Identity Standards
Information about Identity standards for SSO and Federation of identities (OpenID, Shibboleth, Liberty Alliance, SAML, CAS...)
This Wiki is about identity related specifications and standards for SSO systems and Identity federation and privacy data sharing (Liberty Alliance, OpenID, SAML, Shibboleth, CAS, WS-*...).
Google video: Introduction to digital identity
General information:
Blog FR: http://www.fredcavazza.net/index.php?2006/10/22/1310-quest-ce-que-lindente-numerique
Identity Corner: http://www.idcorner.org/
Concordia program (which focus on use-cases to look at how and where to use each specs):
http://wiki.projectliberty.org/index.php/Concordia
Oracle's blogs on Identity:
http://blogs.oracle.com/talkingidentity/
http://blogs.oracle.com/identityprivacy/
Identity Governance Framework proposal:
http://www.oracle.com/technology/tech/standards/idm/igf/index.html
Identity Landscape in 2006:
http://netmesh.info/jernst/Digital_Identity/three-standards.html
- SAML 2 (from OASIS, the link between last Generation of Liberty Alliance conformant systems and next generation 2 of Shibboleth)
FR: http://fr.wikipedia.org/wiki/SAML
EN: http://en.wikipedia.org/wiki/SAML
- Shibboleth: the federation format used in Higher Education
FR: http://fr.wikipedia.org/wiki/Shibboleth
EN: http://en.wikipedia.org/wiki/Shibboleth_%28Internet2%29
Google video:Introduction to Federated Access Management
- [Liberty Alliance]: include a very powerful system to share personal attributess in a secure way.
FR: http://fr.wikipedia.org/wiki/Liberty_Alliance
EN : http://en.wikipedia.org/wiki/Liberty_Alliance
IGF: http://www.oracle.com/technology/tech/standards/idm/igf/index.html
Oracle Identity Blog: http://blogs.oracle.com/identityprivacy/
Source: Liberty Alliance Project (http://www.projectliberty.org/index.php/liberty/specifications__1)
- MS CardSpace (formerly Infocard): a challenger include in .Net 3 framework.
EN: http://en.wikipedia.org/wiki/Windows_CardSpace
FR: http://www.microsoft.com/france/msdn/netframework/3/cardspace/introduction.mspx
- [OpenID]:
EN: http://en.wikipedia.org/wiki/OpenID
FR: http://fr.wikipedia.org/wiki/OpenID
http://openid.net/wiki/index.php/Libraries (C#, C++, Java, PHP, Perl, Python, Ruby, ColdFusion...)
http://openid.net/specs.bml (OpenID v2 support OASIS XRI)
http://simonwillison.net/2007/Mar/12/slidecast/
http://simonwillison.net/2007/Feb/25/six/ (6 cool things you could build with OpenID)
http://simonwillison.net/2006/openid-screencast/ (OpenID Screencast)
http://simonwillison.net/2007/openid-fowa/
http://www.bendodson.com/developer/news/2007/april/how-to-create-your-very-own-openid/
OpenID Europe: http://www.openideurope.eu/
Some OpenID Online Servers:
- https://www.myopenid.com/
- http://www.iamdentity.com/
- http://claimid.com/
- http://www.notsorelevant.com/2007-05-03/setting-up-your-own-openid-server/
Blog:
Sun Microsystems Announces OpenID Program: http://www.linux-mag.com/id/3192/
OpenID - one reason why single sign-on is risky: http://fm.schmoller.net/2007/05/openid_phishing.html
Identity Commons: http://wiki.idcommons.net/
Identity Commons working group:
Working Group | Charter Page | Home Page |
Identity Gang | ||
Internet Identity Workshop | ||
EUCLId | TBD |
Personal ressource identifier:
- OASIS XDI/XRI
EN: http://en.wikipedia.org/wiki/XDI
EN: http://en.wikipedia.org/wiki/XRI
FR: http://fr.wikipedia.org/wiki/XRI
iNames:
EN: http://en.wikipedia.org/wiki/I-name
FR: http://fr.wikipedia.org/wiki/I-name
SSO systems/specs:
- CAS (a SSO system)
FR : http://fr.wikipedia.org/wiki/Central_Authentication_Service
EN : http://en.wikipedia.org/wiki/Central_Authentication_Service
EIfEL has written an introduction to 'federation of services'.
The french version can be "downloaded here":
http://www.eife-l.org/publications/standards/identity/FederationdeServices.pdf
We hope to translate this document to english soon.
Liberty Quick Start
This tutorial was created for developers looking for a quick entry point.
(French comment: Présentation sous forme de slides de l'ensemble des spécifications et de l'approche de Liberty Alliance. A noter dans les slides p63 à p65 que l'on peut assimiler un outil de type ePortfolio à la fois à un Attribute Provider et à un Identity Service (voir notamment p65). Nous aurons donc à suivre les specs ID-SIS (ID-PersonalProfile et ID-EmployeeProfile) et ID-WSF (Security&Privacy).)
Liberty ID-WSF: A Web Services Framework (PDF) - 5/2004
This document provides and overview of the Liberty approach to Web Services.
White papers about Nokia and Liberty Alliance can be found here:
Nokia Whitepaper: Nokia Web Services – Helping operators mobilize the Internet:
http://www.projectliberty.org/liberty/content/download/401/2762/file/WS_Operators_A4_0408.pdf
Nokia White Paper - Nokia Web Services Framework for Devices:
http://www.projectliberty.org/liberty/content/download/400/2759/file/Web_Services_Nokia.pdf
An article in French:
Les enjeux de la gestion des identités (15 juin 2004)
http://www.zdnet.fr/entreprise/service-informatique/securite/0,50007195,39156886-1,00.htm

