Web Single Sign-On Implementation Using the SimpleSAMLphp Application

Authors

  • Ionut Andronache Military Technical Academy
  • Claudiu Nisipasiu Military Technical Academy

Keywords:

Web Single Sign-On, Identity Federation, Identity Provider, SAML 2.0, SimpleSAMLphp

Abstract

Web Single Sign-On is a feature offered by web applications that have a trust relationship, not necessarily within the same company. The goal of Web SSO is to provide authentication information for all the web application in the trust relationship, without requiring the user to login in each web application.  SAML 2.0 is the standard that defines the framework in order to achieve Web SSO and identity federation in a web context. In order to make a Web SSO implementation, we used the open-source SimpleSAMLphp library, which implements the standards of SAML 2.0 and provides functionality for the two scenarios: SAML – Service Provider and SAML – Identity Provider.

References

Single Sign-On http://www.opengroup.org/security/sso/

Single Sign-On – A Contrarian View

http://www.databaseanswers.org/ibm_sso.htm

Single Sign-On

http://en.wikipedia.org/wiki/Single_sign-on

Build and implement a single sign-on solution

http://www.ibm.com/developerworks/web/library/wa-singlesign/

Federated Identity

http://en.wikipedia.org/wiki/Federated_identity

The basics of Identity Federation

http://www.sun.com/software/products/identity/basics_id_federation.pdf

Security Assertion Markup Language

(SAML) V2.0 Technical Overview

http://www.oasis-open.org/committees/download.php/27819/sstc-saml-tech-overview-2.0-cd-02.pdf

Security and Privacy Considerations for the OASIS Security Assertion Markup

Language (SAML) V2.0

http://docs.oasis-open.org/security/saml/v2.0/saml-sec-consider-2.0-os.pdf

Assertions and Protocols for the OASIS

Security Assertion Markup Language

(SAML) V2.0

http://docs.oasis-open.org/security/saml/v2.0/saml-core-2.0-os.pdf

How to configure simpleSAMLphp 1.3 as SP and Shibboleth 2.1 as IdP

http://www.zeitoun.net/articles/configure-simplesaml-1.3-sp-and-shibboleth-2.1-idp/start

Identity federation using SAML and WebSphere software

http://www.ibm.com/developerworks/webservices/library/ws-SAMLWAS/index.html?ca=drs-

SimpleSAMLphp

http://simplesamlphp.org/

Downloads

Published

2011-03-30

How to Cite

Andronache, I., & Nisipasiu, C. (2011). Web Single Sign-On Implementation Using the SimpleSAMLphp Application. Journal of Mobile, Embedded and Distributed Systems, 3(1), 21-29. Retrieved from http://www.jmeds.eu/index.php/jmeds/article/view/30