advertisement
javaboutique
Search Tips
Articles  |   Tutorials  |   Reviews  |   Tools  |   by Category  |   by Date  |   by Name  |   Submit  |   Source  |   Forums  |  
javaboutique
Browse DevX


Partners & Affiliates











advertisement

Tutorials : Identity Management Made Easy with OpenSSO :

Exploring Identity Services

The Access Manager leverages industry standards including HTTP, XML, Simple Object Access Protocol (SOAP) in lieu with Web Services Definition Language (WSDL), Security Assertions Markup Language (SAML), the Liberty Alliance Project for federation, and Web Services for identity management. In this section, you'll learn about the identity services offered by FAM via SOAP. You can view the WSDL files by pointing the browser to the respective service. For example, IdentityServices.wsdl can be located at:
http://localhost:9080/fam/identityservices/IdentityServices?WSDL
The main operations of identity services are Authentication, Authorization, Attributes, and Logging. These operations are the backbone of single sign-on paradigm and access management. In a simple scenario, the user authenticates using credentials like a username and password, the result of a successful authentication is the creation of a sessionId or session token for the user. This token is stored as a cookie or passed along with URL as parameters. Below is an example of an authentication request/response using SOAP showing the entire process:


Figure 11. An Authentication Request/Response Using SOAP

The Session Token becomes the basis for exchanging proof of authentication. For example, to request authorization for the resource you intend to protect via TestPolicy, the client needs to furnish the proof of authentication as a part of authorization request. The following example of a request/response using SOAP shows the authorization process:


Figure 12. A Request/Response Using SOAP

And finally, the following example shows the operation related to user attributes or profile attributes in a given session token.


Figure 13. The Operation in a Given Session Token

Conclusion

This article covered the basic facilities provided by OpenSSO pertaining to identity management and access management. More information is available from the following links:

Acknowledgements

Thanks to Ron Gates for proofreading this article.

Thribhuvan Thakur is a senior software engineer and Technical Lead at Southwest Airlines with 12 years of experience in design and development in J2EE. He has been working with Java since its inception, and with JMS since 1999. Thakur is a Sun Certified Java Programmer, Sun Certified Java Developer, and Sun Certified J2EE Architect. He holds a Masters in Computer Science from the University of North Texas.

How to Add Java Applets to Your Site

New on the Java Boutique:

New Review:

Time Management Made Easy with the Quartz Enterprise Job Scheduler
Why not just use the Java timer API? This open source scheduling API boasts simplicity, ease-of-integration, a well-rounded feature set, and it's free!

New Applet:

Reverse Complement
Reverse Complement is a simple applet that converts DNA or RNA sequences into three useful formats.

Elsewhere on internet.com:

WebDeveloper Java
Lots of Java information on webdeveloper.com

WDVL Java
Thorough Java resource at the Web Developer's Virtual Library.

ScriptSearch Java
Hundreds of free Java code files to download.

jGuru: Your View of the Java Universe
Customizable portal with online training, FAQs, regular news updates, and tutorials.

 Microsoft Visual Studio 2010 Showcase
 Avaya Developer Showcase
 MSDN Spotlight
 PHP for Windows Showcase
XML error: undefined entity at line 39
advertisement
Receive Articles via our XML/RSS feed
Receive Articles via our XML/RSS feed

JavaBytes
Internet Cyclone
This powerful, easy-to-use, internet optimizer is for Windows 95, 98, ME, NT, 2000 and XP. It's designed to automatically optimize your Windows settings, boosting your Internet connection up to 200%.

Windows 7: From Beta to Final Code in One Year
Google Shows Off Chrome OS, Releases Source
Microsoft Shows Off Silverlight 4, IE9 Plans
Metasploit Expands Vulnerability Test Framework
HyperCard Reborn?
Fedora 12 Takes Aim at Linux Networking
Top Supercomputer Nearly Doubles in Speed
Fedora 12 Linux Tackles Virtualization
Apple Gives iPhone Developers App Status Tracker
Novell Sets OpenSUSE 11.2 Free

Creating Custom Export Filters for StarOffice with XSLT
WPF Wonders: Using DataTemplates
Crystal Reports Family Offers Options for Developers
Avaya Aura Session Manager video
Avaya Aura Overview video
Exploring HTML 5's Audio/Video Multimedia Support
Overriding Virtual Functions? Use C++0x Attributes to Avoid Bugs.
Understanding the Cloud Computing Security Vulnerabilities
Cisco and IBM Target a Greener World
Upgrade to Visual Studio 2010 with the Ultimate Offer

Advertising Info  |   Member Services  |   Contact Us  |   Help  |   Feedback  |   Site Map  |   Network Map  |   About

internet.commediabistro.comJusttechjobs.comGraphics.com

Search:

WebMediaBrands Corporate Info

Legal Notices, Licensing, Permissions, Privacy Policy.
Advertise | Newsletters | Shopping | E-mail Offers | Freelance Jobs