Open ID Connect and GSMA Mobile Connect

OpenID Connect (final specs launched Feb 2014) is an interoperable authentication protocol based on the OAuth 2.0 family of specifications. It uses straightforward REST/JSON message flows with a design goal of “making simple things simple and complicated things possible”. OpenID Connect lets developers authenticate their users across websites and apps without having to own and manage… Continue reading Open ID Connect and GSMA Mobile Connect

PAYM and Donor Led Mobile Number Porting Use Case

The PAYM mobile payment service enables UK bank customers to transfer money to an individual using their mobile phone number (MSISDN) as the identifier. Currently nine banks and building societies have adopted the PAYM service and customers of these providers can now register to use the service. The PAYM architecture is based on a centralised database of receiver's MSISDNs.… Continue reading PAYM and Donor Led Mobile Number Porting Use Case

Securing Smart Device Communication using ETSI M2M Service Capability Layer (SCL)

Smart M2M devices require authentication & registration with the mobile network. Standardisation of service is proposed by the ETSI Service Capability Layer deployed to the Mobile Internet Device / Gateway. Security between the network and the mobile internet device requires authentication, key agreement and establishment that enable M2M Service Bootstrap, provisioning and M2M Service Connection procedures… Continue reading Securing Smart Device Communication using ETSI M2M Service Capability Layer (SCL)

A Common Service Layer for M2M & The Challenge of AAA for Smart Devices

The Internet of Things, as distinct from the internet of people, requires communication between devices to enable home automation, telematics and health care monitoring. This intercommunication is dependent upon semantically structured and shared data for enabling functions such as identification, authentication, authorisation, bootstrapping and provisioning. Standardising both the semantically structured data and the enabling functions across M2M applications… Continue reading A Common Service Layer for M2M & The Challenge of AAA for Smart Devices

The Future of Identity Management According to CoTS Vendors Part 1

Most identity management software vendors will rationalise their service enablement capability as so: Identity and access management has traditionally focused on managing user accounts in the form of directory service entries - the traditional IAM/IdM view it has seldom involved managing identities, let alone multiple types. They might digress slightly here on the history of Master Data… Continue reading The Future of Identity Management According to CoTS Vendors Part 1

Enterprise M2M Use Cases: #2 Corporate Customer Fleet Management Change M2M Device MNO

GSMA Official Document 12FAST.13 - Embedded SIM Remote Provisioning Architecture published in December 2013 provides a technical specification to enable the remote provisioning and management of Embedded SIMs to allow the “over the air” provisioning of an initial operator subscription and the subsequent change of subscription from one operator to another.  The technical specification includes technical use… Continue reading Enterprise M2M Use Cases: #2 Corporate Customer Fleet Management Change M2M Device MNO

Enterprise M2M Use Cases: #1 Corporate Customer Fleet Management New M2M Order Provisioning

GSMA Official Document 12FAST.13 - Embedded SIM Remote Provisioning Architecture published in December 2013 provides a technical specification to enable the remote provisioning and management of Embedded SIMs to allow the “over the air” provisioning of an initial operator subscription and the subsequent change of subscription from one operator to another.  The technical specification includes technical use… Continue reading Enterprise M2M Use Cases: #1 Corporate Customer Fleet Management New M2M Order Provisioning

Embedded SIM SM-DP & SM-SR

The GSMA has united the mobile operators and SIM suppliers behind a single Embedded SIM specification to avoid costly, fragmented & incompatible technical solutions and help accelerate the M2M market.  In order to support M2M use cases with no human intervention and to facilitate the secure over the air installation of mobile operator credentials into a SIM,… Continue reading Embedded SIM SM-DP & SM-SR

5 Key Architectural Considerations on Implementing Identity and Access Management for M2M

Identity and access management have traditionally been used to manage the identity and credentials assigned to human users.  Machine to machine devices such as Smart Metering GPRS enabled electricity meters or SIM cards in cars require their own identity and access management capabilities. These include new M2M authentication schemes because traditional authentication schemes always assume the presence of a person.… Continue reading 5 Key Architectural Considerations on Implementing Identity and Access Management for M2M

Salesforce Identity Connect to Other Directory Services

Identity Connect is a charged extension to Salesforce Identity that enables an organisation to use their existing directory services.  It specifically allows integration to Active Directory and enables the upload of user data from Active Directory to one or more Salesforce organisations, and automatically to synchronise this data when user entries are added, changed, or removed. In… Continue reading Salesforce Identity Connect to Other Directory Services