SAML (Security Assertion Markup Language)
SAML defines XML/Simple Object Access Protocol-based protocol interactions that support real-time authentication and authorization across federated Web services environments. The standard defines request and response messages that security domains use to exchange authentication, attribute and authorization information in the form of trust-assertion messages about named users and resources. Users log on to their home domains through authentication techniques such as ID/password or Kerberos, and this authentication is communicated to a federated destination site through a SAML authentication assertion.
From Federation key to Web services, Network World, 04/29/02.
Also see: XACML.
Additional resources
OASIS SAML page
SAML promises Web services security
Network World Tech Update, 07/01/02.
Web Services research center
The latest Web services news, analysis and research links from Network World Fusion.
Add a comment