Configuration and Metadata Certificate Changes

English on August 7th, 2016 No Comments

Applies to the Public IDP. Not to our IDPee offerings. Update: Public IDP Metadata will be replaced during a maintenance window at the weekend of 13/14th August 2016. We do not expect downtime but there may be some changes needed at your service provider. SSOCircle Root CA certificate used for client certificate authentication will also […]

Tags: , , , ,

Microsoft Office365 SAML Vulnerability: Authentication Bypass

English on April 30th, 2016 No Comments

The vulnerability in the Microsoft Office 365 SAML implementation, published last week, dramatically underlines how important it is to handle account federations with due diligence. In the light that such a drastic authentication bypass can happen, not only at a small SaaS and cloud player, but at a provider of the size and importance of […]

Tags: , , , , ,

Test your SAML Service Provider from the Command Line

English on March 14th, 2016 No Comments

cURL and wget – these tools tend to be of great value when a developer starts programming against a new API. With OAuth, you need to get an access token from one API and query another API for the actual data. Seeing the requests at the command line helps understanding the protocols and errors that […]

Tags: , , , ,

User attributes in the SAML assertion

English on November 30th, 2012 No Comments

It is nothing really new, but it was a missing feature in the administration GUI of our Public IDP: Configuring which user profile attributes should be sent as an AttributeStatement in a SAML assertion. The feature has always been there, but administrators had to open a service request to have attributes configured. Now, you can […]

Tags: , , ,

Securing Google Apps/Gmail – Part I

English on January 22nd, 2012 No Comments

In December Google announced the availability of SAML SSO and other APIs within the free edition of Google Apps. SAML was already introduced for the premium/business and educational versions back in 2007. But now you can benefit from this feature to make access to all versions of Google Apps more secure. This article has two […]

Tags: , , , , , , , ,

ServiceNow SAML SSO Online Demo

English on November 27th, 2011 No Comments

It is already a year ago when we published the article “Service-now.com: On Demand IT Service Management supports SAML 2.0” which ended with the sentence “Looking forward for more to come …” One year after we have set up an online demo showcasing SAML single sign on between SSOCircle and ServiceNow. With Google Apps offering […]

Tags: , , , ,

Service-now.com: On Demand IT Service Management supports SAML 2.0

English on November 29th, 2010 No Comments

ITIL v3 + Web 2.0 + SaaS = Service-now.com, a pioneer of On Demand IT Service Management combines ITIL v3 guidelines with Web 2.0 technology to a Software as a Service offering. As we have seen in many cases customers of SaaS providers are increasingly asking for identity and access management features for convenience and security. To […]

Tags: , , , , ,

Integrate your Seam application with SSOCircle

English on March 22nd, 2010 No Comments

As part of project PicketLink Marcel Kolsteren, Seam Integration Lead, developed a  module that allows developers to easily connect their seam application to external identity providers. The module supports SAML and OpenID. It also  ships with an out-of-the box integration with SSOCircle.  You will find a preconfigured saml-entities.xml file which includes the meta data for […]

Tags: , , , , ,

OpenID functionality updated

English on June 30th, 2007 No Comments

SSOCircle the first Identity Provider supporting SAML 2.0 and OpenID protocols now includes attribute exchange through OpenID Simple Registration Extension. You are now able to share profile attributes ( like name or email address ) between the IDP and the Relying Party. You will be asked to confirm the transfer of attributes as soon as […]

Tags: , ,

New Download Service Provider

English on March 4th, 2007 No Comments

You can now download a sample SAML 2.0 service provider and install it in your web server. The sample is a static linked C executable which is preconfigured to use SSOCircle as an IDP. You just need a few steps to adopt it to your site. The steps are outlined in solutions. The download service […]

Tags: , , , , , ,