This document discusses identity management in the cloud. It describes how on-premise and cloud identities can be managed as one through identity lifecycle management and single sign-on. It also discusses protocols like REST/HTTP, OAuth 2.0, SAML 2.0, and WS-Federation 1.3 that can be used for directory access, service to service authentication, and web application authentication in cloud identity management.