SlideShare a Scribd company logo
1 of 3
It’s a safe choice, because Site Minder is currently the clear leader in terms of market 
share. But is Site Minder really all that great? 
If you were an enterprise in the early 2000′s, you were smart to deploy Site Minder. In 
the late 90′s, the Integrity team’s pioneering work on Site Minder offered an epic 
improvement on home-grown SSO authentication wam software approaches. However, 
by 2003, the product was not too far from the product used today.
In a past life, I was a “buy side” equity analyst for a Wall Street firm. I followed a 
number of mergers involving Computer Associates. CA Management made their model 
clear to investors: buy mature products where customers are locked in and no (or very 
little) innovation is required. Many of these deals contribute revenue long after their 
expected expiration date. From that perspective, the Integrity acquisition was brilliant 
“strategy” ( for CA…) 
However, if you’re a customer of CA Site minder, think back to 2003… There were no 
iPhones and Android would have to wait another five years to show up on the market. 
There were no cloud servers. Web Services meant SOAP. And the idea that Linux would 
replace Solaris in the enterprise seemed wildly over-optimistic. 
You’d think that an important enterprise security system would need an equally 
dramatic upgrade. Even when Site Minder was owned by Integrity, enhancements were 
slow to arrive. If there is a new Site Minder feature you want, or a bug to be fixed, your 
only recourse is to wait for a patch. Expect to wait a long time. Maybe this is good — 
stability is good, right? 
But as everyone knows, it’s hard to stand still in the tech market. Although commercial 
companies can get to market more quickly, these days it’s inevitable that open source 
software will follow. Usually it is better than the proprietary software. This is especially 
true for software that implements open standards, and integrates with open source 
products like the Apache HTTPD server. As Site Minder stood relatively still for the last 
decade, open source software has risen to the occasion.
At this point, its Site Minder that needs to do the catching up, as the model for 
authorization is no longer centralized… its federated. It’s not just one “Policy Server” 
for a domain that controls security for a website… but websites need to check with 
many authorization servers. Here is a hypothetical example: a website for the Army 
might need to check policies for the Army, the Dept of Defense, and other autonomous 
organizations. 
I predict Site Minder’s market share has peaked. Of course, organizations don’t want to 
overpay to be locked into proprietary software once there are any other options. The 
market for access management has gotten more competitive. 
Not only are there other enterprise suites (some of which are mentioned in the 
Forrester report linked above), there are also SaaS identity services and open source 
alternatives. 
More and more organizations are adopting central idp shibboleth authentication and 
authorization systems. With greater demand, prices have fallen dramatically. Lower 
prices have brought the technology within grasp of exponentially more organizations, 
thus increasing the total size of the market. Soon enough, many of Site Minder’s 
customers will look at the current market price for the technology, and realize they are 
paying far too much. It will be hard for Site Minder to adjust without destroying their 
current business model. 
Article resource:-http://www.blogster.com/thegluuserver/the-decline-of-siteminder-1

More Related Content

More from Gluu

First o auth 2.0 and saml identity federation platform to be shown by gluu
First o auth 2.0 and saml identity federation platform to be shown by gluuFirst o auth 2.0 and saml identity federation platform to be shown by gluu
First o auth 2.0 and saml identity federation platform to be shown by gluu
Gluu
 
How & why gluu’s open source authorization and authentication platform was ch...
How & why gluu’s open source authorization and authentication platform was ch...How & why gluu’s open source authorization and authentication platform was ch...
How & why gluu’s open source authorization and authentication platform was ch...
Gluu
 
East hackathon api’s for art
East hackathon api’s for artEast hackathon api’s for art
East hackathon api’s for art
Gluu
 
Gluu’s vision
Gluu’s visionGluu’s vision
Gluu’s vision
Gluu
 
Gluu and canonical to demonstrate instant application security using ubuntu j...
Gluu and canonical to demonstrate instant application security using ubuntu j...Gluu and canonical to demonstrate instant application security using ubuntu j...
Gluu and canonical to demonstrate instant application security using ubuntu j...
Gluu
 
Currency of identifiers ii
Currency of identifiers iiCurrency of identifiers ii
Currency of identifiers ii
Gluu
 
Shibboleth identity provider (idp) what it is, and why you should consider a ...
Shibboleth identity provider (idp) what it is, and why you should consider a ...Shibboleth identity provider (idp) what it is, and why you should consider a ...
Shibboleth identity provider (idp) what it is, and why you should consider a ...
Gluu
 
Federated identity and open id connect why higher ed needs ox
Federated identity and open id connect why higher ed needs oxFederated identity and open id connect why higher ed needs ox
Federated identity and open id connect why higher ed needs ox
Gluu
 
Web access management using o auth2 and saml – wam 2.0
Web access management using o auth2 and saml – wam 2.0Web access management using o auth2 and saml – wam 2.0
Web access management using o auth2 and saml – wam 2.0
Gluu
 
Packt publishing book proposal api and mobile access management
Packt publishing book proposal api and mobile access managementPackt publishing book proposal api and mobile access management
Packt publishing book proposal api and mobile access management
Gluu
 
Postcard from identity next 2013
Postcard from identity next 2013Postcard from identity next 2013
Postcard from identity next 2013
Gluu
 

More from Gluu (18)

Gluu founder and ceo, mike schwartz, to host open id connect 1.0 session at r...
Gluu founder and ceo, mike schwartz, to host open id connect 1.0 session at r...Gluu founder and ceo, mike schwartz, to host open id connect 1.0 session at r...
Gluu founder and ceo, mike schwartz, to host open id connect 1.0 session at r...
 
Gluu sxsw 2015 interactive picks
Gluu sxsw 2015 interactive picksGluu sxsw 2015 interactive picks
Gluu sxsw 2015 interactive picks
 
17 recommended requirements for an identity and access management poc
17 recommended requirements for an identity and access management poc17 recommended requirements for an identity and access management poc
17 recommended requirements for an identity and access management poc
 
Top 10 applications for multi factor authentication in higher education
Top 10 applications for multi factor authentication in higher educationTop 10 applications for multi factor authentication in higher education
Top 10 applications for multi factor authentication in higher education
 
First o auth 2.0 and saml identity federation platform to be shown by gluu
First o auth 2.0 and saml identity federation platform to be shown by gluuFirst o auth 2.0 and saml identity federation platform to be shown by gluu
First o auth 2.0 and saml identity federation platform to be shown by gluu
 
How & why gluu’s open source authorization and authentication platform was ch...
How & why gluu’s open source authorization and authentication platform was ch...How & why gluu’s open source authorization and authentication platform was ch...
How & why gluu’s open source authorization and authentication platform was ch...
 
East hackathon api’s for art
East hackathon api’s for artEast hackathon api’s for art
East hackathon api’s for art
 
Gluu’s vision
Gluu’s visionGluu’s vision
Gluu’s vision
 
Gluu and canonical to demonstrate instant application security using ubuntu j...
Gluu and canonical to demonstrate instant application security using ubuntu j...Gluu and canonical to demonstrate instant application security using ubuntu j...
Gluu and canonical to demonstrate instant application security using ubuntu j...
 
Currency of identifiers ii
Currency of identifiers iiCurrency of identifiers ii
Currency of identifiers ii
 
Shibboleth identity provider (idp) what it is, and why you should consider a ...
Shibboleth identity provider (idp) what it is, and why you should consider a ...Shibboleth identity provider (idp) what it is, and why you should consider a ...
Shibboleth identity provider (idp) what it is, and why you should consider a ...
 
Federated identity and open id connect why higher ed needs ox
Federated identity and open id connect why higher ed needs oxFederated identity and open id connect why higher ed needs ox
Federated identity and open id connect why higher ed needs ox
 
Web access management using o auth2 and saml – wam 2.0
Web access management using o auth2 and saml – wam 2.0Web access management using o auth2 and saml – wam 2.0
Web access management using o auth2 and saml – wam 2.0
 
Packt publishing book proposal api and mobile access management
Packt publishing book proposal api and mobile access managementPackt publishing book proposal api and mobile access management
Packt publishing book proposal api and mobile access management
 
Gluu oscon submission
Gluu oscon submissionGluu oscon submission
Gluu oscon submission
 
Go west young federation
Go west young federationGo west young federation
Go west young federation
 
 Use case for asimba as saml proxy
 Use case for asimba as saml proxy Use case for asimba as saml proxy
 Use case for asimba as saml proxy
 
Postcard from identity next 2013
Postcard from identity next 2013Postcard from identity next 2013
Postcard from identity next 2013
 

Recently uploaded

introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdfintroduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
VishalKumarJha10
 

Recently uploaded (20)

The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdfThe Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
 
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
 
Diamond Application Development Crafting Solutions with Precision
Diamond Application Development Crafting Solutions with PrecisionDiamond Application Development Crafting Solutions with Precision
Diamond Application Development Crafting Solutions with Precision
 
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
 
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
 
Optimizing AI for immediate response in Smart CCTV
Optimizing AI for immediate response in Smart CCTVOptimizing AI for immediate response in Smart CCTV
Optimizing AI for immediate response in Smart CCTV
 
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdfintroduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
 
10 Trends Likely to Shape Enterprise Technology in 2024
10 Trends Likely to Shape Enterprise Technology in 202410 Trends Likely to Shape Enterprise Technology in 2024
10 Trends Likely to Shape Enterprise Technology in 2024
 
Microsoft AI Transformation Partner Playbook.pdf
Microsoft AI Transformation Partner Playbook.pdfMicrosoft AI Transformation Partner Playbook.pdf
Microsoft AI Transformation Partner Playbook.pdf
 
Direct Style Effect Systems - The Print[A] Example - A Comprehension Aid
Direct Style Effect Systems -The Print[A] Example- A Comprehension AidDirect Style Effect Systems -The Print[A] Example- A Comprehension Aid
Direct Style Effect Systems - The Print[A] Example - A Comprehension Aid
 
Define the academic and professional writing..pdf
Define the academic and professional writing..pdfDefine the academic and professional writing..pdf
Define the academic and professional writing..pdf
 
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
 
How To Use Server-Side Rendering with Nuxt.js
How To Use Server-Side Rendering with Nuxt.jsHow To Use Server-Side Rendering with Nuxt.js
How To Use Server-Side Rendering with Nuxt.js
 
8257 interfacing 2 in microprocessor for btech students
8257 interfacing 2 in microprocessor for btech students8257 interfacing 2 in microprocessor for btech students
8257 interfacing 2 in microprocessor for btech students
 
The Guide to Integrating Generative AI into Unified Continuous Testing Platfo...
The Guide to Integrating Generative AI into Unified Continuous Testing Platfo...The Guide to Integrating Generative AI into Unified Continuous Testing Platfo...
The Guide to Integrating Generative AI into Unified Continuous Testing Platfo...
 
How To Troubleshoot Collaboration Apps for the Modern Connected Worker
How To Troubleshoot Collaboration Apps for the Modern Connected WorkerHow To Troubleshoot Collaboration Apps for the Modern Connected Worker
How To Troubleshoot Collaboration Apps for the Modern Connected Worker
 
Exploring the Best Video Editing App.pdf
Exploring the Best Video Editing App.pdfExploring the Best Video Editing App.pdf
Exploring the Best Video Editing App.pdf
 
5 Signs You Need a Fashion PLM Software.pdf
5 Signs You Need a Fashion PLM Software.pdf5 Signs You Need a Fashion PLM Software.pdf
5 Signs You Need a Fashion PLM Software.pdf
 
Introducing Microsoft’s new Enterprise Work Management (EWM) Solution
Introducing Microsoft’s new Enterprise Work Management (EWM) SolutionIntroducing Microsoft’s new Enterprise Work Management (EWM) Solution
Introducing Microsoft’s new Enterprise Work Management (EWM) Solution
 
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
call girls in Vaishali (Ghaziabad) 🔝 >༒8448380779 🔝 genuine Escort Service 🔝✔️✔️
 

The decline of site minder

  • 1. It’s a safe choice, because Site Minder is currently the clear leader in terms of market share. But is Site Minder really all that great? If you were an enterprise in the early 2000′s, you were smart to deploy Site Minder. In the late 90′s, the Integrity team’s pioneering work on Site Minder offered an epic improvement on home-grown SSO authentication wam software approaches. However, by 2003, the product was not too far from the product used today.
  • 2. In a past life, I was a “buy side” equity analyst for a Wall Street firm. I followed a number of mergers involving Computer Associates. CA Management made their model clear to investors: buy mature products where customers are locked in and no (or very little) innovation is required. Many of these deals contribute revenue long after their expected expiration date. From that perspective, the Integrity acquisition was brilliant “strategy” ( for CA…) However, if you’re a customer of CA Site minder, think back to 2003… There were no iPhones and Android would have to wait another five years to show up on the market. There were no cloud servers. Web Services meant SOAP. And the idea that Linux would replace Solaris in the enterprise seemed wildly over-optimistic. You’d think that an important enterprise security system would need an equally dramatic upgrade. Even when Site Minder was owned by Integrity, enhancements were slow to arrive. If there is a new Site Minder feature you want, or a bug to be fixed, your only recourse is to wait for a patch. Expect to wait a long time. Maybe this is good — stability is good, right? But as everyone knows, it’s hard to stand still in the tech market. Although commercial companies can get to market more quickly, these days it’s inevitable that open source software will follow. Usually it is better than the proprietary software. This is especially true for software that implements open standards, and integrates with open source products like the Apache HTTPD server. As Site Minder stood relatively still for the last decade, open source software has risen to the occasion.
  • 3. At this point, its Site Minder that needs to do the catching up, as the model for authorization is no longer centralized… its federated. It’s not just one “Policy Server” for a domain that controls security for a website… but websites need to check with many authorization servers. Here is a hypothetical example: a website for the Army might need to check policies for the Army, the Dept of Defense, and other autonomous organizations. I predict Site Minder’s market share has peaked. Of course, organizations don’t want to overpay to be locked into proprietary software once there are any other options. The market for access management has gotten more competitive. Not only are there other enterprise suites (some of which are mentioned in the Forrester report linked above), there are also SaaS identity services and open source alternatives. More and more organizations are adopting central idp shibboleth authentication and authorization systems. With greater demand, prices have fallen dramatically. Lower prices have brought the technology within grasp of exponentially more organizations, thus increasing the total size of the market. Soon enough, many of Site Minder’s customers will look at the current market price for the technology, and realize they are paying far too much. It will be hard for Site Minder to adjust without destroying their current business model. Article resource:-http://www.blogster.com/thegluuserver/the-decline-of-siteminder-1