SAML: Difference between revisions

From Single Sign-On Attacks
Jump to navigation Jump to search
(Created page with "The most important industry standard for Identity Management is the SecurityAssertion Markup Language (SAML). SAML is based on the [https://en.wikipedia.org/wiki/XML eXtensibl...")
 
No edit summary
Line 12: Line 12:
*Identity Provider (IdP)-initiated SSO
*Identity Provider (IdP)-initiated SSO
[[File:IdP_initiated_SSO.jpg|centre]]
[[File:IdP_initiated_SSO.jpg|centre]]
==Attacks on SAML==

Revision as of 22:14, 29 November 2015

The most important industry standard for Identity Management is the SecurityAssertion Markup Language (SAML). SAML is based on the eXtensible Markup Language (XML) and enables the secure exchange of XML-based authentication messages. In conjunction with Single Sign-On (SSO) systems, SAML especially offers a standardized format for authentication tokens. Authentication and authorization data are defined in SAML Assertions.

SAML Usage

  • Single Sign-On (SSO)
  • Single Logout
  • Identity Federation

Login with SAML

  • Service-Provider (SP)-initiated SSO


  • Identity Provider (IdP)-initiated SSO