SEARCH RESULTS
 
Showing 1-10 of 19 records
 
Expand article

SSO Summit Day One Morning Session

2008-07-24 13:35:02 by Gunnar Peterson in 1 Raindrop
 
...SAML and SOA security issues SSO without strong auth is and always will be simply nuts SAML gets its right His points around common weaknesses in integration in SOA and Web 2.0 technologies for companies that are *not* using SAML were excellent. Of course, I will go into some more details on this tomorrow Ping's CTO Patrick Harding took...
 
 
 
 
 
Expand article

Dynamic Security Assertion Markup Language: Simplifying Single Sign-On

2008-05-22 06:22:47 by Editor in IEEE Security and Privacy
 
Dynamic Security Assertion Markup Language (SAML) simplifies the establishment of secure single sign-on between Web applications in different organizations by automating the exchange of SAML configuration information and simplifying cryptographic trust establishment
 
 
 
 
 
Expand article

SSO Summit Wrap Up

2008-07-25 13:41:07 by Gunnar Peterson in 1 Raindrop
 
...SAML adoption and awareness by customers and partners. And I quite liked his quote - "If you are a SAAS vendors and you are not supporting SAML you won't be in business very long Kent Beck says programs are not things, they are shadows of communities. If you look at a big vendors' IDENTITY AND ACCESS MANAGEMENT SUITE - its not a cohesive...
 
 
 
 
 
Expand article

Web Services and XML Security Training at OWASP

2008-08-28 08:55:59 by Gunnar Peterson in 1 Raindrop
 
...SAML PingFederate Web Services - we'll look at how to implement a STS in Web services Bandit - Cardspace , authorization, and auditing Security Services VordelSecure - XML gateway, comprehensive web services security policy creation and enforcement, deploying decentralized security services Apache Ramparts modecurity Testing Soapbox - web...
 
 
 
 
 
Expand article

Identity Framework Probable Feature List

The Article has images
2007-12-16 06:42:00 by Keith Brown in Security Briefs
...SAML from personal cards Username/Password Fx helps you expose your STS using WCF Fx supplies a custom ServiceHostFactory (currently called WindowsInformationCardServiceHostFactory This allows you to create a .SVC file for a WCF endpoint to expose your STS Fx supplies an HttpModule for the traditional ASP.NET authentiation pipeline According...
 
 
 
 
 
Expand article

OpenID family grows How it can transform Identity Federation between enteprises

2008-02-07 14:06:33 by Andras Cser in Security & Risk Management
 
...SAML and other federation technologies will be key enablers in OpenIDs success and promotion from the current low-value (e.g. blogsite) authentication usage, to becoming a full-fledged, enterprise-level federation solution
 
 
 
 
 
Expand article

Microsoft's directory team forced to reconsider ignored standards

2008-03-04 00:00:00 by John Fontana in Network World on Security
 
Recent proclamations by Microsoft CEO Steve Ballmer that the company would move toward interoperability and support for standards is putting pressure on the head of the company's directory and identity development to reconsider support for industry standards such as SAML that have been long ignored
 
 
 
 
 
Expand article

Jericho Forum and the Collaboration Oriented Architecture (COA) position paper

2008-05-09 14:16:55 by Burton Group in Security and Risk Management Strategies Blog
 
...SAML or other XML) is insufficient to support COA. The following elements are also valuable: [Here, I shorten and paraphrase the list of bullet points attribute brokers access brokers contract brokers policy language (like XACML 3.0 performance manager (builds audit logs and reputation systems I wish that the COA position paper had spent more...
 
 
 
 
 
Expand article

The Venn of Identity: Options and Issues in Federated Identity Management

2008-05-22 06:22:46 by Editor in IEEE Security and Privacy
 
...SAML, OpenID, and InfoCard protocols, and reviews new developments in federated identity management