May 20, 2003

Gartner on Passport: Just Say No

Avivah Litan and the Gartner team have recommended that "financial institutions, credit companies, online retailers, and anyone else using Passport for any 'meaningful' business purpose immediately either 'break all Passport connections' until November, or invest in 'an additional, more secure form of authentication for all Passport identities.'"

Strong words! Reminiscent of Gartner's recommendation that companies seek alternatives to IIS back in September '01.

Yes the MS Passport breach (see May 8th's blog entry for more info) is major, but Litan's warning seems a little out of place considering very few banks and FIs were using Passport for business transactions. If any readers know of ones that were, I'd be interested to hear about them.

Posted by Diana at May 20, 2003 08:04 AM