The SAML XML.org web site is not longer accepting new posts. Information on this page is preserved for legacy purposes only. For current information on SAML, please see the OASIS Security Services Technical Committee Wiki.

Welcome to SAML XML.org.

This is the official community gathering place and information resource for the SAML OASIS Standard. SAML provides an XML-based framework for creating and exchanging security information between online partners. This is a community-driven site, and the public is encouraged to contribute content.

how to receive saml request

Hello,

how to setup simplesamlphp and create a php page (Service Provider) to receive a SAML 2.0 POST request ?

 

Also,my second question is below one:

"We would need to create the meta data file for the post request and  use the following php library to do the SAML Validation "

Can anyone please help me insight to accomplish these 2 tasks.

 

 Thanks in advance.

Parvendra

need help in SAML2.0 SP setup and metadata file creation

Hello,

I am new to SAML. And I got some work related to SAML2.0.Below are my requirements:

 

-------------------------------------

The basic need is for one of our php page (Service Provider) to receive a SAML 2.0 POST request as outlined in one of the document (from McKesson the Identity provider).

                There is no going back and forth with the customer’s site, once we get the post then we either pass or fail the request.

Read more

parvendra

need help in SAML2.0 SP setup and metadata file creation

Hello,

I am new to SAML. And I got some work related to SAML2.0.Below are my requirements:

 

-----------------------------------------------------------

The basic need is for one of our php page (Service Provider) to receive a SAML 2.0 POST request as outlined in one of the document (from McKesson the Identity provider).

 

Read more

Using Token Translation and SAML to Link Domains

Token translation using SAML is now quite an established way to allow applications in one security domain to communicate with applications in another security domain, on behalf of a user whole identity does not have to also flow with the data. For more info go to Vordel's government page and then click on "Secure Cross-Domain".

Read more

Signify's 2FA Hosted Service Provides Secure Access to SaaS Apps

As the demand for Software as a Service applications continues to grow, two-factor authentication (or "2FA") provider Signify (www.signify.net) has extended its 2FA hosted services to provide secure access to cloud-based applications including Salesforce.com and Google Apps. Two-factor authentication is becoming the de-facto standard for remote access to server-based business applications, yet most SaaS solutions still only provide authentication with static passwords that can be easily compromised, according to Signify's Wednesday announcement.

Read more

XML.org Focus Areas: BPEL | DITA | ebXML | IDtrust | OpenDocument | SAML | UBL | UDDI
OASIS sites: OASIS | Cover Pages | XML.org | AMQP | CGM Open | eGov | Emergency | IDtrust | LegalXML | Open CSA | OSLC | WS-I