Gartner Research

Molding Identity Into the Internet of Things

Published: 29 June 2016

ID: G00303076

Analyst(s): Erik Wahlstrom


The diversity of the Internet of Things (IoT) makes Identities of Things (IDoT) hard to architect and manage for IoT solution architects. Users, devices, gateways, platforms, applications and services all have a part to play in IoT solutions and need identities to form a secure and trusted IoT.

Table Of Contents
  • The Disconnect Between Hardware, Platform and IAM Vendors
  • The Role of Your IAM Platform
  • The Difference in Requirements Between Industrial IoT and Consumer IoT
  • The Challenge of Distributed Policy Management
  • The Impact of Protocols on Authorization, Policy and Privacy
  • The Bootstrapping Problem — an IoT Conundrum
  • Panoply of Credentials
  • Layering of Protocols
  • Multicast
  • Strengths
  • Weaknesses


  • Form the Full Picture of Identity of Things
  • Assess IoT Capabilities Within Your IAM Platform
  • Centralize Policy Management
  • Stack Authentication in Multiple Layers to Achieve End-to-End Trust
  • Build User-Centric IoT Solutions, Even for IIoT
  • Select the Right Mechanisms for the Job
  • Use Access Tokens in Offline Scenarios

The Details

  • Credentials
  • Authentication and Authorization
    • Physical and Link Layer
    • Transport Layer
    • Application-Layer Authentication and Its Usage in Common IoT Protocols
  • IoT Gateways

Gartner Recommended Reading

©2021 Gartner, Inc. and/or its affiliates. All rights reserved. Gartner is a registered trademark of Gartner, Inc. and its affiliates. This publication may not be reproduced or distributed in any form without Gartner’s prior written permission. It consists of the opinions of Gartner’s research organization, which should not be construed as statements of fact. While the information contained in this publication has been obtained from sources believed to be reliable, Gartner disclaims all warranties as to the accuracy, completeness or adequacy of such information. Although Gartner research may address legal and financial issues, Gartner does not provide legal or investment advice and its research should not be construed or used as such. Your access and use of this publication are governed by Gartner’s Usage Policy. Gartner prides itself on its reputation for independence and objectivity. Its research is produced independently by its research organization without input or influence from any third party. For further information, see Guiding Principles on Independence and Objectivity.

Already have a Gartner Account?

Become a client

Learn how to access this content as a Gartner client.