mace-opensaml-users - RE: Need help: SAML enable Appliance
Subject: OpenSAML user discussion
List archive
- From: "Scott Cantor" <>
- To: "'Smith Baylor'" <>
- Cc: <>
- Subject: RE: Need help: SAML enable Appliance
- Date: Thu, 5 Aug 2004 17:20:16 -0400
- Organization: The Ohio State University
> All that I want to do is provide a way to use the same SSO server for
> authenticating a user at the gateway and later use the same token
> within a Web or App Server so that I don't have to reauthenticate the
> person.
If the back-end server is a web server interacting directly with the client,
then what's the gateway doing?
If you can deploy the SAML SSO profile on the back-end, the gateway doesn't
need to be there.
If you can't, then you aren't doing SAML at that end, so you could
authenticate to the gateway with SAML, and then do whatever it is that the
back-end understands by having the gateway translate that credential into
something else.
That's in fact how a lot of the SAML products tend to work, from what I
understand. They funnel the SAML SSO to one spot and then do something
proprietary between there and the apps.
Also, "reauthentication" and "use the same token" are orthogonal. SAML SSO
is point to point (the token in 1.1 is service-specific can't be reused) but
that doesn't mean the user is authenticating over and over, at least not
visibly. The authn authority maintains a session and just issues new tokens
for each subsequent service.
-- Scott
- Need help: SAML enable Appliance, Smith Baylor, 08/05/2004
- RE: Need help: SAML enable Appliance, Scott Cantor, 08/05/2004
- Re: Need help: SAML enable Appliance, Smith Baylor, 08/05/2004
- RE: Need help: SAML enable Appliance, Scott Cantor, 08/05/2004
- Re: Need help: SAML enable Appliance, Smith Baylor, 08/05/2004
- RE: Need help: SAML enable Appliance, Scott Cantor, 08/05/2004
- xml library issues, Mike Ferraro, 08/13/2004
- RE: xml library issues, Scott Cantor, 08/13/2004
- Re: xml library issues, Mike Ferraro, 08/13/2004
- RE: xml library issues, Scott Cantor, 08/13/2004
- Re: xml library issues, Walter Hoehn, 08/13/2004
- Re: xml library issues, Mike Ferraro, 08/13/2004
- RE: xml library issues, Scott Cantor, 08/13/2004
- Re: xml library issues, Mike Ferraro, 08/13/2004
- xml library issues, Mike Ferraro, 08/13/2004
- RE: Need help: SAML enable Appliance, Scott Cantor, 08/05/2004
- Re: Need help: SAML enable Appliance, Smith Baylor, 08/05/2004
- RE: Need help: SAML enable Appliance, Scott Cantor, 08/05/2004
- Re: Need help: SAML enable Appliance, Smith Baylor, 08/05/2004
- RE: Need help: SAML enable Appliance, Scott Cantor, 08/05/2004
Archive powered by MHonArc 2.6.16.