Single Sign-on Writ Large. What is OpenID?  Open, Decentralized single sign on standard  Allows users to use a single digital identity across multiple.

Slides:



Advertisements
Similar presentations
Yahoo! OpenID and OAuth 1 Allen Tom Yahoo! Membership Architect OpenID Foundation Board
Advertisements

22 May 2008IVOA Trieste: Grid & Web Services1 Alternate security mechanisms Matthew J. Graham (Caltech, NVO) T HE US N ATIONAL V IRTUAL O BSERVATORY.
OpenID & Information Card Profiles for ICAM John Bradley
Smartphone-based authorization system Advisor: Dr. Wenjun Zeng - Professor Presenter: Yilihamujiang, Ailiyasijiang Zhou, Guanlong Al-Sinani, H. S. (2011).
InfoCard and the Identity Metasystem Kim Cameron, Chief Architect of Identity Microsoft.
Brad Fitzpatrick Six Apart, Ltd. / LiveJournal / Danga August 2005.
7/11/2011Pomcor 1 Pros and Cons of U-Prove, Idemix and Other Privacy-Enhancing Technologies Francisco Corella Karen Lewison Pomcor.
Will Darby April  What is Federated Security  Security Assertion Markup Language (SAML) Overview  Example Implementations  Alternative.
Cross-linking Folksonomies Harith Alani. Multiple SNS Accounts del.icio.us.
‘Lord’ was a click away from £229m “They installed software on the company computers allowing them to steal [Sumitomo bank] staff user names and passwords”
By: Ansuya Chauhan.
And YADIS David Recordon Six Apart, Ltd. / LiveJournal.com / Danga Interactive, Inc. Parts of presentation stolen from Brad Fitzpatrick.
Experimental OpenID Service for DOEGrids Summer Student Program 2008 Jan Durand ESnet 08/06/08.
IdM & OpenID Present by Fangli cai Prantap Bedi. The need for IdM &OpenID As the world of e-business gains global acceptance, the traditional processes.
Mashing Up with User-Centric Identity America Online LLC John Panzer, Praveen Alavilli.
1 Higgins 1: a species of Tasmanian long-tailed mouse 2: the name of an open source collaboration of IBM, Novell, Oracle, Parity…
Introduction to OpenID Huanxing Shen WHIM 2009Spring.
Web Services Security Multimedia Information Engineering Lab. Yoon-Sik Yoo.
The Team Team consisted of 5 members. Max Annear – Henderson Conrad Orange Mike Debney Anton Slooten Luke Stanford.
OpenID And the Future of Digital Identity Alicia Bozyk April 1, 2008.
GRDevDay March 21, 2015 Cloud-based Identity for Applications.
Finalize RESTful Application Programming Interface (API) Security Recommendations Transport & Security Standards Workgroup January 28, 2014.
INF 123 SW ARCH, DIST SYS & INTEROP LECTURE 16 Prof. Crista Lopes.
Alumni Authentication… Explained Robert Scaysbrook – OpenAthens UK Account Manager.
Health IT RESTful Application Programming Interface (API) Security Considerations Transport & Security Standards Workgroup March 18, 2015.
Naam van de Auteur 7 januari 2008 Kennisnet Entree: federated authentication Pieter BruringTechnical Product Manager.
1 Confidential Authentication Session Hannes Tschofenig.
IDENTITY MANAGEMENT Hoang Huu Hanh (PhD), OST – Hue University hanh-at-hueuni.edu.vn.
SIP Authorization Framework Use Cases Rifaat Shekh-Yusef, Jon Peterson IETF 91, SIPCore WG Honolulu, Hawaii, USA November 13,
Infrastructure for Secure Sharing Between Picture Archiving and Communication System and Image enabled Electronic Health Records Krupa Anna Kuriakose MASc.
What makes users refuse web single sign-on? An empirical investigation of OpenID S.-T. Sun, E. Pospisil, I. Muslukhov, N. Dindar, K. Hawkey, and K. Beznosov.
Web Services Security. Introduction Developing standards for Web Services security – XML Key Management Specification (XKMS) – XML Signature – XML Encryption.
Identity Management Report By Jean Carreon and Marlon Gonzales.
Web 2.0: Concepts and Applications 6 Linking Data.
IIW 2008b Report November , Mountain View Abbie Barbir Nortel OASIS IDtrust Steering.
Lecture 23 Internet Authentication Applications modified from slides of Lawrie Brown.
Security and Information Assurance UC San Diego CSE 294 Winter Quarter 2008 Barry Demchak.
Openid Connect
Authority of Information Technology Application National Center of Digital Signature Authentication Ninh Binh, June 25, 2010.
May 7, 2013 CEOS WGISS-35 Meeting 1 GEOSS Authentication and Single Sign-On Steven F. Browdy OMS Tech, Inc. IEEE.
OSP324. Active Directory User directory synchronization User single-sign on Client distribution Availability monitoring User directory synchronization.
Fall 2010/Lecture 321 CS 426 (Fall 2010) Key Distribution & Agreement.
Development Process Agile/XP Planning + Issue Tracking Google Code provided efficient + effective project management Bug and defect reports Project planning.
David Recordon IOS Vancouver 2006.
Federated Authentication at NIH: Trusting External Credentials at Known Levels of Assurance Debbie Bucci and Peter Alterman November, 2009.
Review Of Single Sign On Systems Mansee A. Mongia 05 th March,2008.
All Rights Reserved 2014 © CMG Consulting LLC Federated Identity Management and Access Andres Carvallo Dwight Moore CMG Consulting, LLC October
January 19-21, 2011 Washington, D.C. GEOSS Data Sharing Task Force 2011 Scoping Meeting 1 GEOSS Data CORE and the GCI User Registration.
Adxstudio Portals Training
External Messaging Services. Page 2 External Messaging: Extends the power of Presence and Instant Messaging outside corporate Network Provided only to.
Uploading Web Page  It would be meaningful to share your web page with the rest of the net user.  Thus, we have to upload the web page to the web server.
Overview of XRI, XDI, I-Names, and OpenID Collaborative Expedition Workshop: Exploring the Potentials and Realities of the Identity Management Landscape.
General Overview of Various SSO Systems: Active Directory, Google & Facebook Antti Pyykkö Mikko Malinen Oskari Miettinen.
OpenID Connect: An Overview Pat Patterson Developer Evangelist Architect
Web 2.0: Concepts and Applications 6 Linking Data.
11 | Managing User Info Jeremy Foster Michael Palermo
Access Policy - Federation March 23, 2016
Earthdata Login and Open ID A Look at Federated User Identities
Federation made simple
OMG, Another Simple, Lightweight Authentication Service???
By: Michael Meehan & Robert Shogren ITEC December 4, 2007
Web Services Security.
OpenID Connect Working Group
Authentication Protocol
NextGen Access Control Platform
OpenID Connect Working Group
Levels of Organisation. YouTube Video – Levels of Organisation
Authorization Made Simple….Sort of
07 | Introduction to Authentication
WEB PAGES AND WEB SITES.
Presentation transcript:

Single Sign-on Writ Large

What is OpenID?  Open, Decentralized single sign on standard  Allows users to use a single digital identity across multiple sites  Identity is represented by a URL or XRI

Who Supports OpenID?  Yahoo  Google  AOL  VeriSign  BBC  Microsoft  LiveJournal.com  SourceForge.NET

Brief History  Developed May 2005 by Brad Fitzpatrick while at LiveJournal  1.o specification finalized March 2006 as part of the Yadis project  Major Industry players announce support for OpenID

Glossary  End-user  Person seeking to assert identity to a site  Identifier  URL or XRI chosen by end-user  Identity Provider\OpenID Provider  Service provider who authenticates user and registers identifiers  Relying Party  Site seeking to authenticate End-user  Server\Server-Agent  Server verifying end-users identifier  User Agent  Program used to access Identity provider or relying party  eXtensible Resource Identifier (XRI)  Scheme and Resolution Protocol for Abstract compatible with URI’s

Login Process  Video Explanation Video Explanation

References  YouTube Video ( qEk) YouTube Video ( qEk .NET Slave ( implementation-in-Csharp-and-ASPNET.aspx)  WikiPedia (  OpenID.NET (  DotNetOpenID at Google Code (