[Design of JBoss Identity] - Re: SAML Assertions (JBossESB)
by anil.saldhana@jboss.com
"jkurtz.wa(a)gmail.com" wrote : All
|
| I would like to begin the design process to empower JBoss ESB messages to use SAML assertions. The first step would be to develop a set of requirements based on the JBoss ESB architecture and the SAML Standard.
|
| If we can refine these requirements and create test cases, we maybe able to submit them to be used as Compliance Tests - tests that demonstrate our application adheres to the SAML standard. XACML, another OASIS standard (but for authorization), has these and it helps development and insures credibility.
|
| I will get some requirements together and post them here. We can try to get at least the basic ones down and then try to design something. We should try to look into using new technology like SMOOKs and Drools to work with the SAML Assertion's XML and apply business rule. Open SAML is ok, but it is dated.
|
| John L Kurtz
I somehow get the idea, you are lost in the wilderness, John. :)
I am referring to OpenSAML v2 (latest is v2.2). It is the most up to date open source implementation of the saml v2 specification.
View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4194700#4194700
Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4194700
17 years, 4 months
[Design of JBoss Identity] - SAML Assertions (JBossESB)
by jkurtz.wa@gmail.com
All
I would like to begin the design process to empower JBoss ESB messages to use SAML assertions. The first step would be to develop a set of requirements based on the JBoss ESB architecture and the SAML Standard.
If we can refine these requirements and create test cases, we maybe able to submit them to be used as Compliance Tests - tests that demonstrate our application adheres to the SAML standard. XACML, another OASIS standard (but for authorization), has these and it helps development and insures credibility.
I will get some requirements together and post them here. We can try to get at least the basic ones down and then try to design something. We should try to look into using new technology like SMOOKs and Drools to work with the SAML Assertion's XML and apply business rule. Open SAML is ok, but it is dated.
John L Kurtz
View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4194671#4194671
Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4194671
17 years, 4 months