Saturday, May 10, 2008, 8:57 PM

Access Agents

Access agents, which are a form of personal directories, are required to solve multiple problems in digital identity. Access agents should perform the user-centric, end-point management of user-id/password pairs, personal private keys, OTP (on-time password) seeds, OpenID tokens, etc. -- all the credentials an end-user possesses (and is expected to manage). Access agents should follow end-users around to all the end-points where human comes into contact with cyberspace. (I like to think of end-points as the 4P's -- PC's, PDA, phones, and portals.)

There are multiple reasons for end-point access agents:

1. Simplification of the user's world
2. Migration to multi-factor authentication
3. Integration

But the bottom-line is control. Control for the end-user in that he/she can finally stop worrying about dozens of access codes. And with better control comes the possibility of increasing security. Which also results in control for the enterprise in better security and more auditability. (Yes, the access agent can act as big brother for the enterprise.)

Dave Kearns has written a bunch on the need for personal directories. He sees most of the work on identity management, including OpenID and InfoCard, leading to a logical conclusion - the personal directory system.

Links to Dave's Articles
o May 2002, The need for a personal directory (
o January 2007, Someone else wants a personal directory! (

5 Comment(s):

Blogger Kevin said...

Hi Mr Ong, I'm seeking to get in touch with you. Pls contact me. Thanks.

3:46 PM  
Blogger Luke said...

he! it is nice great job and make more. I believe that I am good but not as good as you.

busby seo test

3:43 AM  
Blogger Roland said...

very informative details thanks for that, nice article
Busby SEO Test

5:37 AM  
Blogger reinkefj said...

Can you explain your four P's?

PCs, PDA, phones, and portals.

I'm not sure I agree with the taxonomy. But, I like the alliteration.

I use a meme of: platform, network, application, data, and people. Platform can be the computer with an operating system that permits installation of applications OR an appliance with a tightly bound operating system that forbids or severely limits the installation of applications.

I don't understand what you mean by "portals".

Sigh, shame when words screw up communication.

Thanks for prevoking thought.

Ferdinand J. Reinke
Kendall Park, NJ 08824
Webform email =>
Web page =>
My blog =>
LinkedIn url =>

7:52 AM  
Blogger tayo said...

I was very pleased to find this site.I wanted to thank you for this great read!! I definitely enjoying every little bit of it and I have you bookmarked to check out new stuff you post.

2:22 AM  

Post a Comment

<< Home