The Secret Security Wiki

Categories
Categories

Federation and SSO

Single sign-on allows users to access multiple services with a single login. Federated identity refers to stored credentials (identity provider) that are used to connect identity management systems together.

Active Directory Federation Services

Active Directory Federation Services (AD FS) is a component of Active Directory (AD), an identity directory service for users, computers, and applications that is developed and marketed by Microsoft for use on Windows domains. AD FS provides AD users with the ability to access off-domain resources (i.e. web-based services or another domain) using their AD...

Learn more

Security Assertion Markup Language

What is SAML? The SAML protocol, or “Security Assertion Markup Language” as it’s less commonly known, is one of the most common web protocols around, used by almost all internet users on a daily basis for easily logging on to websites and online services. The protocol was first released by the Organization for the Advancement...

Learn more

Single Sign On

SSO is an organization access control solution that allows users to authenticate once (typically once per session) and get access to all enterprise resources connected to the SSO system, the solution provides federated access to multiple independent software with one set of credentials . Typically to achieve this magic, multiple techniques are used behind the...

Learn more

Federated Identity Management

Federated Identity Management is the set of tools and processes through which two or more identity federation parties can establish mutual trust and allow one party to attest to another about the identity of an access-requesting party it had authenticated. FIM is an arrangement of trust between companies or services providers to use the same...

Learn more

Federated Identity

Federated Identity is the means by which an authenticating party can attest to a third party that it had successfully authenticated someone or something. The third party accepts the attestation provided by the authenticating party based on mutual trust previously established between the parties, and as a result, waives the requirement to authenticate the access-requesting...

Learn more