Read Digital Edition


ADS BY GOOGLE
Top Three Links You Must Click On


Microsoft Backs Web Services-Federation Against SAML 2.0 For Identity Federation
Microsoft Won't Support SAML 2.0 for the Next Generation of Message-Based Applications

Microsoft will stick by the WS-Federation protocol for identity federation. The WS-Federation specification defines mechanisms to allow different security realms to federate by allowing and brokering trust of identities, attributes, authentication between participating Web services- a concept that includes single sign-on (SSO) for several different Web portals and secure transfers of data between partnered businesses.

Don Schmidt, senior program manager for Microsoft's Identity and Access group, gave a session on ADFS (Active Directory Federation Services), Microsoft's software for federated identity, at Microsoft's IT Forum 2005 in Barcelona. Microsoft has backed WS-Federation protocols for the next generation of message-based applications because it offers a full suite of security, message, and transaction protocols. The company's stance is not about which protocol set is necessarily better but rather which offers a wider flexibility in accommodating federated identity, he said.

The WS-Federation protocols compete with the SAML (Security Assertion Markup Language) 2.0 specification, which so far has strong footing in the race to create secured identity federation across organizations. SAML 2.0 is backed by consortiums such as the Liberty Alliance and the Organization for the Advancement of Structured Information Standards (OASIS).

SAML 2.0 protocols are fine for strictly Web single sign-on, Schmidt said, but the WS-Federation protocols are better equipped to deal with a distributed Web services environment for message reliability, transaction support and security; SAML 2.0 does not have reliable messaging or transaction support.

The problem for businesses is when they want to federate but have chosen a different set of protocols. Vendors are developing translators between the two standards, but Schmidt said those potentially could have a security problem since there a middle point where the data is processed, although he said he believes those systems will improve.

Microsoft will soon start shipping "a whole lot" of servers that use WS-Federation protocols, and those client computers will be compatible, Schmidt said.


About SOA News Desk
SOA World Magazine News Desk trawls the world of distributed computing and SOA-related developments for the latest word on technologies, standards, products, and services and brings key information to you in a timely and convenient summary form.

In order to post a comment you need to be registered and logged in.

Register | Sign-in

Reader Feedback: Page 1 of 1

Microsoft has decided to stick with the WS-Federation protocol for identity federation and not support the SAML 2.0 protocol. The reason for this decision is the wider flexibility and reliability offered by the former as against SAML 2.0, which does not support reliable messaging or transactions, said Don Schmidt, senior program manager for Microsoft's Identity and Access group.


  Subscribe to our RSS feeds now and receive the next article instantly!
In It? Reprint It! Contact advertising(at)sys-con.com to order your reprints!
Subscribe to the World's Most Powerful Newsletters


ADS BY GOOGLE
SYS-CON Events announced today that Yahoo!, a leading global Internet brand and one of the most traf...
Yahoo! is investing significantly in Cloud Computing to support the company's global applications an...
Oracle has announced the general availability of Oracle Service-Oriented Architecture (SOA) Suite 11...
Having used both sites for about two weeks, there is still a great deal I am learning to do with bot...
Citrix has released a public AMI ( Amazon Machine Image ) in the EC2 Cloud recently as part of the C...
A robust ecosystem of solutions providers is emerging around cloud computing.Here, SYS-CON's Cloud C...
With an ever-increasing number of companies now buying computing, storage, and networking power as t...
SYS-CON Events announced today the latest event in its innovative series of real-world technology co...
ESRI, the leader in geographic information system (GIS) technology, was selected as one of two final...
Aster is seeking to level the playing field on the data warehousing entry front, and that message sh...
"What's fueling the interest in RIA?" asked Regev Yativ, President & CEO of Magic Software Enterpris...
The concept was very well received by non-developer IT Pro's and developers that are experts in othe...
Why are we so confident about the first point? Because IMAP support in WebMail Pro now includes quot...
Business users already heavily rely on their BlackBerry smartphones for telephone and wireless email...
Mimosa Systems, a provider of next-generation email, file and SharePoint archiving solutions, today ...
Businesses need the latest technologies to help them meet their needs, support their goals and compe...
F5 Networks, Inc., a provider Application Delivery Networking (ADN), has announced integration betwe...
Comodo's free pc security software, Comodo Internet Security, has earned five stars, the maximum num...
As part of today's Oracle(R) Fusion Middleware 11g launch, Oracle announced that Oracle Fusion Middl...
With the advent of Cloud Computing, the cost of computation, application hosting and content storage...