cro's place

Radovan on Enterprise IDM Roles

Posted in Identity Management, Roles Based Acccess Control by cro. Tuesday November 15, 2005.

Radovan Semančík has been posting a series of articles on Identity Management, and the latest is a discussion of different approcahes to role capture and definition.

You will soon realize, that you have two or three times the number of roles than the number of employees. Now, it looks like you would spend all your effort on role-maintenance instead of employee-maintenance - the role system as just as dynamic as is the employee base. That’s pretty different from the solution as it was described by sales people: “you will just assign an employee to the role and that’s it”. But, there are ways out of this. At least partially.

Technorati Tags: , , ,

One Response to “Radovan on Enterprise IDM Roles”

  1. James Says:

    Radovan is exactly right. No one is talking about harder problems such as role based engineering especially in a federated context…

Leave a Reply


Copyright 1998-2005 Tom Gordon
23 queries. 0.519 seconds.
Powered by Wordpress
based on a theme by evil.bert