<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: VeriSign VIP &#8211; back again?</title>
	<atom:link href="http://blogs.kuppingercole.com/kuppinger/2009/09/24/verisign-vip-back-again/feed/" rel="self" type="application/rss+xml" />
	<link>http://blogs.kuppingercole.com/kuppinger/2009/09/24/verisign-vip-back-again/</link>
	<description>KuppingerCole</description>
	<lastBuildDate>Thu, 17 May 2012 05:39:53 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>By: Jon Brody</title>
		<link>http://blogs.kuppingercole.com/kuppinger/2009/09/24/verisign-vip-back-again/comment-page-1/#comment-165</link>
		<dc:creator>Jon Brody</dc:creator>
		<pubDate>Thu, 24 Sep 2009 14:54:10 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.kuppingercole.com/kuppinger/?p=212#comment-165</guid>
		<description>Martin, 
 
There are a few points I thought it would be useful to expand on. 
 
1. myOneLogin supports apps that dont provide federation.  We manage ids and passwords for these sites.  Many of our customers give their users a myOneLogin account configured to never let them see the user ID and password that is being supplied to their apps.  Among the many benefits of this approach is that it eliminates account/pw sharing.  Of course this approach isnt necessary if the web app supports SAML. 
 
2.  As you point out, we provide three factors, a confidence image, a browser cookie or certificate that provide &#039;clientless&#039; mutual strong authentication , and the VIP mobile token.  Customers can rely on our clientless methods on machines they work from regularly, while using the VIP mobile factor when roaming e.g. from public machines. 
 
3. Internal apps that are already accessible through an SSL VPN are easy to include in a users myOneLogin portal.  Juniper&#039;s SSL VPN support for SAML makes it easy for myOneLogin to provide secure access to external and internal apps. 
 
4. myOneLogin can validate users against internal user stores (e.g. AD, LDAP) with our Directory Services Proxy (DSP) module.  This module can also be used by an enterprise to generate and consume SAML - which relieves the enterprise or (service provider) from the effort necessary to implement their own SAML support..  
 
Jon 
 </description>
		<content:encoded><![CDATA[<p>Martin, </p>
<p>There are a few points I thought it would be useful to expand on. </p>
<p>1. myOneLogin supports apps that dont provide federation.  We manage ids and passwords for these sites.  Many of our customers give their users a myOneLogin account configured to never let them see the user ID and password that is being supplied to their apps.  Among the many benefits of this approach is that it eliminates account/pw sharing.  Of course this approach isnt necessary if the web app supports SAML. </p>
<p>2.  As you point out, we provide three factors, a confidence image, a browser cookie or certificate that provide &#039;clientless&#039; mutual strong authentication , and the VIP mobile token.  Customers can rely on our clientless methods on machines they work from regularly, while using the VIP mobile factor when roaming e.g. from public machines. </p>
<p>3. Internal apps that are already accessible through an SSL VPN are easy to include in a users myOneLogin portal.  Juniper&#039;s SSL VPN support for SAML makes it easy for myOneLogin to provide secure access to external and internal apps. </p>
<p>4. myOneLogin can validate users against internal user stores (e.g. AD, LDAP) with our Directory Services Proxy (DSP) module.  This module can also be used by an enterprise to generate and consume SAML &#8211; which relieves the enterprise or (service provider) from the effort necessary to implement their own SAML support..  </p>
<p>Jon </p>
]]></content:encoded>
	</item>
</channel>
</rss>

