Login:
Password:

VeriSign Takes on Passport with VIP

By Nate Mook, BetaNews

February 13, 2006, 1:55 PM

VeriSign on Monday announced it was joining the federated identity market, offering up a new solution for Web sites to authenticate users and joining forces with eBay, PayPal and Yahoo. The service will challenge established standards such as Passport and the Liberty Alliance Project backed by Sun.

VeriSign Identity Protection, or VIP, will initially be implemented PayPal and across Yahoo's Web properties. Later this year, SanDisk will launch USB devices with built-in VIP passwords, much like RSA's popular SecurID product. PayPal plans to offer the devices to customers as an added protection mechanism.

According to VeriSign, the Federal Trade Commission found that 37 percent of all Internet Fraud complaints filed dealt with identity theft. VIP is intended to help that problem, the company says, and is based on open standards defined by OATH, an industry-wide working group for authentication.

Motorola is also supporting the effort, encouraging its customers to utilize VIP in order to protect their online identities. Although, the phone and device maker did not say how it plans to implement the technology.

"VeriSign Identity Protection will provide a new means to protect consumer identities, combining multi-factor authentication, a shared network of information and intelligence and actionable fraud monitoring. With our partners, the VIP service will provide end-users with easy-to-purchase and easy-to-deploy multi-factor authentication," said Judy Lin, executive vice president of VeriSign Security Services.

OATH, or Initiative for Open AuTHentication, is one of many groups pushing for standards in the identity space. The Liberty Alliance is a consortium of over 150 companies and another chief participant in the industry is OASIS, which plays host to both OASIS Security Service (SAML) and the XRI Data Interchange (XDI) technical committees.

VeriSign expects to begin rolling out VIP authentication services, including a Fraud Intelligence Network, starting this summer.

Add a Comment (3 Comments)

BetaNews reserves the right to remove any comment at any time for any reason. Please keep your responses appropriate and on topic. Foul language and personal attacks will not be tolerated.

Name (required):

E-mail (required):

Enter Your Comment:

By zee7

posted Feb 14, 2006 - 2:00 PM

Ah, memories!

"Verisign erroneously issued two VeriSign Class 3 code-signing digital certificates to an individual fraudulently claiming to be a Microsoft employee. Both certificates use the name, "Microsoft Corporation"."

http://www.ciac.org/ciac/bulletins/l-062.shtml

http://amug.org/~glguerin/opinion/revocation.html

Score: 0

By drumcat

posted Feb 13, 2006 - 4:30 PM

Oh oh, if we say we're taking on Microsoft, people will like us! Nevermind we overcharge for our services... if we say BillG sucks, people will like us! Yay us!

Gag me.

Score: 0

By spiked

posted Feb 13, 2006 - 4:02 PM

"Takes on Passport"??

VeriSign may be entering the same market space as Passport, but demand in this market is still as low as it was in 2001 when Liberty decided to "take on Passport."

Also, the bulk of Passport's "market share" consists of Microsoft-operated sites which aren't going to be switching. Many of them were owned by satellite divisions, regional subsidiaries, and outsourcing vendors so they took years just to get with the Passport program.

The "identity" management concept and terminology isn't quite mainstream yet, so I understand why this article would need to reference Passport for context, but realistically, VeriSign is not going to be stealing any significant customers from Passport.

Score: 0