iTnews
  • Home
  • News
  • Technology
  • Security

Microsoft calls for granular security

By Tom Sanders
Feb 7 2007 10:45AM
Follow google news

Digital certificates and smart cards are the future, Microsoft chairman
Bill Gates predicts
.

Microsoft calls for granular security
Security needs to shift its focus from the physical computer infrastructures to the end user, Microsoft chairman Bill Gates said in a keynote at the RSA Conference in San Francisco.

Security thinking, Gates alleged, has largely failed to adept to the internet age in which devices from both inside and outside a company attach to company networks. Networks are no longer isolated 'glass houses' where defending the perimeter suffices.

"We can't think of that glass house as the way that we do this isolation. We have to define what can connect to what. We need a more powerful paradigm," Gates told delegates.

Instead security needs to cope with the fact that users bring portable systems such as mobile phones, notebook computers and USB storage keys inside corporate networks. Partners and customers meanwhile expect to connect to services through the internet. These trends require that security moves from a perimeter level to an application level, argued Craig Mundie, Microsoft's chief research and strategy officer.

"Programs are becoming proxies for people. We need to be able to say: 'Give this program access,'" Mundie said.

Gates and Mundie touted open standard such as IP-Sec, IPv6 and WS-Trust as a way to provide application level security. Gates also unveiled that the software developer will collaborate with the OpenID 2.0 specification, an open digital identity framework. The collaboration will ensure that Microsoft's CardSpace service works well with OpenID services.

CardSpace is a service inside the Windows Vista operating system that allows users to create digital identity cards for online services. Among things, it is expected to limit the risk of phishing attacks and replace authentication that is based on user names and passwords.

Gates described passwords as the "weakest link" as users continue to use weak passwords and companies pay large sums to reset lost passwords. The Microsoft chairman over the past years has repeatedly predicted that smartcards and digital certificates will replace the current password structure.

But digital certificates and application based security programs won't work without the proper management tools, Mundie cautioned. Microsoft plans to better support security management in the forthcoming version of its Windows Server operating system codenamed Longhorn. The company at RSA Conference also unveiled its Identity Lifecycle Manager 2007. Slated for general availability by May, the software promises to manage user identities through certificates and smart cards.

"What we have to do better is think about what the boundaries are. This is something that Microsoft do not do well in our early days," Mundie conceded.

"We never did a lot of thinking about where to create boundaries and interoperability and hook ups, to create an intrinsic security of our system."

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:
callsformicrosoftsecurity

Related Articles

  • Meta accuses NSO Group of violating court order by WhatsApp spear phishing Meta accuses NSO Group of violating court order by WhatsApp spear phishing
  • Researchers build self-replicating AI worm with BYO LLM Researchers build self-replicating AI worm with BYO LLM
  • Anthropic opens Claude Mythos Preview AI program to Australia Anthropic opens Claude Mythos Preview AI program to Australia
  • Defence says Palantir is "sandboxed" in its environment Defence says Palantir is "sandboxed" in its environment
Join our WhatsApp Channel

Partner Content

Now is the time for the channel to push the hardware refresh
Partner Content Now is the time for the channel to push the hardware refresh
Take control of your connectivity with Telstra’s Adaptive Networks Centre
Partner Content Take control of your connectivity with Telstra’s Adaptive Networks Centre
Onel Consulting Strengthens Its White-Glove Services With Strategic COO Appointment
Promoted Content Onel Consulting Strengthens Its White-Glove Services With Strategic COO Appointment
Why resilient communications are becoming critical infrastructure for modern enterprise IT
Promoted Content Why resilient communications are becoming critical infrastructure for modern enterprise IT

Sponsored Whitepapers

Agile in the AI Era: why projects still fail
Agile in the AI Era: why projects still fail
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
High-volume data sources for AI-driven security analytics
High-volume data sources for AI-driven security analytics
How healthcare organisations can get more value from cloud
How healthcare organisations can get more value from cloud
1 in 3 companies lose SaaS data. Here’s how to prevent it
1 in 3 companies lose SaaS data. Here’s how to prevent it

Events

  • iTnews State of Security Breakfast iTnews State of Security Breakfast
  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
  • Security Exhibition & Conference Security Exhibition & Conference
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Anthropic opens Claude Mythos Preview AI program to Australia

Anthropic opens Claude Mythos Preview AI program to Australia

Defence says Palantir is "sandboxed" in its environment

Defence says Palantir is "sandboxed" in its environment

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Microsoft backs down on legal threats against 0day disclosing researchers

Microsoft backs down on legal threats against 0day disclosing researchers

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.