SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> IT Workplace >> Knowledge Management

Content management versus DRM

Content management versus DRM

By:  Mark Gibbs  On: 11 May 2006 For: Network World Creator

Over the past few years we’ve seen content management systems (CMS) that focused ­pretty much exclusively on Web content evolve to meet, sometimes embrace and occasionally supplant traditional document management software.

Over the past few years we’ve seen content management systems (CMS) that focused ­pretty much exclusively on Web content evolve to meet, sometimes embrace and occasionally supplant traditional document management software.

Today, content management has become big business and is starting to become a true enterprise service. What does an enterprise CMS look like? Apart from all the usual features (workflow, versioning, media libraries and so on), it includes comprehensive user authentication and rights enforcement.

You might be saying, “Surely, what you are proposing, nay, extolling, sounds like digital rights management, which I clearly recollect you dissed only a few weeks ago.”

Indeed, young Jedi, I was somewhat disparaging and did refer to DRM as digital rights restriction.

But the difference lies in the intention. DRM, as desired by the Recording Industry Association of America and the Motion ­Pictures Association of America, assumes that you can control how users work with content.

This is despite the screamingly obvious fact that without special hardware to make DRM solutions truly robust, any kid with half a clue can make sure the best-laid plans of mice and marketers “gang aft agley” (Scottish for “go really wrong”).

These could be described as the worst laid plans, or plans that even mice would not lay.

DRM as applied in the enterprise is a very different beast. It is primarily another mechanism for control that enables and ensures compliance with laws, such as the Sarbanes-Oxley Act, by creating an audit trail of use and attempted use.

The biggest failures were in, you guessed it, a lack of adequate controls over passwords, a failure to implement auditing and monitoring mechanisms “to detect and track security incidents,” and a lack of user-access controls.

What amazes me is that products are out there and tested in enterprise-scale organizations. There is simply no excuse for not having addressed the problem.

Why is no one being held accountable? Why in the ranks of shrill posturing politicians is there no one willing to go to bat over this? (Then again, even though Sony BMG compromised thousands of government networks with its DRM systems, no heads rolled.)

These organizations and the public don’t seem to care enough to do anything. That is until some kind of IT Pearl Harbor happens to some public institution.

Of course, such an event may have already occurred. If they don’t care enough to fix the problem, would they care enough to ’fess up when their worst laid plans have gang aft agley?

QuickLink: 063737

--Cries of outrage to Gibbsblog or sound off to ­backspin@gibbs.com.


Sign up for our Newsletters
Tags:












Print |  Views: 503   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Mark Gibbs Mark Gibbs is a contributor to the International Data Group (IDG) News Service, which publishes global technology stories from bureaus around the world to more than 300 publications in more than 60 countries.

Related Content

Microsoft lays out SQL Server road map
Microsoft lays out SQL Server road mapThe software giant hopes to redefine business intelligence and data warehousing with its strategy for SQL Server and a range of add-ons
Firewall tailored to monitor Web 2.0 activity
Firewall tailored to monitor Web 2.0 activityPalo Alto Networks claims its App-ID technology identifies potentially insecure activity and lets administrators block either an entire application or certain features, such as peer-to-peer. Find out what analysts are saying about its reporting capability
Nexio absorbs project management firm Teximus
Nexio absorbs project management firm TeximusThe company offers a tool called Expertise to control and manage best practices around various kinds of projects and compliance issues
Anatomy of a Kickoff: Part 3: Supporting Structure Introduction
arun nithyanandam -this is a series of posts, if you haven’t read the earlier ones, please read it here.part 1: overviewpart 2: client and
Kickoff: Connecting the dots
arun nithyanandam - in this post, we look at some tips and techniques that will allow you to connect with people to conduct a powerful kickoff. during the kickof
The Anatomy of a Pre-Analysis Cookbook – Part 2: Nuts and Bolts
arun nithyanandam -this is a series of posts, if you haven’t read the earlier ones, please read it here.the anatomy of a pre-analysis cookbook – part 1: overviewa four-part cook bookwhile every cook b
blog comments powered by Disqus