Shibboleth is an open source single sign-on system that enables secure access to resources across organizational boundaries. It allows users to sign in once with their institutional credentials to gain access to multiple resources.
Open source single sign-on system for secure access to resources across organizational boundaries, allowing users to sign in once with institutional credentials to gain access to multiple resources.
What is Shibboleth?
Shibboleth is an open source single sign-on system designed for educational institutions and organizations. It provides a federated identity framework that enables secure access to resources across organizational boundaries.
Here are some key features of Shibboleth:
Allows users to sign in once with their institutional credentials to gain access to multiple resources and services instead of having separate logins.
Implements security standards like SAML and OpenID Connect for authentication and authorization.
Enables sharing of attributes about a user between identity providers and service providers in a privacy-preserving manner.
Highly flexible and works across platforms and programming languages.
Wide adoption in academia and research organizations.
Some common uses of Shibboleth include controlling access to licensed library resources, protecting internal applications, enabling collaboration with external partners, and providing identity services to service providers. Its decentralized nature makes it suitable for federating disparate systems.
Overall, Shibboleth is a mature, standards-based solution for single sign-on, authorization and federated identity management across organizations.
Shibboleth Features
Features
Federated identity management
Single sign-on
Access control
Standards-based (SAML, OpenID Connect)
Integrates with LDAP and Active Directory
Supports multi-factor authentication
Customizable login and error pages
Auditing and logging capabilities
Pricing
Open Source
Pros
Increased security
Simplified login process
Reduced IT costs
Standards compliance
Open source with community support
Highly customizable and extensible
Cons
Complex installation and configuration
Requires coordination between identity providers and service providers
10Duke Identity Provider is an open source identity and access management (IAM) solution designed to help organizations manage user identities and control access to applications and resources. It allows single sign-on (SSO) by integrating with various applications and services using federated identity standards like SAML, OAuth, and OpenID Connect.As an...
Centrify is an enterprise identity and access management solution used by organizations to secure access to infrastructure, DevOps, cloud, and other modern application environments. It provides the following key capabilities:Centralized access control and single sign-on (SSO) using standards like SAML, OpenID Connect, OAuth, and FIDOMulti-factor authentication (MFA) and adaptive authentication...
LemonLDAP::NG is an open source single sign-on and access management solution developed in Perl. It provides a centralized authentication server that allows users to sign in once and access multiple applications and services without having to log in again.Some key features of LemonLDAP::NG include:Single sign-on (SSO) - Users sign in...
SimpleSAMLphp is an open-source PHP application that allows organizations to set up a SAML-based single sign-on identity provider. It supports SAML 1.1 and SAML 2.0 protocols to enable federated authentication between applications or organizational domains.Some key capabilities and use cases of SimpleSAMLphp include:Enabling single sign-on across various web applications like...
OpenAM is an open source access management and federation software platform used by organizations to ensure appropriate access to resources across modern heterogeneous IT environments. It enables users to authenticate once and gain access to multiple applications and systems.Some key capabilities and benefits of OpenAM include:Single sign-on (SSO) - Users...
LoginRadius is a customer identity and access management (CIAM) platform designed to secure, manage and control access to web, mobile and IoT applications. It provides a unified interface to handle user registration, authentication, single sign-on (SSO), user management, analytics and more across devices and platforms.Key features of LoginRadius CIAM include:Support...
OpenAthens is an access and identity management system designed for the education and research sectors. It provides single sign-on access to many online resources including publications, databases, and other digital services.OpenAthens allows users from participating organizations to access subscribed resources using their existing institutional credentials. For example, a university student...
HybridAuth is an open source PHP social authentication library that allows developers to easily integrate social login and user profile access from external platforms like Facebook, Twitter, LinkedIn, Google, GitHub, and more. It handles the authentication flow, token exchange, and retrieval of user profile information.Some key features of HybridAuth include:Support...
Avatier is an enterprise identity management and access governance solution that helps organizations manage user access and secure critical data across cloud, mobile and on-premises applications. Key features include:Centralized control over user access and permissionsAutomated provisioning and deprovisioning of user accountsRole-based access control (RBAC) and segregation of duties (SoD) policiesAuditing...
Connect2id Server is an open source identity and access management solution used for user authentication, authorization and federated single sign-on. It supports industry standard protocols like OAuth 2.0, OpenID Connect and SAML 2.0 to integrate with client applications and identity providers.Some key features of Connect2id Server include:User authentication with username/password,...