<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Layer 7 - Blogs &#187; SAML</title>
	<atom:link href="http://www.layer7tech.com/blogs/index.php/tag/saml/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.layer7tech.com/blogs</link>
	<description>API Management &#124; SOA Governance &#124; Cloud Integration</description>
	<lastBuildDate>Fri, 24 May 2013 21:23:03 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>New White Paper: Federated Identity &amp; Single Sign-On Using Layer 7</title>
		<link>http://www.layer7tech.com/blogs/index.php/new-white-paper-federated-identity-single-sign-on-using-layer-7/</link>
		<comments>http://www.layer7tech.com/blogs/index.php/new-white-paper-federated-identity-single-sign-on-using-layer-7/#comments</comments>
		<pubDate>Fri, 03 Feb 2012 17:00:06 +0000</pubDate>
		<dc:creator>Sam Macklin</dc:creator>
				<category><![CDATA[Identity]]></category>
		<category><![CDATA[OAuth]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[White Papers]]></category>

		<guid isPermaLink="false">http://www.layer7tech.com/blogs/?p=1145</guid>
		<description><![CDATA[Increasingly, enterprise IT is characterized by SaaS, Cloud, SOA and all sorts of other technologies that bridge organizational boundaries and – consequently – identity domains. When users from various domains have diverse collections of credentials for systems spanning the extended enterprise and Cloud, management and security concerns inevitably arise. Identity federation is the key to [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.layer7tech.com/library/white-papers/federated-identity-single-signon-using-layer-7/2205" target="_blank"><img class="alignleft size-full wp-image-1153" style="margin: 10px;" title="Identity Federation White Paper" src="http://www.layer7tech.com/blogs/wp-content/uploads/2012/02/federated-identity-white-paper-v3.jpg" alt="Identity Federation White Paper" width="196" height="250" /></a>Increasingly, enterprise IT is characterized by SaaS, Cloud, SOA and all sorts of other technologies that bridge organizational boundaries and – consequently – identity domains. When users from various domains have diverse collections of credentials for systems spanning the extended enterprise and Cloud, management and security concerns inevitably arise.</p>
<p><a href="http://www.layer7tech.com/library/white-papers/federated-identity-single-signon-using-layer-7/2205" target="_blank">Identity federation</a> is the key to addressing these concerns. A lot of people assume identity federation is the same thing as Single Sign-On (SSO), where a single identity is used to authenticate a user across multiple services, applications and platforms. In fact, SSO is just one piece of the identity federation puzzle, albeit an important one.</p>
<p>Our new white paper, <a href="http://www.layer7tech.com/library/white-papers/federated-identity-single-signon-using-layer-7/2205" target="_blank"><strong>Federated Identity &amp; Single Sign-On Using Layer 7</strong></a>, examines <em>all</em> the key pieces of this puzzle. It takes a detailed overview of the technologies that can be used to merge separate “identity silos” into a centralized, authoritative identity store (SAML, STS, OAuth etc.) It also explains how our products can be used to implement these technologies.</p>
<p><a href="http://www.layer7tech.com/dl/download.php?docid=312&amp;doc_name=Federated%20Identity%20+%20SSO%20Using%20Layer%207" target="_blank"><strong>For more information, read Federated Identity &amp; Single Sign-On Using Layer 7</strong></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.layer7tech.com/blogs/index.php/new-white-paper-federated-identity-single-sign-on-using-layer-7/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>OAuth 2.0 with Layer 7 Gateways, Tutorial 4: The SAML Grant Type</title>
		<link>http://www.layer7tech.com/blogs/index.php/oauth-2-0-with-layer-7-gateways-tutorial-4-the-saml-grant-type/</link>
		<comments>http://www.layer7tech.com/blogs/index.php/oauth-2-0-with-layer-7-gateways-tutorial-4-the-saml-grant-type/#comments</comments>
		<pubDate>Mon, 19 Dec 2011 17:00:02 +0000</pubDate>
		<dc:creator>Francois Lascelles</dc:creator>
				<category><![CDATA[API]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[OAuth]]></category>
		<category><![CDATA[OAuth 2.0 with Layer 7 Gateways]]></category>
		<category><![CDATA[SAML]]></category>
		<category><![CDATA[Web API]]></category>

		<guid isPermaLink="false">http://www.layer7tech.com/blogs/?p=990</guid>
		<description><![CDATA[As promised, here’s another of my weekly tutorial videos on how Layer 7’s OAuth Toolkit can be used to leverage the many grant types and use cases supported by the OAuth 2.0 standard. I’m glad to report that there has been a lot of interest in this series of videos. We get queries about OAuth [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.youtube.com/watch?v=_18PO354zVw&amp;feature=channel_video_title" target="_blank"><img class="alignleft size-full wp-image-993" style="margin-top: 10px; margin-bottom: 10px;" title="OAuth SAML Grant Type Tutorial" src="http://www.layer7tech.com/blogs/wp-content/uploads/2011/12/SAML-Grant-Type.jpg" alt="OAuth SAML Grant Type Tutorial" width="300" height="127" /></a>As promised, here’s another of my weekly tutorial videos on how Layer 7’s <a href="http://www.layer7tech.com/products/oauth-toolkit" target="_blank">OAuth Toolkit</a> can be used to leverage the many grant types and use cases supported by the OAuth 2.0 standard. I’m glad to report that there has been a lot of interest in this series of videos. We get queries about OAuth just about every day, so enterprise architects clearly see this emerging standard as a potentially powerful tool for controlling access to APIs.</p>
<p>For those of you who haven’t seen <a href="http://www.layer7tech.com/blogs/index.php/category/oauth-2-0-with-layer-7-gateways/" target="_blank">my previous OAuth 2.0 tutorials</a>, I should explain that the OAuth Toolkit provides a number of OAuth template implementations that can be imported into our Gateways in order to apply OAuth. This template integrates into existing environments by connecting with identity providers and APIs.</p>
<p>This week, I’m explaining the OAuth 2.0 SAML grant type. This grant type is defined in an OAuth extension specification (<a href="http://tools.ietf.org/html/draft-ietf-oauth-saml2-bearer-09" target="_blank">draft-ietf-oauth-saml2-bearer-09</a>), which defines another grant type not included in the core OAuth specification. This grant type describes how a client application uses a SAML bearer assertion to obtain an OAuth access token.</p>
<p>Although this specification does not describe how the client application obtains the SAML assertion in the first place, the tutorial does use a test application to provide an example in which the user is forwarded to a SAML identity provider which authenticates the user, issues a SAML assertion and redirects the user back to the application. The application then uses this redirected SAML assertion to obtain an access token from the Layer 7 Gateway’s OAuth authorization server endpoint.<strong></strong></p>
<p><strong>Tutorial 4: The SAML Grant Type</strong><br />
<iframe width="576" height="324" src="http://www.youtube.com/embed/_18PO354zVw?wmode=transparent" frameborder="0" allowFullScreen> </iframe></p>
]]></content:encoded>
			<wfw:commentRss>http://www.layer7tech.com/blogs/index.php/oauth-2-0-with-layer-7-gateways-tutorial-4-the-saml-grant-type/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
