The SAML XML.org web site is not longer accepting new posts. Information on this page is preserved for legacy purposes only. For current information on SAML, please see the OASIS Security Services Technical Committee Wiki.

Welcome to SAML XML.org.

This is the official community gathering place and information resource for the SAML OASIS Standard. SAML provides an XML-based framework for creating and exchanging security information between online partners. This is a community-driven site, and the public is encouraged to contribute content.

Microsoft to test interoperability of identity protocol

Microsoft next month for the first time will participate in SAML 2.0 interoperability testing using its Geneva platform to test against other vendors' implementations of the open standard identity protocol. Microsoft will enter the testing, which has been sponsored by the Liberty Alliance since 2003, with the Beta 2 version of Geneva released last month. At that time, Microsoft said it would add certification for the Liberty Alliance implementation of SAML 2.0 when the final code of Geneva is released at the end of 2009.

Read more

Extension to RequestAbstractType

Hello there!

I am currently working on my Master thesis, where I am editing a SAML 2.0 implementation (simpleSAMLphp, but it's not relevant to the question, I think) and making an extension. To achieve my goals, I need to pass an Assertion containing an Authn Statement from one IdP (where the user authenticated himself) to another. I think the way to do this is using the defined "Extensions" field from "RequestAbstractType".

Read more

Ping Identity Launches SAML Endpoint Program

Ping Identity Corp. is offering a new end-to-end program designed to help companies speed the rollout of SSO (single sign-on) and identity-enabled Web services between their partners and customers. The approach basically lets core customers purchase PingFederate software on behalf of their partners and customers. The program aims to give Ping's enterrpise customers a low-cost and simple was to establish Internet identity connections with trusted parties, Ping officials said.

Read more

SecurityDomain attribute on NameIdentifier tag in SAML 1.1

Hi All,

Looking through SAML 1.1 samples in the Internet I found that many of them use SecurityDomain attribute on NameIdentifier tag to specify URL of security domain. But this attribute is missing in SAML 1.1 XSD (probably I cannot find it ?).

...

<saml:Subject>

    <saml:NameIdentifier Name="ED.TIM" SecurityDomain="nchelp.org/meteor" />

</saml:Subject>

Read more

Microsoft Releases Second Beta of Geneva

Microsoft on Monday launched the second beta of its claims-based identity management server platform, code-named "Geneva." The Geneva Server, previously referred to as the "Zermatt" project, runs a security token service that issues and transforms claims to help manage user identities for authentication...Geneva is a critical component in bridging Microsoft's cloud-based Azure Services Platform and its own Active Directory with other federated identity management platforms.

Read more

XML.org Focus Areas: BPEL | DITA | ebXML | IDtrust | OpenDocument | SAML | UBL | UDDI
OASIS sites: OASIS | Cover Pages | XML.org | AMQP | CGM Open | eGov | Emergency | IDtrust | LegalXML | Open CSA | OSLC | WS-I