SAML 2.0: Difference between revisions

From bibbleWiki
Jump to navigation Jump to search
Line 14: Line 14:
*Login once per session
*Login once per session
==SAML==
==SAML==
SAML stands for Security Assertion Markup Language and ''defines the syntax and processing semantics of assertions made about a subject by a system entity.''
SAML stands for Security Assertion Markup Language and ''defines the syntax and processing semantics of assertions made about a subject by a system entity.''<br>
In SAML the thing providing the service is the Service Provider '''(SP)''' e.g. HR System and the thing providing the Authentication is the Identity Provider '''(IdP)'''

Revision as of 00:38, 17 July 2021

Introduction

What is SSO (Single Sign On)

Some definitions

  • Authentication Verifying an identify
  • Authorization Verifying user has permission and access
  • Federation is when authentication is happen across multi vendor apps

SSO is the ability to authenticate via one authority.

Benefits are

  • Authentication under your control (Audit, turn off/on etc)
  • One set of credentials
  • Login once per session

SAML

SAML stands for Security Assertion Markup Language and defines the syntax and processing semantics of assertions made about a subject by a system entity.
In SAML the thing providing the service is the Service Provider (SP) e.g. HR System and the thing providing the Authentication is the Identity Provider (IdP)