Authentication as a Service
Where is good old 3 factor authentication in the cloud. Why would we let people access Enterprise data with just a user name and password?
Authentication is the backbone of everything we do on the cloud. From Hotmail to Sales Force, Twitter to Tesco, usernames and passwords have become part of our life on the web. This is all great but my problem is with the type of authentication we are using. What prompted this blog / rant was signing up to what I would class an enterprise web app, and I started to wonder how I would manage this security on mass as an enterprise end user. SSO can be a solution, but my problem isn’t necessarily with the method of managing mass usernames and password, but more with the level of security required to access the service. With the recent hack / workaround at Apple it got me thinking about how we can implement better security. Would it look like this.