<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Intel XML Gateway - SOA Expressway Blog</title>
	<atom:link href="http://soaexpressway.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://soaexpressway.wordpress.com</link>
	<description>Intel XML Gateway - addressing security, governance, performance for XML and SOA</description>
	<lastBuildDate>Mon, 23 Jan 2012 20:03:43 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='soaexpressway.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://0.gravatar.com/blavatar/a5e70cbad930523548741ac415f5c076?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>Intel XML Gateway - SOA Expressway Blog</title>
		<link>http://soaexpressway.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://soaexpressway.wordpress.com/osd.xml" title="Intel XML Gateway - SOA Expressway Blog" />
	<atom:link rel='hub' href='http://soaexpressway.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Case study: Embedding cloud SSO portal into Sharepoint</title>
		<link>http://soaexpressway.wordpress.com/2012/01/23/case-study-embedding-cloud-sso-portal-into-sharepoint/</link>
		<comments>http://soaexpressway.wordpress.com/2012/01/23/case-study-embedding-cloud-sso-portal-into-sharepoint/#comments</comments>
		<pubDate>Mon, 23 Jan 2012 19:55:29 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[2-factor authentication]]></category>
		<category><![CDATA[Cloud Access 360]]></category>
		<category><![CDATA[Cloud Security]]></category>
		<category><![CDATA[customer case studies]]></category>
		<category><![CDATA[ECA360]]></category>
		<category><![CDATA[Financial services SSO]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[McAfee Cloud Security Platform]]></category>
		<category><![CDATA[Non-SAML SSO]]></category>
		<category><![CDATA[RIAs]]></category>
		<category><![CDATA[Sharepoint SSO]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=537</guid>
		<description><![CDATA[A Registered Investment Advisor (RIA) firm designed to provide financial services to high net worth individuals is using IAM technology to remain competitive and provide attractive services to both clients and Wealth Advisors. The firm also needed to establish business relationships with strategic partners delivering a variety of services, including fixed income inventory and strategies, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=537&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div>
<p>A <a href="http://en.wikipedia.org/wiki/Registered_Investment_Advisor" target="_blank">Registered Investment Advisor </a>(RIA) firm designed to provide financial services to high net worth individuals is using IAM technology to remain competitive and provide attractive services to both clients and Wealth Advisors. The firm also needed to establish business relationships with strategic partners delivering a variety of services, including fixed income inventory and strategies, retirement planning, a private trust and banking division, insurance &amp; annuities, and more.</p>
<p><strong>Requirements:</strong></p>
<ol start="1">
<li>Embedding cloud SSO portal into Sharepoint – The firm was already using Sharepoint as their company portal. The cloud IAM SSO portal needed to be integrated into Sharepoint as a webpart.</li>
<li>Non-SAML applications – The firm was using more than a dozen on-demand applications that didn’t support federation standards such as SAML. The solution had to support single sign-on (SSO) into such applications as well.</li>
<li>Branding and customization – The solution should be re-brandable and customizable to company’s look-n-feel as it gets rolled out to the firm’s clients.</li>
</ol>
<p>On top of it, being part of regulated industry where they are responsible for handling their client’s financial assets, they needed a solution that was secure from end-to-end. The firm chose <a href="http://software.intel.com/en-us/articles/XML-Gateway-Application-Security-Cloud-Identity/?partnerref=blogs_vikas_embedding_cloud_SSO">Intel Expressway Cloud Access 360</a> (ECA360), and rolled out the solution for its Wealth Advisors initially with a plan to roll it out to its clients in the future.</p>
<p><strong>How did Intel Cloud Access 360 fill their requirements?</strong></p>
<ol start="1">
<li>Embedding cloud SSO portal into Sharepoint – Cloud Access 360 SSO portal publishing all the applications that can be single signed on, can be fully embedded into Sharepoint as a webpart without requiring any additional authentication.</li>
<li>Non-SAML applications –  Cloud Access 360 supported all the desired applications through either native connectors using custom APIs or form based authentication.</li>
<li>Branding and customization – The logo and look-n-feel of the end-user facing SSO portal page of Cloud Access 360 can be completely branded and customized using CSS style sheets.</li>
</ol>
<p>According to the firm’s CIO, “The flexibility, security and other capabilities provided by Intel Expressway Cloud Access 360 will enable it’s firm to leapfrog legacy RIA environments and offer an architecture to harness  the entire financial services Rolodex* in a seamless, connected experience.”</p>
<p>Looking for more of such customer case studies – <a href="http://blogs.intel.com/cloud-access-security/tag/customer-case-studies/">find them here</a></p>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/537/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=537&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2012/01/23/case-study-embedding-cloud-sso-portal-into-sharepoint/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>
	</item>
		<item>
		<title>Gunnar Peterson on Understanding Cloud Security Standards, part 3</title>
		<link>http://soaexpressway.wordpress.com/2012/01/23/gunnar-peterson-on-understanding-cloud-security-standards-part-3/</link>
		<comments>http://soaexpressway.wordpress.com/2012/01/23/gunnar-peterson-on-understanding-cloud-security-standards-part-3/#comments</comments>
		<pubDate>Mon, 23 Jan 2012 19:50:33 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Cloud Service Brokerages]]></category>
		<category><![CDATA[CSB]]></category>
		<category><![CDATA[ESG]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[Intel Expressway Service Gateway]]></category>
		<category><![CDATA[McAfee]]></category>
		<category><![CDATA[XACML]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=533</guid>
		<description><![CDATA[Moving applications to the Cloud puts many enterprises in an accustomed position, the technology and processes that their business depends on aren’t under their sole control, but rather a mix of responsibilities. The move to the Cloud is not a simple “forklift” migration where bits are copied to a Cloud Provider, instead the architecture and [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=533&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Moving applications to the Cloud puts many enterprises in an accustomed position, the technology and processes that their business depends on aren’t under their sole control, but rather a mix of responsibilities. The move to the Cloud is not a simple “forklift” migration where bits are copied to a Cloud Provider, instead the architecture and assumptions must be reviewed and refreshed to meet the needs and constraints of Cloud systems.</p>
<p>Implementing authorization services with standards like XACML empowers the security architect to enforce policy via a <a href="http://software.intel.com/en-us/articles/XML-Gateway-Application-Security-Cloud-Identity/?partnerref=blogs_gunnar_on_cloud_sec_standards3">Gateway</a> and answer the authorization queries from the source with the freshest and most specific data. Often the information needed to resolve authorization requests is stored beyond the directory and only available in a database or other repository.</p>
<p>The Cloud presents real integration challenges to the enterprise, what <a href="http://blogs.gartner.com/daryl_plummer/2010/11/08/cloudstreams-the-next-cloud-integration-challenge/%29">Gartner</a> calls Cloudstreams and <a href="http://software.intel.com/en-us/articles/Cloud-Service-Brokerage-API-Resource-Center/?partnerref=blogs_gunnar_understandingcloudsecstandards3">Cloud Service Brokerages</a> focus on <em>“integration, governance, and security impact points.”</em></p>
<p>In Part 1, we examined four Anti-Patterns that enterprises should avoid as they move the Cloud. These four Anti-Patterns are at the heart of dealing with the “Complexity Kills” problem that Gartner’s research shows as a recurring theme in Cloud migrations.</p>
<table border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td valign="top" width="197">Anti-Pattern</td>
<td valign="top" width="197">Description</td>
<td valign="top" width="197">Mitigations</td>
</tr>
<tr>
<td valign="top" width="197">Low/No Access Control</td>
<td valign="top" width="197"><em>“we’ll see if it works and then turn on security later”</em></td>
<td valign="top" width="197">Strong access control protocols for authentication and authorization</td>
</tr>
<tr>
<td valign="top" width="197">Replicating User Accounts</td>
<td valign="top" width="197">copying in full or an extract your Enterprise directory to the Cloud Provider</td>
<td valign="top" width="197">Retain enterprise provisioning on Cloud Consumer side</td>
</tr>
<tr>
<td valign="top" width="197">Copying Credentials</td>
<td valign="top" width="197">Copying Enterprise Access Credentials to Cloud based services</td>
<td valign="top" width="197">Implement Federated Identity</td>
</tr>
<tr>
<td valign="top" width="197">“Trusted” Proxy</td>
<td valign="top" width="197">Gateway lacks support security services and standards</td>
<td valign="top" width="197">Implement improved access control, audit logging and monitoring on the Gateway</td>
</tr>
</tbody>
</table>
<p>In <a href="http://blogs.intel.com/cloud-access-security/2011/12/05/security_expert_gunnar_peterso/">Part 2</a>, we looked at how open standards like <a href="http://software.intel.com/en-us/articles/Edge-Security-For-SOA-Web-Services/?partnerref=blogs_gunnar_understandcloudsecpattern3">SAML, Oauth, and OpenID</a> can be used to mitigate the Anti-Patterns, when it comes to fine grained authorization and Attribute based Access Control that many Cloud applications require, standards like these are necessary but not sufficient for the overall identity architecture.</p>
<p>The old enterprise perimeter was based on network firewalls, but today applications are integrated, distributed via Cloud and consumed via Mobile apps. The network firewall is severely limited in this context. Fine grained authorization and Attribute Based Access Control help close out the gaps in Cloud Security by providing a Dynamic Perimeter that manages access control across these contexts.<strong></strong></p>
<p><strong>Today’s reality is that users, systems and data are distributed. The genie is not going to be put back in the box, but access control policy enforcement can and should be centralized. </strong></p>
<p>Centralizing access control policy enforcement is essential for:</p>
<ul>
<li>For Security architects to understand the boundaries in the system,</li>
<li>For developers to know what and where to code for authorization operations</li>
<li>For auditors to be able to review</li>
<li>For testers to be able to identify vulnerabilities</li>
</ul>
<p><a href="http://software.intel.com/en-us/articles/XML-Gateway-Application-Security-Cloud-Identity/?partnerref=blogs_gunnar_on_cloud_sec_standards3">Gateways</a> are ideal for providing the Policy Enforcement Point function, to intercept requests before they reach the resource and ensure the request is authorized.</p>
<p>The <a href="http://csrc.nist.gov/news_events/privilege-management-workshop/PvM-Model-Survey-Aug26-2009.pdf">trend line</a>  in access control points to more fine grained access control and to have authorization decisions be policy based (rather than hard coded).</p>
<p>&nbsp;</p>
<p><img src="http://blogs.intel.com/cloud-access-security/files/2012/01/ScreenHunter_12-Jan.-23-14.22.jpg" alt="" width="774" height="449" /></p>
<p>&nbsp;</p>
<p>The four Anti-Patterns that we discussed show why trends continue in the direction of increased granularity and policy based access control.</p>
<p><em>Low/no access control</em> – <em>“we’ll see if it works and then turn on security later”</em></p>
<p>Access control is too important to be left up to developer discretion. Authorization and access control should be configured in policy, not hard coded. Externalizing the application’s authorization gives the enterprise several important advantages, including flexibility to route authorization requests to the system that has the most specific and freshest information.</p>
<p><em>Replicating user accounts – copying in full or an extract your Enterprise directory to the Cloud provider</em></p>
<p>XACML separates the Policy Enforcement Point (PEP: which protects the app) from the Policy Decision Point (PDP: which has the information to grant or deny the authorization request). This logical separation enables the enterprise to deploy its PEP on the Cloud Provider side to implement authorization enforcement while routing requests to PDP’s with the freshest and most specific attributes to answer the authorization request.</p>
<p>Separating the PEP and PDP means that the <a href="http://software.intel.com/en-us/articles/XML-Gateway-Application-Security-Cloud-Identity/?partnerref=blogs_gunnar_on_cloud_sec_standards3">Gateway</a> can intercept the request to the resource, route the request to the system with the freshest and most specific information, and enforce the policy. This pattern allows for a flexible, best of breed authorization architecture with the PEP and PDP tuned to control the authorization workflow. The PEP is responsible to enforce the chain of responsibilities in authorization and the PDP carries out the responsibility via querying data sources to grant or deny access.  Note, the information needed to make the grant or deny access may cross from Cloud Provider to enterprise Cloud.</p>
<p><em>Copying credentials – sometimes Enterprise copy credentials to Cloud based services; and thereby create a new pool of identity risk to manage. </em></p>
<p>Separating the PEP and PDP eliminates the need to hard code individual credentials to resolve access control challenges. This is because the PEP queries the PDP on behalf of the user to verify user’s attributes against the authorization target including the Resource and Action requested.</p>
<p><em>“Trusted” proxy – where trust is in name only</em></p>
<p>Trust, but verify means auditability. When authorization logic is strewn across millions of lines of code, auditing is impossible. Auditable systems must have authorization rules and logic that are clear and straightforward to review. Pulling key authorization policies out of the code and into XACML policies allows the Auditor to assess the target and ensure it meets the system owners’ goals.</p>
<p><a href="http://blogs.intel.com/cloud-access-security/files/2011/12/gunnar1-thumb-100x77.jpg"><img src="http://blogs.intel.com/cloud-access-security/files/2011/12/gunnar1-thumb-100x77.jpg" alt="" width="100" height="77" /></a> Gunnar Peterson is a Managing Principal at Arctec Group. He is focused on distributed systems security for large mission critical financial, financial exchanges, healthcare, manufacturer, and federal/Gov systems, as well as emerging start ups. Mr. Peterson is an internationally recognized software security expert, frequently published, an Associate Editor for IEEE Security &amp; Privacy Journal on Building Security In, an Associate Editor for Information Security Bulletin, a contributor to the SEI and DHS Build Security In portal on software security, and an in-demand speaker at security conferences. He blogs at <a href="http://1raindrop.typepad.com/">http://1raindrop.typepad.com</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/533/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/533/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/533/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/533/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/533/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/533/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/533/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/533/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/533/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/533/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/533/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/533/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/533/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/533/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=533&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2012/01/23/gunnar-peterson-on-understanding-cloud-security-standards-part-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>

		<media:content url="http://blogs.intel.com/cloud-access-security/files/2012/01/ScreenHunter_12-Jan.-23-14.22.jpg" medium="image" />

		<media:content url="http://blogs.intel.com/cloud-access-security/files/2011/12/gunnar1-thumb-100x77.jpg" medium="image" />
	</item>
		<item>
		<title>Intel(R) Expressway Service Gateway and Splunk</title>
		<link>http://soaexpressway.wordpress.com/2012/01/20/intelr-expressway-service-gateway-and-splunk/</link>
		<comments>http://soaexpressway.wordpress.com/2012/01/20/intelr-expressway-service-gateway-and-splunk/#comments</comments>
		<pubDate>Fri, 20 Jan 2012 23:23:02 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Announcements]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=527</guid>
		<description><![CDATA[If you’ve been around the SFO airport lately, you’ve probably seen advertisements for Splunk, which is a widely deployed monitoring tool for machine data that collects, indexes and harnesses log information generated by all your IT systems and infrastructure, whether physical, virtual or in the cloud. I am proud to announce that we’ve developed an [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=527&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>If you’ve been around the SFO airport lately, you’ve probably seen advertisements for Splunk, which is a widely deployed monitoring tool for machine data that collects, indexes and harnesses log information generated by all your IT systems and infrastructure, whether physical, virtual or in the cloud.</p>
<p>I am proud to announce that we’ve developed an Expressway Service Gateway app for Splunk that provides operational intelligence for service gateway instances across any sort of network topology, including including monitoring across geographically separated data-centers. You can grab the plugin <a title="Service Gateway Application for Splunk" href="http://splunk-base.splunk.com/apps/38066/intel-expressway-service-gateway-app-for-splunk">here.</a></p>
<p>Splunk can track and provide visibility for a host of important metrics such as the total number of transactions, policy invocations, requests from an IP address, requests to a back-end IP address (invocation), transactions per hour,  transactions per policy, top failures, CPU usage, as well as  produce PDF reports and searches across the Expressway transaction logs.  This provides a new level of operational intelligence for application level data, especially for Enterprises that expose services outside their Enterprise or use Expressway as a control point deployed on as a service provider, such as Amazon EC2 or Rackspace.</p>
<p>If you are interested in learning more about Intel(R) Expressway service gateway, please visit our website <a title="Intel Identity and Service Gateway Website" href="http://www.intel.com/go/identity">here</a>.</p>
<p>-Blake</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/527/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=527&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2012/01/20/intelr-expressway-service-gateway-and-splunk/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>
	</item>
		<item>
		<title>What the Analysts are Saying&#8230;</title>
		<link>http://soaexpressway.wordpress.com/2012/01/20/what-the-analysts-are-saying/</link>
		<comments>http://soaexpressway.wordpress.com/2012/01/20/what-the-analysts-are-saying/#comments</comments>
		<pubDate>Fri, 20 Jan 2012 23:20:01 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Announcements]]></category>
		<category><![CDATA[Analysts]]></category>
		<category><![CDATA[Cloud Service Broker]]></category>
		<category><![CDATA[CSB]]></category>
		<category><![CDATA[ECA360]]></category>
		<category><![CDATA[ESG]]></category>
		<category><![CDATA[Expressway Cloud Access 360]]></category>
		<category><![CDATA[Expressway Service Gateway]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[Intel Expressway]]></category>
		<category><![CDATA[McAfee]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=522</guid>
		<description><![CDATA[Read what the analysts are saying about Intel &#38; McAfee’s cloud access broker strategy. Here’s a “birds-eye-view” on our new Analyst Consensus page -Jeff<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=522&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Read what the analysts are saying about Intel &amp; McAfee’s cloud access broker strategy.</p>
<p>Here’s a “birds-eye-view” on our new <a href="http://software.intel.com/en-us/articles/Analyst-Consensus/?partnerref=blogs_analyst_consensus_page">Analyst Consensus</a> page</p>
<p><a href="http://software.intel.com/en-us/articles/Analyst-Consensus/?partnerref=blogs_wordpress_analyst_consensus"><img class="aligncenter size-full wp-image-543" title="analyst_consensus_pag" src="http://soaexpressway.files.wordpress.com/2012/01/screenhunter_14-jan-23-14-31.jpg?w=780" alt=""   /></a></p>
<p>-Jeff</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/522/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/522/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/522/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/522/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/522/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/522/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/522/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/522/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/522/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/522/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/522/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/522/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/522/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/522/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=522&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2012/01/20/what-the-analysts-are-saying/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>

		<media:content url="http://soaexpressway.files.wordpress.com/2012/01/screenhunter_14-jan-23-14-31.jpg" medium="image">
			<media:title type="html">analyst_consensus_pag</media:title>
		</media:content>
	</item>
		<item>
		<title>Government Solutions Resource Center</title>
		<link>http://soaexpressway.wordpress.com/2012/01/20/government-solutions-resource-center/</link>
		<comments>http://soaexpressway.wordpress.com/2012/01/20/government-solutions-resource-center/#comments</comments>
		<pubDate>Fri, 20 Jan 2012 21:40:22 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Announcements]]></category>
		<category><![CDATA[Cross Domain Information Sharing]]></category>
		<category><![CDATA[ECA360]]></category>
		<category><![CDATA[ESG]]></category>
		<category><![CDATA[High Assurance]]></category>
		<category><![CDATA[ICAM]]></category>
		<category><![CDATA[Identity Credential Access Management]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[Intel ECA360]]></category>
		<category><![CDATA[Intel ESG]]></category>
		<category><![CDATA[McAfee]]></category>
		<category><![CDATA[NIEM]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[NSTIC]]></category>
		<category><![CDATA[SSO]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=517</guid>
		<description><![CDATA[If you haven&#8217;t already seen it, Intel® Application Security &#38; Identity Products has released a new Government Solutions Resource Center  that is a must-see. Whether you are looking for information on Identity Credential Access Management, High Assurance, Cross Domain Information Sharing, NIEM, NSTIC or other info about other current Government concerns, I highly recommend you [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=517&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>If you haven&#8217;t already seen it, Intel<sup>®</sup> Application Security &amp; Identity Products has released a new <a href="http://software.intel.com/en-us/articles/Government-Solutions-Resource-Center/?partnerref=blogs_fed_resource_center">Government Solutions Resource Center</a>  that is a must-see. Whether you are looking for information on Identity Credential Access Management, High Assurance, Cross Domain Information Sharing, NIEM, NSTIC or other info about other current Government concerns, I highly recommend you check out this resourceful center. Among other things, it has webinars featuring distinguished NIST leaders, pertinent information on a whole range of relevant topics, and introduces how Intel &amp; McAfee are addressing some of the current IT challenges in the Government.</p>
<p><a href="http://software.intel.com/en-us/articles/Government-Solutions-Resource-Center/?partnerref=blogs_federal_resource_center"><img src="http://blogs.intel.com/security-gateways/files/2012/01/ScreenHunter_08-Jan.-20-16.29.jpg" alt="screenshot of govt solutions resource center" width="320" height="335" /></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/517/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/517/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/517/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/517/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/517/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/517/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/517/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/517/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/517/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/517/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/517/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/517/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/517/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/517/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=517&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2012/01/20/government-solutions-resource-center/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>

		<media:content url="http://blogs.intel.com/security-gateways/files/2012/01/ScreenHunter_08-Jan.-20-16.29.jpg" medium="image">
			<media:title type="html">screenshot of govt solutions resource center</media:title>
		</media:content>
	</item>
		<item>
		<title>Intel® And Box® Join Forces For Increased User Convenience And Security</title>
		<link>http://soaexpressway.wordpress.com/2011/12/15/intel-and-box-join-forces-for-increased-user-convenience-and-security/</link>
		<comments>http://soaexpressway.wordpress.com/2011/12/15/intel-and-box-join-forces-for-increased-user-convenience-and-security/#comments</comments>
		<pubDate>Thu, 15 Dec 2011 20:54:42 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Announcements]]></category>
		<category><![CDATA[Box]]></category>
		<category><![CDATA[ECA360]]></category>
		<category><![CDATA[Intel Expressway]]></category>
		<category><![CDATA[Intel Expressway Cloud Access 360]]></category>
		<category><![CDATA[multi-factor authentication]]></category>
		<category><![CDATA[SSO]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=512</guid>
		<description><![CDATA[Cloud-based solutions empower organizations to exploit leading-edge technology, reduce costs, and improve productivity. A prime example is using secure file sharing solutions like Box® (www.box.com) to enhance collaboration, both within the organization and between enterprises. Today, we are pleased to announce that Intel® has entered into a relationship with Box, a leader in the on-line [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=512&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Cloud-based solutions empower organizations to exploit leading-edge technology, reduce costs, and improve productivity. A prime example is using secure file sharing solutions like Box® (<a href="http://www.box.com/">www.box.com</a>) to enhance collaboration, both within the organization and between enterprises.</p>
<p>Today, we are pleased to announce that Intel® has entered into a relationship with Box, a leader in the on-line file sharing and collaboration market. Now, Box customers can accelerate access to, and better protect, files stored on the Box cloud platform with end-to-end user account lifecycle management, consistent with enterprise security policies.</p>
<p>Box customers can use Intel® Expressway Cloud Access 360 (Intel® ECA 360) to provision and manage accounts on the Box platform, provide single sign-on (SSO) to their customers, and improve security with strong, multi-factor authentication, when needed. The combination of Intel ECA 360 and Box will help drive usage, improve productivity and address regulatory compliance directives. For more, visit the  <a href="http://software.intel.com/en-us/articles/Secure-File-Sharing/?partnerref=blogs_intel_box_announce">Secure File Sharing resource page. </a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/512/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/512/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/512/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/512/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/512/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/512/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/512/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/512/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/512/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/512/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/512/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/512/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/512/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/512/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=512&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2011/12/15/intel-and-box-join-forces-for-increased-user-convenience-and-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>
	</item>
		<item>
		<title>Cloud Access 360 2.0 version released</title>
		<link>http://soaexpressway.wordpress.com/2011/12/05/cloud-access-360-2-0-version-released/</link>
		<comments>http://soaexpressway.wordpress.com/2011/12/05/cloud-access-360-2-0-version-released/#comments</comments>
		<pubDate>Mon, 05 Dec 2011 22:47:10 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Announcements]]></category>
		<category><![CDATA[Box.NET]]></category>
		<category><![CDATA[Cisco WebEx]]></category>
		<category><![CDATA[Cloud Security]]></category>
		<category><![CDATA[ECA360]]></category>
		<category><![CDATA[EChoSign]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[Intel Expressway]]></category>
		<category><![CDATA[Intel Expressway Cloud Access 360]]></category>
		<category><![CDATA[Joomla]]></category>
		<category><![CDATA[Microsoft office 365]]></category>
		<category><![CDATA[One Time Password]]></category>
		<category><![CDATA[OTP]]></category>
		<category><![CDATA[SaaS]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Schoology]]></category>
		<category><![CDATA[Service-Now]]></category>
		<category><![CDATA[Sharepoint]]></category>
		<category><![CDATA[SSO]]></category>
		<category><![CDATA[SugarCRM]]></category>
		<category><![CDATA[Zoho]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=497</guid>
		<description><![CDATA[We&#8217;re happy to announce general availability of Intel Expressway Cloud Access 360 (ECA 360) 2.0 release. This new release adds a range of exciting new features designed to simplify and improve our customers ability to manage user&#8217;s access to popular cloud applications. Key new features and benefits include: Built-in SSO portal An out-of-box SSO portal [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=497&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>We&#8217;re happy to announce general availability of Intel Expressway Cloud Access 360 (ECA 360) 2.0 release. This new release adds a range of exciting new features designed to simplify and improve our customers ability to manage user&#8217;s access to popular cloud applications. Key new features and benefits include:</p>
<table class="MsoTableMediumList1Accent1" style="border-collapse:collapse;border:none;" border="1" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td style="border:none;border-top:solid #4F81BD 1pt;background:#D3DFEE;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><strong><span style="color:black;">Built-in SSO portal</span></strong></p>
</td>
<td style="border:none;border-top:solid #4F81BD 1pt;background:#D3DFEE;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><span style="color:black;">An out-of-box SSO portal is available with the product that can run standalone or embedded inside<br />
existing portals such as Sharepoint. Users authenticate once to the portal<br />
and enjoy convenient, seamless SSO access to any authorized cloud app. As SSO<br />
portals expose keys to the kingdom, login to it can be protected with 2-factor<br />
authentication using mobile based One Time Password (OTP) offered through the<br />
bundled OTP module.</span></p>
</td>
</tr>
<tr>
<td style="border:none;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><strong><span style="color:black;">More connectors</span></strong></p>
</td>
<td style="border:none;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><span style="color:black;">New out-of-the-box connectors are  available for popular cloud apps such as Microsoft Office365, Cisco WebEx,<br />
Box.Net, Service-Now, SugarCRM, Zoho, EchoSign, Schoology, and Joomla. </span></p>
</td>
</tr>
<tr>
<td style="border:none;background:#D3DFEE;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><strong><span style="color:black;">Transparent HTTP<br />
form-based SSO</span></strong></p>
</td>
<td style="border:none;background:#D3DFEE;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><span style="color:black;">Not every SaaS application<br />
support SAML based federation today. This feature allows customers to bring non-SAML<br />
apps into the SSO portal providing convenient, seamless access to users and<br />
enabling IT to achieve better control and visibility on SaaS application<br />
usage. This is achieved by enabling users to register user ID and password<br />
once on a web site and capturing the data for transparent SSO the next time the<br />
user accesses the app. The process is transparent to the user as they don&#8217;t even<br />
see the log-on screen.</span></p>
</td>
</tr>
<tr>
<td style="border:none;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><strong><span style="color:black;">Salesforce as an Identity<br />
Provider</span></strong></p>
</td>
<td style="border:none;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><span style="color:black;">Instead of authenticating the user against Active Directory, ECA 360 allows the user to be authenticated using<br />
Facebook, Google, Yahoo, and any OpenID provider. With this release, Salesforce<br />
as an Identity Provider has been added to this list. This enables our customers<br />
to let its contractor, partner and affiliate users to login into ECA 360 SSO<br />
portal using Salesforce credentials and further access cloud applications<br />
they are authorized to access.</span></p>
</td>
</tr>
<tr>
<td style="border:none;background:#D3DFEE;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><strong><span style="color:black;">Enterprise-class<br />
scalability</span></strong></p>
</td>
<td style="border:none;background:#D3DFEE;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><span style="color:black;">ECA 360&#8242;s ability to support more than 10,000 concurrent user authentications has been tested and<br />
verified.</span></p>
</td>
</tr>
<tr>
<td style="border:none;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><strong><span style="color:black;">Higher performance and<br />
availability</span></strong></p>
</td>
<td style="border:none;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><span style="color:black;">ECA 360 administrators can now run multiple instances in a clustered environment.</span></p>
</td>
</tr>
<tr>
<td style="border:none;border-bottom:solid #4F81BD 1pt;background:#D3DFEE;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><strong><span style="color:black;">Other improvements</span></strong></p>
</td>
<td style="border:none;border-bottom:solid #4F81BD 1pt;background:#D3DFEE;padding:0 5.4pt;" valign="top">
<p class="MsoNormal" style="margin-bottom:6pt;line-height:normal;"><span style="color:black;">These include: <a name="_GoBack" href="https://secure-blogs.intel.com/mt-static/html/editor-content.html?cs=utf-8"></a>support for short URL entry in a mobile browser, new<br />
compliance reports, and various bug fixes.</span></p>
</td>
</tr>
</tbody>
</table>
<p class="MsoNormal" style="margin-top:12pt;">To learn more about the new and improved ECA 360 v2, please visit our web site at <a href="http://www.intel.com/go/identity">www.intel.com/go/identity</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/497/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/497/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/497/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/497/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/497/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/497/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/497/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/497/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/497/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/497/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/497/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/497/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/497/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/497/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=497&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2011/12/05/cloud-access-360-2-0-version-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>
	</item>
		<item>
		<title>Security Expert, Gunnar Peterson, on Understanding Cloud Security Standards, Part 2</title>
		<link>http://soaexpressway.wordpress.com/2011/12/05/security-expert-gunnar-peterson-on-understanding-cloud-security-standards-part-2/</link>
		<comments>http://soaexpressway.wordpress.com/2011/12/05/security-expert-gunnar-peterson-on-understanding-cloud-security-standards-part-2/#comments</comments>
		<pubDate>Mon, 05 Dec 2011 22:16:39 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[Intel Expressway]]></category>
		<category><![CDATA[Intel Expressway Cloud Access 360]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[SSO]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=492</guid>
		<description><![CDATA[For any technology, it’s important to understand what problems it’s meant to address. In the last post we looked at Cloud Security Anti-Patterns. An Anti-Pattern represents an ineffective or counterproductive practice. In moving to the Cloud several Anti-Patterns have emerged that enterprises should be on the look out for and Identity architecture goals to address [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=492&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>For any technology, it’s important to understand what problems it’s meant to address. In the last post we looked at Cloud Security Anti-Patterns. An <a href="http://en.wikipedia.org/wiki/Anti-pattern">Anti-Pattern </a> represents an ineffective or counterproductive practice. In moving to the Cloud several Anti-Patterns have emerged that enterprises should be on the look out for and Identity architecture goals to address these issues for Cloud applications. Enterprises moving to the Cloud should identify if they have Anti-Patterns summarized in the following table and seek to mitigate:</p>
<p><a href="http://blogs.intel.com/cloud-access-security/assets_c/2011/12/antipattern_chart.jpg.php"><img src="http://blogs.intel.com/cloud-access-security/assets_c/2011/12/antipattern_chart.jpg-thumb-700x343.jpg" alt="antipattern_chart.jpg.jpg" width="700" height="343" /></a></p>
<p>Enterprises moving to the Cloud must avoid the Cloud Security Anti-Patterns. Luckily there are a set of open standards to use in this endeavor. Unfortunately, for enterprises there are many standards to choose from and it can be difficult at first to decipher what standards are addressing which problem set.</p>
<p>SAML, OAUTH, OpenId, and XACML are widely regarded by Cloud Security Alliance, Cloud providers, and the tech community as a whole as key building blocks to the Cloud. In each case, these standards have a unique value proposition towards addressing the Cloud Security Anti-Patterns.</p>
<p>Low/no access control &#8211; “we’ll see if it works and then turn on security later” This mindset is not limited to Cloud applications, its been around since the dawn of IT, but its at the root of many of thorniest issues in security. When security is not factored into the design at the beginning stages its very, very complicated to add it in later.</p>
<p>Home builders will often run wires and pipes inside walls of the homes they are building, leaving stubs where sinks, appliances and electric outlets can be added later. After all, who wants to rip up their walls just to add a new electric outlet?</p>
<p>Enterprises moving to the Cloud must look for strong access control protocols that enable:</p>
<ul>
<li>Tamper proof credentials</li>
<li>Encrypting sensitive data</li>
<li>Secure attribute exchange</li>
<li>End to end authentication</li>
</ul>
<p>Cloud security standards like SAML, OAUTH, OpenId, and XACML enable enterprises to move their applications and data to the Cloud while still implementing an access control regime that meets policy goals around enterprise control as described above.</p>
<p>Like deciding where the sinks should go while building out your houses’ foundation &#8211; with all the choices in identity standard, it can be difficult to know which one enterprises should implement. What’s important is to choose a Identity standards for you applications that are designed for newer Cloud applications because low and now access control leaves too many holes.</p>
<p>Replicating user accounts &#8211; copying in full or an extract your Enterprise directory to the Cloud provider. There are several security and compliance nightmares at work here. The Enterprise directory’s purpose in life is for the Enterprise to manage its user accounts, provision, deprovision, and assign group and role membership so that the business runs efficiently. Adding points of administration is a proven way to make this process less efficient and more error prone.</p>
<p>Of course, the problem with Replicating user accounts to the Cloud is immediately clear for most security architects, but the solutions can seem more elusive. The solution in this case requires that the Enterprise Directory stays under Enterprise control and management while still allowing for fine grained access control decisions on the Cloud Provider side. The challenge then is to facilitate the movement of identity information from the Enterprise-controlled User directory and give the Cloud provider applications the attributes they need to make authorization decisions. Oh, and your users would probably like <a href="http://software.intel.com/en-us/articles/SAML-Cloud-Access-SSO-XACML-Authorization/?partnerref=blogs_gunnar_cloud_security">Single Sign On (SSO)</a> as well.</p>
<p><a href="http://blogs.intel.com/cloud-access-security/assets_c/2011/12/diagram_1a.jpg.php"><img src="http://blogs.intel.com/cloud-access-security/assets_c/2011/12/diagram_1a.jpg-thumb-700x445.jpg" alt="diagram_1a.jpg" width="700" height="445" /></a></p>
<p>This is where standards like <a href="http://software.intel.com/en-us/articles/XML-Gateway-Application-Security-Cloud-Identity/?partnerref=blogs_gunnar_cloud_access_security">SAML</a> provide a lot of value. Enterprises using <a href="http://software.intel.com/en-us/articles/XML-Gateway-Application-Security-Cloud-Identity/?partnerref=blogs_gunnar_cloud_access_security">SAML</a> designate their Enterprise Directory as the Identity provider and the Cloud Service Provider consumes identity information as needed from the enterprise directory. The key distinction here is that the Cloud provider doesn’t manage the identity information. <a href="http://software.intel.com/en-us/articles/XML-Gateway-Application-Security-Cloud-Identity/?partnerref=blogs_gunnar_cloud_access_security">SAML</a> profiles provide the standard protocols that enable applications to provide<a href="http://software.intel.com/en-us/articles/SAML-Cloud-Access-SSO-XACML-Authorization/?partnerref=blogs_gunnar_cloud_access_security"> Single Sign On</a> user experience and securely exchange attributes. This means the Cloud provider can make access control decisions based on identity information in the Enterprise directory without owning the management (and risk) of that directory.</p>
<p>Copying credentials &#8211; sometimes Enterprise copy credentials to Cloud based services; and thereby create a new pool of identity risk to manage. Related to the previous Replicating User Account Anti-Pattern, sometimes Enterprises will seek a temporary work around for Cloud Applications by copying credentials like system accounts and passwords that enable a magical, back door access to certain apps or data. Like all magic, its fun for a kids’ party trick, but not for running a business on.</p>
<p>Enterprises using Cloud application should focus on getting the benefits of the Cloud &#8211; scale, distribution, cost savings &#8211; but not confuse those benefits with a system that should be trusted with enterprise secrets. Credentials should remain under direct enterprise governance. Copying credentials like passwords to the Cloud Provider simply introduces too much risk where the credentials can be used to effect changes to enterprise accounts and systems.</p>
<p>As with the Replicating User Accounts Anti-Patterns, Enterprises should seek to enforce a separation with Identity Management (owned on the Enterprise side) versus Identity Consumption (owned on the Cloud Provider side) through standards like SAML, OpenID and oauth.</p>
<p>“Trusted” proxy &#8211; where trust is in name only As we discussed in Part 1, the first step to dealing with Cloud Security Anti-Patterns is deploying a <a href="http://software.intel.com/en-us/articles/XML-Gateway-Application-Security-Cloud-Identity/?partnerref=blogs_gunnar_cloud_access_security">Policy Enforcement Point</a> to give the Information Security team a place to implement controls that avoid the Anti-Patterns and enable more robust security architecture. There is not a magic “pizza box” that you can simply route your Cloud traffic through to get the kind of security Cloud applications need.</p>
<p>The Proxy or Gateway that you select for mediating the communications to your Cloud provider(s) should be selected based on its support for identity and access standards, monitoring visibility, and ease of integration. The Cloud Security Alliance (<a href="https://cloudsecurityalliance.org/">https://cloudsecurityalliance.org/</a>) guidelines provide a robust starting point for planning for these capabilities; these should be factored in from the very first Cloud deployment for your enterprise.</p>
<p><a href="http://blogs.intel.com/cloud-access-security/assets_c/2011/05/gunnar11.php"><img src="http://blogs.intel.com/cloud-access-security/assets_c/2011/05/gunnar1-thumb-100x77.jpg" alt="gunnar1.jpg" width="100" height="77" /></a></p>
<p>Gunnar Peterson is a Managing Principal at Arctec Group. He is focused on distributed systems security for large mission critical financial, financial exchanges, healthcare, manufacturer, and federal/Gov systems, as well as emerging start ups. Mr. Peterson is an internationally recognized software security expert, frequently published, an Associate Editor for IEEE Security &amp; Privacy Journal on Building Security In, an Associate Editor for Information Security Bulletin, a contributor to the SEI and DHS Build Security In portal on software security, and an in-demand speaker at security conferences. He blogs at <a href="http://1raindrop.typepad.com/">http://1raindrop.typepad.com</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/492/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/492/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/492/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/492/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/492/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/492/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/492/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/492/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/492/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/492/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/492/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/492/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/492/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/492/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=492&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2011/12/05/security-expert-gunnar-peterson-on-understanding-cloud-security-standards-part-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>

		<media:content url="http://blogs.intel.com/cloud-access-security/assets_c/2011/12/antipattern_chart.jpg-thumb-700x343.jpg" medium="image">
			<media:title type="html">antipattern_chart.jpg.jpg</media:title>
		</media:content>

		<media:content url="http://blogs.intel.com/cloud-access-security/assets_c/2011/12/diagram_1a.jpg-thumb-700x445.jpg" medium="image">
			<media:title type="html">diagram_1a.jpg</media:title>
		</media:content>

		<media:content url="http://blogs.intel.com/cloud-access-security/assets_c/2011/05/gunnar1-thumb-100x77.jpg" medium="image">
			<media:title type="html">gunnar1.jpg</media:title>
		</media:content>
	</item>
		<item>
		<title>Federal CIO VanRoekel details his &#8216;first&#8217; priorities</title>
		<link>http://soaexpressway.wordpress.com/2011/11/02/federal-cio-vanroekel-details-his-first-priorities/</link>
		<comments>http://soaexpressway.wordpress.com/2011/11/02/federal-cio-vanroekel-details-his-first-priorities/#comments</comments>
		<pubDate>Wed, 02 Nov 2011 21:18:51 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Announcements]]></category>
		<category><![CDATA[SOA]]></category>
		<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[ESG]]></category>
		<category><![CDATA[Federal]]></category>
		<category><![CDATA[FIPS]]></category>
		<category><![CDATA[High Assurance]]></category>
		<category><![CDATA[HSM]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[Intel Expressway Service Gateway]]></category>
		<category><![CDATA[OMB]]></category>
		<category><![CDATA[XML Gateway]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=486</guid>
		<description><![CDATA[With nearly three months on the job, federal chief information officer Steven VanRoekel is revisiting some long-standing technology priorities. VanRoekel gave his first major policy speech recently, since taking over for Vivek Kundra in August, signaling how he plans to move the administration&#8217;s IT reform ball forward. In this Federalnewsradio.com post, read about how: OMB [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=486&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>With nearly three months on the job, federal chief information officer Steven VanRoekel is revisiting some long-standing technology priorities.</p>
<p>VanRoekel gave his first major policy speech recently, since taking over for Vivek Kundra in August, signaling how he plans to move the administration&#8217;s IT reform ball forward.</p>
<p>In this Federalnewsradio.com <a href="http://www.federalnewsradio.com/?nid=241&amp;sid=2608004" target="_blank">post</a>, read about how:</p>
<ul>
<li>OMB will promote “Share first” policy &#8211;The Office of Management and Budget will begin promoting a &#8220;share first&#8221; policy. VanRoekel said the idea is to have agencies look to others when buying technology or upgrading systems before going off on their own.</li>
<li>“I envision a set of principles like XML First, Web Services First, Virtualize First and other firsts that will inform how we develop our Government’s systems.”</li>
<li>“All of these elements are really grounded in the foundation that is cybersecurity.”</li>
</ul>
<p>&nbsp;</p>
<p><a href="http://software.intel.com/en-us/articles/High-Assurance-Security-Resource-Center/"><img class="aligncenter size-full wp-image-487" title="Government-Approved-Common-Criteria-EAL-4" src="http://soaexpressway.files.wordpress.com/2011/11/government-approved-common-criteria-eal-4.jpg?w=780" alt=""   /></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>Toward these goals, you can deploy <a href="http://software.intel.com/en-us/articles/Expressway-Service-Gateway/?partnerref=soaexpressway_jg_van_roekel" target="_blank">Intel Expressway Service Gateway</a>, a purpose-built cross domain service gateway that enables secure collaboration amongst agencies.</p>
<p>You can address perimeter defense with wire speed XML threat protection, complex security policy enforcement and ready multi-factor integration to identity infrastructure.</p>
<p>And you get the Intel advantage since Intel Expressway Service Gateway has been engineered to take advantage of Intel hardware optimizations to deliver best in class performance and hardened, high-assurance security.</p>
<p>Please reach out to us at  <a href="mailto:intelsoainfo@intel.com" target="_blank">intelsoainfo@intel.com</a> or call 978-948-2585 if you need assistance.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/486/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/486/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/486/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/486/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/486/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/486/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/486/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/486/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/486/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/486/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/486/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/486/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/486/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/486/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=486&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2011/11/02/federal-cio-vanroekel-details-his-first-priorities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>

		<media:content url="http://soaexpressway.files.wordpress.com/2011/11/government-approved-common-criteria-eal-4.jpg" medium="image">
			<media:title type="html">Government-Approved-Common-Criteria-EAL-4</media:title>
		</media:content>
	</item>
		<item>
		<title>Webinar: Federal Cloud Security Initiatives Explained &#8211; Choosing the Right Standards and Technologies</title>
		<link>http://soaexpressway.wordpress.com/2011/10/05/webinar-federal-cloud-security-initiatives-explained-choosing-the-right-standards-and-technologies/</link>
		<comments>http://soaexpressway.wordpress.com/2011/10/05/webinar-federal-cloud-security-initiatives-explained-choosing-the-right-standards-and-technologies/#comments</comments>
		<pubDate>Wed, 05 Oct 2011 22:31:32 +0000</pubDate>
		<dc:creator>soaexpressway</dc:creator>
				<category><![CDATA[Events]]></category>
		<category><![CDATA[Cloud Access 360]]></category>
		<category><![CDATA[Cyberscope]]></category>
		<category><![CDATA[dod pki]]></category>
		<category><![CDATA[ECA360]]></category>
		<category><![CDATA[ESG]]></category>
		<category><![CDATA[Expressway Service Gateway]]></category>
		<category><![CDATA[FedRamp]]></category>
		<category><![CDATA[FICAM]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[Intel Expressway]]></category>
		<category><![CDATA[McAfee]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[NSTIC]]></category>

		<guid isPermaLink="false">http://soaexpressway.wordpress.com/?p=480</guid>
		<description><![CDATA[Join us on 10/6  at 2pm Eastern Time for an exciting and informative webinar: Federal Cloud Security Initiatives Explained &#8211; Choosing the Right Standards and Technologies Mapping the alphabet soup of federal cloud security initiatives is a daunting task. Tim Grance from NIST and federal security expert Gunnar Peterson join forces to decompose the funded [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=480&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Join us on 10/6  at 2pm Eastern Time for an exciting and informative webinar:<a href="http://washingtontechnology.com/webcasts/2011/10/intel-mcafee-cloud-security-100611.aspx?tc=page0"><img class="size-full wp-image-481 alignright" title="Federal webinar" src="http://soaexpressway.files.wordpress.com/2011/10/federal-webinar-magnify.jpg?w=780" alt=""   /></a></p>
<p><strong>Federal Cloud Security Initiatives Explained &#8211; Choosing the Right Standards and Technologies</strong></p>
<p>Mapping the alphabet soup of federal cloud security initiatives is a daunting task. Tim Grance from NIST and federal security expert Gunnar Peterson join forces to decompose the funded programs and standards initiatives to recommend an adoption path for cloud security. Tim begins with a grounding in NIST’s baseline cloud security architectures/guidelines. Gunnar follows with insight into how these practices have been incorporated into programs such as NSTIC, FedRamp, FICAM, Cyberscope, and DOD-PKI.  This will be followed with additional guidance on some of Intel’s solutions from Intel Application Security &amp; Identity Products Chief Architect, Andy Thurai. A group discussion will comment on the adoption timelines, real world use cases, and applicable COTs commercial technologies. Attendees of this webinar will receive a copy of Gunnar Peterson’s Federal Cloud Security white-paper. Sponsored by Intel &amp; McAfee.</p>
<p>Register here:</p>
<p><a href="http://washingtontechnology.com/webcasts/2011/10/intel-mcafee-cloud-security-100611.aspx?tc=page0">http://washingtontechnology.com/webcasts/2011/10/intel-mcafee-cloud-security-100611.aspx?tc=page0</a></p>
<p>&nbsp;</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/soaexpressway.wordpress.com/480/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/soaexpressway.wordpress.com/480/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/soaexpressway.wordpress.com/480/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/soaexpressway.wordpress.com/480/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/soaexpressway.wordpress.com/480/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/soaexpressway.wordpress.com/480/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/soaexpressway.wordpress.com/480/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/soaexpressway.wordpress.com/480/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/soaexpressway.wordpress.com/480/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/soaexpressway.wordpress.com/480/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/soaexpressway.wordpress.com/480/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/soaexpressway.wordpress.com/480/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/soaexpressway.wordpress.com/480/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/soaexpressway.wordpress.com/480/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=soaexpressway.wordpress.com&amp;blog=13218492&amp;post=480&amp;subd=soaexpressway&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://soaexpressway.wordpress.com/2011/10/05/webinar-federal-cloud-security-initiatives-explained-choosing-the-right-standards-and-technologies/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a55e9efef742c46fc7ad51d4b654a4cd?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">soaexpressway</media:title>
		</media:content>

		<media:content url="http://soaexpressway.files.wordpress.com/2011/10/federal-webinar-magnify.jpg" medium="image">
			<media:title type="html">Federal webinar</media:title>
		</media:content>
	</item>
	</channel>
</rss>
