Melvin Koh's Weblog
I'm just a contractor
Thursday October 05, 2006
IdM Standards
I've been looking at Identity Management (IdM) and Federation recently, which is why I created a new blog category. APSTC has joined a consortium for the EU
SORMA Project and part of our task is to investigate and apply IdM technology to the architecture.
When it comes to IdM standards, first comes to mind will probably be SAML (Security Assertion Markup Language) by OASIS. Then there's also the Liberty Alliance organization that is also working on Id Federation specifications like ID-WSF, ID-SIS, ID-FF etc. Now, newbies to these standards (like me) will probably get very confused as Liberty and SAML has combined some of these specifications into the new SAML 2.0. Worse still, there are also other competing standards like WS-Federation. Not too long ago, Sun also opensourced the part of the code for Access Manager and named it OpenSSO. Then there are many IdM software, Shibboleth for example.
So with so many different standards and tools, how does one make sense of everything? And how does one ensure interoperability?
Posted by melvin
( Oct 05 2006, 02:22:40 PM SGT )
Permalink
Trackback URL: http://blogs.sun.com/melvin/entry/idm_standards
This is a personal weblog, I do not speak for my employer.