Note that there are some explanatory texts on larger screens.

plurals
  1. POEnterprise SSO & Identity management / recommendations
    text
    copied!<p>We've <a href="https://stackoverflow.com/questions/780490/identity-management-sso-solution">discussed</a> SSO before. I would like to re-enhance the conversation with defined requirements, taking into consideration recent new developments.</p> <p>In the past week I've been doing market research looking for answers to the following key issues:</p> <p>The project should should be:</p> <h3>Requirements</h3> <ul> <li>SSO solution for web applications.</li> <li>Integrates into existing developed products.</li> <li>has Policy based password security (Length, Complexity, Duration and co)</li> <li>Security Policy can be managed using a web interface.</li> <li>Customizable user interface (the password prompt and co. screens).</li> <li>Highly available (99.9%)</li> <li>Scalable.</li> <li>Runs on Red Hat Linux.</li> </ul> <h3>Nice to have</h3> <ul> <li>Contains user Groups &amp; Roles.</li> <li>Written in Java.</li> <li>Free Software (open source) solution.</li> </ul> <p>None of the solutions came up so far are "killer choice" which leads me to think I will be tooling several projects (OWASP, AcegiSecurity + X??) hence this discussion.</p> <p>We are ISV delivering front-end &amp; backend application suite. The frontend is broken into several modules which should act as autonomous unit, from client point of view he uses the "application" - which leads to this discussion regrading SSO.</p> <p>I would appreciate people sharing their experience &amp; ideas regarding the appropriete solutions.</p> <p>Some solutions are interesting</p> <ul> <li><a href="http://www.jasig.org/cas" rel="nofollow noreferrer">CAS</a></li> <li><a href="http://www.sun.com/software/products/opensso_enterprise/index.xml" rel="nofollow noreferrer">Sun OpenSSO Enterprise</a></li> <li><a href="http://www.jboss.org/community/wiki/JBossIdentityIDM" rel="nofollow noreferrer">JBoss Identity IDM</a></li> <li><a href="http://www.josso.org" rel="nofollow noreferrer">JOSSO</a></li> <li><a href="http://www-01.ibm.com/software/tivoli/products/access-mgr-esso/" rel="nofollow noreferrer">Tivoli Access Manager for Enterprise Single Sign-On</a></li> </ul> <p>Or more generally speaking <a href="http://www.manageability.org/blog/stuff/single-sign-on-in-java" rel="nofollow noreferrer">this list</a></p> <p>Thank you, Maxim.</p>
 

Querying!

 
Guidance

SQuiL has stopped working due to an internal error.

If you are curious you may find further information in the browser console, which is accessible through the devtools (F12).

Reload