Prevent bottlenecks on web servers by using load balancing to distribute traffic.
Read More at Enable Sysadmin
Prevent bottlenecks on web servers by using load balancing to distribute traffic.
Read More at Enable Sysadmin
Sort your disk usage data in any order you want with these du command options.
Read More at Enable Sysadmin
Upgrading your container-based database? Keep the process straightforward using these steps.
Read More at Enable Sysadmin
Take a look at the software, laptop, server, smartphone, and other tech choices that keep this sysadmin productive while working from home in 2022.
Read More at Enable Sysadmin
Learn how to run one-off commands, tunnel other applications, and securely copy files using the secure shell tool.
Read More at Enable Sysadmin
Open Source Strategy Forum is now the Open Source in Finance Forum, with the name changed to better reflect its evolution as the premier event dedicated to driving collaboration and innovation in financial services through open source software and standards.
SAN FRANCISCO, February 3, 2022 — FINOS, the Fintech Open Source Foundation and financial sector project of The Linux Foundation, and The Linux Foundation, the nonprofit organization enabling mass innovation through open source, today announced the name change of its event dedicated to driving collaboration and innovation in financial services through open source software and standards from Open Source Strategy Forum to the Open Source in Finance Forum. The event started in 2017 under the auspices of FINOS prior to it joining the Linux Foundation in 2020, and has since grown to become the flagship event for the fast growing open source movement in financial services and its unique challenges. The name is being changed to better reflect the focus of the event within the larger landscape of open source events produced by The Linux Foundation and its projects.
This year, Open Source in Finance Forum will take place in London, England on Wednesday, July 13, and in New York City, USA on Thursday, December 8. Both events will gather experts from financial services, technology and open source who will come together for thought-provoking insights and conversations, providing unique opportunities to hear from and engage with those who are leveraging open source software to solve industry challenges.
The Call for Proposals for Open Source in Finance Forum London and Open Source in Finance Forum New York are now open. View suggested topics and submit talks for all events at the links provided above.
The Linux Foundation strongly values the need to increase diversity, equity and inclusion in open source, and a great place for that to begin is on the conference stage. We encourage those from all marginalized communities to submit to speak. We also welcome and encourage first-time speakers to submit. If you aren’t sure about your abstract or have any questions, please reach out to us.
Sponsor
Please contact The Linux Foundation for information on becoming an event sponsor at sponsorships@linuxfoundation.org.
Press
Members of the press who would like to request a press pass to attend should contact Kristin O’Connell.
About FINOS
FINOS (The Fintech Open Source Foundation) is a nonprofit whose mission is to foster adoption of open source, open standards and collaborative software development practices in financial services. It is the center for open source developers and the financial services industry to build new technology projects that have a lasting impact on business operations. As a regulatory compliant platform, the foundation enables developers from these competing organizations to collaborate on projects with a strong propensity for mutualization. It has enabled codebase contributions from both the buy- and sell-side firms and counts over 40 major financial institutions, fintechs and technology consultancies as part of its membership. FINOS is also part of the Linux Foundation, the largest shared technology organization in the world.
About the Linux Foundation
Founded in 2000, the Linux Foundation is supported by more than 2,000 members and is the world’s leading home for collaboration on open source software, open standards, open data, and open hardware. Linux Foundation’s projects are critical to the world’s infrastructure including Linux, Kubernetes, Node.js, and more. The Linux Foundation’s methodology focuses on leveraging best practices and addressing the needs of contributors, users and solution providers to create sustainable models for open collaboration. For more information, please visit linuxfoundation.org.
Linux Foundation Events are where the world’s leading technologists meet, collaborate, learn and network in order to advance innovations that support the world’s largest shared technologies.
Visit our website and follow us on Twitter, Linkedin, and Facebook for all the latest event updates and announcements.
The Linux Foundation has registered trademarks and uses trademarks. For a list of trademarks of The Linux Foundation, please see its trademark usage page: www.linuxfoundation.org/trademark-usage. Linux is a registered trademark of Linus Torvalds.
###
Media Contact
Kristin O’Connell
The Linux Foundation
koconnell@linuxfoundation.org
The post FINOS, the Fintech Open Source Foundation and Financial Sector Project of The Linux Foundation, Announces Name Change and 2022 Dates for Open Source in Finance Forum appeared first on Linux Foundation.
It requires some configuration, but a rootless user can use Jenkins to create OCI-compliant images on OpenShift.
Read More at Enable Sysadmin
Learn the basic commands to check your firewall’s configuration, add or remove rules, and reload settings.
Read More at Enable Sysadmin
Jason Perlow, Editorial Director of Linux Foundation Research, spoke with HITACHI’s Takashi Norimatsu about the Keycloak project, an open source identity access and management platform.
JP: Greetings, Norimatsu-san. Can you tell me a bit about yourself, where in Japan do you live, and what is your prior experience with information systems? Can you tell me how it is that how you became an OSS maintainer at HITACHI? Is it part of your regular responsibilities at the company, or is it something you do as a best effort?
こんにちは。乗松さん。少しあなた自身の事をお伺いしたいと思います。いまどちらにお住まいでしょうか? 現在の仕事をする前にIT分野でどのようなことをされてきましたでしょうか? 現在日立製作所の社員でありながら、どのようにしてオープンソースソフトウェア(OSS)のメンテナーになったのでしょうか? そして、メンテナーとしての活動は、会社の業務の一環として行っているのでしょうか?

TN: Thank you for the interview. I live in Yokohama, the 2nd largest city in Japan by population, about 35km southwest of Tokyo, Japan’s capital.
I had engaged in developing several kinds of equipment and systems, like some communication equipment firmware and their operation software, smart maintenance systems software, and so on.
My unit in Hitachi has been encouraging me to contribute features, especially about security to Keycloak. By following this policy, I’ve been contributing features to the Keycloak project for several years. It seems that existing Keycloak maintainers recognized my contributions and I was then promoted to Keycloak maintainer.
As a result of contributing to these open source activities, my unit in Hitachi decided that I would be working as a Keycloak maintainer as my regular responsibility.
インタビューいただきありがとうございます。現在は横浜市に住んでおります。現在の仕事に就く前ですが、IT分野としては様々な通信機器のファームウェアやオペレーション用のソフトウェアの開発、鉄道設備のスマートメンテナンスシステム用のソフトウェアの開発などを行ってまいりました。私の所属する部署では、OSSへのコントリビューションを推奨しておりまして、それに従い数年にわたってKeycloakにコントリビューションを続けてまいりました。その長年の活動がKeycloakのメンテナーに認められて、メンテナーになれたのだと思います。私の所属する部署では、私がKeycloakのメンテナーとして活動することを、業務の一環として認められています。
JP: So, what is Keycloak? What kind of OSS is it?
Keycloak というのは、どういったOSSなのでしょうか?
TN: Keycloak is an identity and access management open source software. It can be used for single sign-on, social login, and securing API accesses. Keycloak complies with several open standards like OAuth 2.0, OpenID Connect, SAMLv2, LDAP, Kerberos, and so on.
Keycloakは、アイデンティティおよびアクセス管理用のOSSです。シングルサインオン、ソーシャルログイン、APIへの安全なアクセスを実現します。Keycloakは、様々な標準仕様に準拠しています。例として、 OAuth 2.0, OpenID Connect, SAMLv2, LDAP, Kerberosなどが挙げられます。
JP: Why did HITACHI decide to make contributions to Keycloak?
なぜ日立製作所はKeycloakへコントリビューションすることを決めたのでしょうか?
TN: Our team in HITACHI provides services for OSS in the security area. When we looked for an appropriate OSS for single sign-on and securing API access, we picked up Keycloak because it is very easy to use without a complicated setup and it is highly customizable so that it can be applied to a wide range of use cases.
私の所属するチームは、セキュリティ分野のOSSについてのサービスを提供しています。以前、シングルサインオンやAPIへの安全なアクセスを行うのに良いOSSがないかを探していた時、Keycloakが目に留まりました。Keycloakは、複雑な設定なしに動かすことができますし、様々なカスタマイズが可能であることから、様々なユースケースに適用できると考えたためです。
JP: Why is OAuth 2.0 not sufficient for accessing APIs that require a high-security level?
高度なセキュリティが要求されるAPIアクセスにおいて、OAuth 2.0では不十分である理由はなんでしょうか?
TN: OAuth 2.0 is a framework for conveying authorization information among several entities so that it can be used flexibly in a wide range of use cases. Due to its flexibility, it may introduce security holes if it is used in the wrong way. To prevent it, detailed ways of how to use OAuth 2.0 securely have been developed like Financial-grade API (FAPI) security profile. For Open Banking use cases in the world, there are several in-service ecosystems whose security profiles are based on FAPI 1.0 Advanced security profile. For example, Open Banking Security Profile in the UK, Consumer Data Right (CDR) security profile in Australia, and Open Banking Brasil Financial-grade API Security Profile 1.0 in Brazil.
OAuth 2.0というのは、認可情報を複数のエンティティ間で伝達するためのフレームワークです。フレームワークであることから自由度が高く、様々なユースケースに適用可能です。その自由度の高さゆえに、誤った使い方をすると、セキュリティホールが生じる恐れがあります。それを防ぐために、どのようにOAuth 2.0を安全に使用したらいいかをこと細かく定めたものをセキュリティプロファイルと呼んでいます。その一例がFinancial-grade API (FAPI) Security Profileです。Open Bankingのユースケースにおいて、このFAPIをベースとしたセキュリティプロファイルがいくつかあります。例として、イギリスにおけるOpen Banking Security Profile、オーストラリアにおけるConsumer Data Right (CDR) security profile、ブラジルにおける Open Banking Brasil Financial-grade API Security Profile 1.0が挙げられます。
JP: How does FAPI accomplish accessing APIs that require a high-security level?
FAPIにより、どのようにして高度なセキュリティが要求されるAPIアクセスが可能になるのでしょうか?
TN: It is difficult to explain it briefly because FAPI covers a wide range of technologies. However, to try to summarize it, FAPI determines how to use OAuth 2.0 precisely to assure that the only right client application can access the right API provided by the resource server.
FAPIは様々な技術分野に関係する為一言で説明するのは難しいです。ですが、あえて言うならば、FAPIでは、OAuth 2.0のこと細かい使い方を定めることで、正しいクライアントアプリケーションが正しくAPIにアクセスできるようにします。
JP: To become a maintainer of Keycloak, what kind of contribution activities did you do?
Keycloakのメンテナーになるために、どういったコントリビューション活動をされたのでしょうか?
TN: I’ve been contributing some security features to Keycloak. In these contributions, my main contribution is supporting FAPI to Keycloak. However, it takes a lot of time and effort to do it by myself. Therefore, some contributors got together and established FAPI-SIG to work together on supporting FAPI to Keycloak. As a result, Keycloak 14 has supported FAPI 1.0 Baseline security profile, FAPI 1.0 Advanced security profile and FAPI-CIBA security profile.
セキュリティに関する機能をKeycloakにコントリビューションし続けて来ました。その中で主要なものとしてFAPIのサポートが挙げられます。これは自分一人でやろうとすると非常に時間も手間もかかりますので、コントリビューターが集まりFAPI-SIGを立ち上げ、FAPIのサポート活動を行いました。結果として、Keycloak 14から FAPI 1.0 Baseline security profile, FAPI 1.0 Advanced security profile, and FAPI-CIBA security profileがサポートされるようになりました。
JP: What kind of support did you receive from your company for your contribution activities?
あなたの会社は、コントリビューション活動に対してどういったサポートをされているのでしょうか?
TN: My company, HITACHI sees the real value of Keycloak so that it allows me to use a significant portion of my time to contribute activities to Keycloak.
私の会社では、Keycloakに価値を見出しており、かなりの時間をKeycloakに関する作業にかけてよいことになっています。
JP: That’s wonderful. Thank you Norimatsu-san, I greatly appreciate your time.
Check out Enable Sysadmin’s top 10 articles from January 2022.
Read More at Enable Sysadmin