Enterprise Sign On Engine: Open Source Single Sign On, Authorization and Federation

By:
Mr Bradley Beddoes,
Mr Andre Zitelli
To add a paper, Login.

This presentation will introduce the Enterprise Sign On Engine project which has been released under an Apache 2.0 license at http://esoeproject.org

Specifically we'll cover the following:
* Our implementation of the SAML 2.0 spec in both Java and C++ and how we use this in all facets of the system to ensure secure transfer of all data

* ESOE's ability to do true SSO from the Windows desktop credentials to the web tier, as well as the support in place for all other users regardless of operating system to achieve cross application SSO.

* How ESOE uses a lighter weight XACML implementation we created dubbed 'LXACML' for authorization, how we go about defining system wide policies in easy to consume XML and how we do secure centralized decision making of all authorization requests for deployed services.

* ESOE's ability to understand and translate external authentication systems. We'll discuss how support for Shibboleth 1.3, Shibboleth 2.0, OpenID, Yahoo BB Auth and others is achieved by the ESOE without needing to modify applications, allowing true digital collaboration across organizational boundaries with absolute ease.

* Why we decided to make this solution open source and reasons for our choice of the Apache 2 license


Keywords: Java, C++, Apache 2.0 Licence
Stream: Java
Presentation Type: 30 minute Presentation in English
Paper: Enterprise Sign On Engine


Mr Bradley Beddoes

Lead Software Architect, intient
Brisbane, QLD, AUSTRALIA


Mr Andre Zitelli

Senior Programmer
Brisbane, QLD, AUSTRALIA


Ref: OS7P0051