Enterprise Sign On Engine: Open Source Single Sign On, Authorization and Federation
This presentation will introduce the Enterprise Sign On Engine project which has been released under an Apache 2.0 license at http://esoeproject.org
Specifically we'll cover the following:
* Our implementation of the SAML 2.0 spec in both Java and C++ and how we use this in all facets of the system to ensure secure transfer of all data
* ESOE's ability to do true SSO from the Windows desktop credentials to the web tier, as well as the support in place for all other users regardless of operating system to achieve cross application SSO.
* How ESOE uses a lighter weight XACML implementation we created dubbed 'LXACML' for authorization, how we go about defining system wide policies in easy to consume XML and how we do secure centralized decision making of all authorization requests for deployed services.
* ESOE's ability to understand and translate external authentication systems. We'll discuss how support for Shibboleth 1.3, Shibboleth 2.0, OpenID, Yahoo BB Auth and others is achieved by the ESOE without needing to modify applications, allowing true digital collaboration across organizational boundaries with absolute ease.
* Why we decided to make this solution open source and reasons for our choice of the Apache 2 license
Keywords: Java, C++, Apache 2.0 Licence
Mr Bradley Beddoes
Lead Software Architect, intient
|
Mr Andre Zitelli
Senior Programmer
|
Ref: OS7P0051