The SAML XML.org web site is not longer accepting new posts. Information on this page is preserved for legacy purposes only. For current information on SAML, please see the OASIS Security Services Technical Committee Wiki.

Welcome to SAML XML.org.

This is the official community gathering place and information resource for the SAML OASIS Standard. SAML provides an XML-based framework for creating and exchanging security information between online partners. This is a community-driven site, and the public is encouraged to contribute content.

idle timeout?

Hi!

Is logout due to idle timeout a part of SAML. I read the specs, and it only says that single logout can be initiated due to timeout, but how would that really work? Wouldn't the IdP have to ask every SP if they agree to logout the user due to timeout? 

Feide RnD

Federated Command Line Client Authentication with SimpleSAMLphp and OAuth

I’ve added OAuth support in a module in SimpleSAMLphp and made a proof of concept demo on how to perform authentication initiated from a command line client.

Read more: 

https://rnd.feide.no/content/federated-command-line-client-authenticatio...

The background

Read more

myOneLogin: Single Sign-On for the Cloud

Essentially, myOneLogin is a hosted service that customers can use for their own systems without installing any additional hardware or software on-site or on their devices. Although the service can work with any behind-the-firewall browser-based application, its true potential is in providing SSO services to new hosts of cloud-based applications that are sneaking their way into the enterprise today.

Read more

Pronto Software for SharePoint User Access Management Released

Pronto is a web based user access management software solution that plugs into an existing Microsoft SharePoint 2007 server and provides a comprehensive path to streamlining the process of managing users for access to different SharePoint 2007 sites with one or more site owners.

Read more

Microsoft and security: 'steady as she sails'

...Microsoft is supporting “claims-based” authentication, in which users can gain access to systems using “claims” about their identity that are issued and signed by recognised organisations, either within the same corporate entity or by an external entity. This approach integrates Microsoft's own technology such as InfoCards and open standards such as SAML assertions. However, Microsoft is not yet going as far as to adopt SAML protocols for web security.

Read more

XML.org Focus Areas: BPEL | DITA | ebXML | IDtrust | OpenDocument | SAML | UBL | UDDI
OASIS sites: OASIS | Cover Pages | XML.org | AMQP | CGM Open | eGov | Emergency | IDtrust | LegalXML | Open CSA | OSLC | WS-I