Understanding Two-Step Single Sign-On (SSO) and Its Protocols
This guide delves into the concept of Two-Step Single Sign-On (SSO), explaining its benefits such as enhanced convenience, a central password store, and reduced password transmission demands. We explore various protocols including Shibboleth, SAML, Liberty Alliance, OpenID, and CAS. Learn how these technologies improve security and user experience in accessing multiple systems. Additionally, we discuss examples of these protocols in action, emphasizing their importance in modern authentication strategies, especially within educational platforms like Apple iTunes U.
Understanding Two-Step Single Sign-On (SSO) and Its Protocols
E N D
Presentation Transcript
Understanding Single Sign-on • Part 2 - “Two-Step” SSO
“Two-Step” SSO • Review of SSO – Why should we use SSO? • SSO Provides • Convenience • Central Password Store • Less demand for password to be passed • Less systems accessing the password
“Two-Step” SSO • Some “Two-step” SSO Protocols • Examples using this genre of SSO • Shibboleth/SAML/Liberty Alliance • OpenID • CAS • Ja-Sig sponsored project • Originally produced at Yale • “Central Authentication Protocol” • CPIP • Sungard HE, Luminis Portal • “Campus Pipeline Integration Protocol • Apple iTunesU
“Two-step” SSO – OpenID Source: http://openid.net/about.bml