Network World

research center:

Applications

Search / DocFinder:
Advanced search
Research Centers
Vendor Solutions
Site Resources
Special Issues

Signature SeriesEnterprise All-Stars
Enterprise All-Stars NEW

You in action
You in action

New Data Center The New Data Center: Wireless & Mobility
Wireless & Mobility NEW

The New Data Center: Server Virtualization
Server Virtualization

SAML (Security Assertion Markup Language)

SAML defines XML/Simple Object Access Protocol-based protocol interactions that support real-time authentication and authorization across federated Web services environments. The standard defines request and response messages that security domains use to exchange authentication, attribute and authorization information in the form of trust-assertion messages about named users and resources. Users log on to their home domains through authentication techniques such as ID/password or Kerberos, and this authentication is communicated to a federated destination site through a SAML authentication assertion.

From Federation key to Web services, Network World, 04/29/02.

End user's browser accesses authentication server, and authentication server asks for user ID and password. End user requests a resource from destination/Web services server. Authentication server opens a session with destination server.
End user enters ID and password. Authentication server checks with LDAP directory and then authenticates end user. Authentication server sends uniform resource identifier (URI) to end user. End user browser is redirected to URI, which connects end user to Web service.

Also see: XACML.

Additional resources

OASIS SAML page

SAML promises Web services security
Network World Tech Update, 07/01/02.

Web Services research center
The latest Web services news, analysis and research links from Network World Fusion.


Add a comment

NOTE: Comments are reviewed by an editor before being posted.

Your rating of this resource (with 5 the best)
1 2 3 4 5

Subject:

Your user name (what other users will see on the review):

Your real name (for our records only):

Your e-mail (ditto):

Your comments (Use a blank line to separate paragraphs):

TOP STORIES | MOST DUGG STORIES

  1. Mythbuster busts his own tale
  2. 10 open source companies to watch
  3. Sony recalls 73,000 Vaio laptops
  4. Tool to evade China's Web censorship
  5. Chrome and Firefox and add-ons
  6. Flaws in ASA 5500, PIX, Cisco Secure ACS
  7. Carriers batten down the hatches for hurricanes
  8. Technology's 10 annoying fictional characters
  9. What are Cisco's top net-mgmt. challenges?
  10. Six complaints about Apple's iPhone 3G

  11. MOST-WATCHED VIDEO:
    Omega keeping time at the Olympics

Newsletters
Sign up for one of NWW's Application newsletters.

Web Applications
Network Optimization
Network Systems Management
Network/Systems Management News Alert
View all newsletters

Email Address:

Vendor Solutions

White Papers

Sun Microsystems: The Green Tide Is Coming. Pressure Builds for an Energy-Efficient Data Center
- Sun

Secure Wireless Printing Options
- Zebra

Oracle Compatibility Developer's Guide
- EnterpriseDB Corporation

More...

Special Report

The New Network/System Management Challenges - Peer1
Increasingly popular technologies such as virtualization, wireless networking and data center automation promises plenty of business benefits, but, on the downside, introduce a slew of new network and systems management challenges. Download this Executive Guide now!


Research Centers: Applications | Application Development | Applications-Standards | Applications Vendor Solutions | Collaboration | CRM / ERP | Databases | Directories | Grid Computing | Java | Messaging | .Net | RFID | SOAP | Web Services | XML | Convergence & VoIP | Convergence Regulatory | Convergence Services | Convergence Standards | Convergence VoIP Vendor Solutions | Video | IP PBX | SIP | VoIP | VoIP Services | E-Business | DNS | RFID | Supply Chain | Web security LANs & Routers | Acceleration | Gigabit Ethernet | Lans-Standards | Routers | Wireless LANs | Network Management | Application Management | Desktop Management | Management Test Patch Management | Operating Systems | Linux | NetWare | Unix | Windows Outsourcing | Managed Services | Offshoring Security | Firewalls - VPN - Intrusion | Identity management | Patch Management | Microsoft Security | Privacy | Security Standards | Spam & Phishing | Viruses & worms | Web Security | Wireless Security | Servers & Desktop | Backup-Recovery | DataCenter | Desktops | Desktop Management | Grid | Servers | Server Blades | Servers Desktops | Utility Computing | Small & Medium Business | Broadband | Telework | Handhelds & PDAs | Home Networking | Security | Storage | Compliance | Infiniband | Network-Attached Storage | SANs | Storage Management | Storage Virtualization | Virtualization | Vendor News | Bankruptcy | Earnings | Lawsuits | Layoffs | Standards | Start Ups | Vendor Markets | Education | Financial | Healthcare | HIPAA | Manufacturing | Retail | Wide Area Network | Broadband | Carriers | Frame Relay | Metro Ethernet | MPLS | Service providers | Wireless services | Wireless & Mobile | Wireless LANs | PDAs & handhelds | Wireless Security | Wireless Services | Wireless Standards | Wireless Switches | All Company Profiles