欢迎大家赞助一杯啤酒🍺 我们准备了下酒菜:Formal mathematics/Isabelle/ML, Formal verification/Coq/ACL2, C++/F#/Lisp
OpenSSO
第4行: | 第4行: | ||
OpenSSO embeds [[OpenDS]] as its configuration repository | OpenSSO embeds [[OpenDS]] as its configuration repository | ||
+ | |||
+ | [[OpenESB]] uses OpenSSO for Web service security | ||
+ | |||
+ | [[OpenPortal]] integrates with OpenSSO for single sign-on | ||
[[Image:identity-services-architecture.jpg|thumb|right|basic architecture of identity services]] | [[Image:identity-services-architecture.jpg|thumb|right|basic architecture of identity services]] | ||
==Install== | ==Install== |
2009年1月17日 (六) 14:48的版本
OpenSSO based on the code base of Sun Java System Access Manager
OpenSSO embeds OpenDS as its configuration repository
OpenESB uses OpenSSO for Web service security
OpenPortal integrates with OpenSSO for single sign-on
目录 |
Install
事先安装好 OpenDS 目录服务, Using OpenDS as a user data store for OpenSSO
下载获得 opensso.war, 部署到 GlassFish 上
通过 http://localhost:8080/opensso 进行配置, 出错
Installing embedded config in :/home/allen/opensso/opends...Done Creating FAM suffix...Done "Loading Schema:"am_sm_ds_schema.ldif...Success. "Loading Schema:"am_remote_opends_schema.ldif...Success. "Loading Schema:"fam_sds_schema.ldif...Success. Register service:amEntrySpecific.xml Status: Failed Please check the server logs: /home/allen/opensso/opensso/debug
To fix the above error, please do the following :
1. Change jvm-options from “-client” to “-server”in domain.xml
2. Change jvm-options from -Xmx512m to -Xmx1024m in domain.xml
Then remove the configuration directory /home/allen/opensso and re-run the OpenSSO configurator.
Key Features
- Single sign-on (SSO)
- Centralized authorization services
- Federated Identity support
- J2EE architecture and comprehensive APIs
- Enterprise-class scalability and reliability
- Real-time audit
Supported standards
- Java Authentication and Authorization Service (JAAS)
- Kerberos
- Lightweight Directory Access Protocol (LDAP)
- Liberty ID-FF
- Liberty Identity Web Services Framework (ID-WSF)
- SAML
- SOAP
- Secure Sockets Layer (SSL)
- WS-I Basic Security Profile tokens
- XML Digital Signature
- XML Encryption
Supported authentication modules
- Active Directory
- Anonymous
- Certificate
- HTTP Basic
- Java Database Connectivity (JDBC)
- LDAP
- Membership
- Mobile Subscriber ISDN (MSISDN)
- Password Playback
- RADIUS
- SafeWord
- SAML
GlassFish
Solaris|OpenDS|GlassFish|OpenSSO - A Perfect Union
Docs
- Securing Applications With Identity Services, Part 1: Authentication
- Securing Applications With Identity Services, Part 2: Authorization
- Securing Applications With Identity Services, Part 3: User Attributes
Links
- https://opensso.dev.java.net/
- http://wikis.sun.com/display/OpenSSO
- http://docs.huihoo.com/opensso/
- http://download.huihoo.com/opensso/
- OpenSSO Agent for SJS AS 8.2 (and soon for GlassFish) - http://blogs.sun.com/page/theaquarium?anchor=opensso_agent_for_sjs_as