’s up to us to enable the enterprise to better reach out to its target audience. I see <a href="http://www.businesswire.com/news/home/20120716005274/en/Layer-7-Demonstrate-OpenID-Connect-Implementation-Cloud" target="_blank">support for OpenID Connect</a> as a key component in achieving this today.</p>
<p>My favorite proclamation of the week goes to Patrick Harding who declared in his talk titled “The Platformication of the Enterprise is Upon us Again and They Forgot Security (Again)” that API tokens are going to be “the currency of the API economy”. <a href="http://www.layer7tech.com/blogs/index.php/oauth-token-management-2/" target="_blank">The management of tokens and their lifecycle</a> is indeed a crucial component of API Management. Consider the case of a mobile application consuming an enterprise API using an OAuth token. Such tokens are associated with the API provider, the user (subscriber), the mobile application and the mobile device. Each live token is potentially associated with multiple parties and one of the challenges of API token management is to enable control of the right tokens by the right parties.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.layer7tech.com/blogs/index.php/returning-from-cis2012-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
