SAML (Security Assertion Markup Language)

SAML is the most widely used specifications family for browser-based federated sign-on for cloud users. After the user authenticates himself to the identity service he can access the provisioned cloud services that come under the trusted domain, Since the security assertion markup language enables the delegation by using risk-based authentication policies customer can select to use strong authentication for specific cloud services, which can be achieved by using the organization’s identity providers(IdP) which supports strong and delegated authentications. By using this authentication technique the users are less vulnerable to attacks.

Strong authentication is advisable to protect the credentials of users from man-in-the-middle attacks, thus supporting a SAML standard enables an authentication model for cloud customers.

 

Standards and Protocols in IAM for Cloud Services

Pre-requisite: IAM

In this article, we’ll discuss the IAM standards that act as an impetus for organizations who want to use or upgrade their services to the cloud, organizations that are currently using the cloud services should also be taken into consideration by the cloud services providers’ commitment for supporting the IAM standards.

Similar Reads

Identity Access Management Standards for Organisations

Given below Identity access management standards will help companies/organizations to build effective and efficient user access management into practice in the cloud....

SAML (Security Assertion Markup Language)

SAML is the most widely used specifications family for browser-based federated sign-on for cloud users. After the user authenticates himself to the identity service he can access the provisioned cloud services that come under the trusted domain, Since the security assertion markup language enables the delegation by using risk-based authentication policies customer can select to use strong authentication for specific cloud services, which can be achieved by using the organization’s identity providers(IdP) which supports strong and delegated authentications. By using this authentication technique the users are less vulnerable to attacks....

SPML (Service Provisioning Markup Language)

SPML is an XML-based framework that was developed by OASIS for exchanging user resources and service provisioning information among cooperating organizations. Service Provisioning Markup Language is an emerging standard that can help organizations in automating the provisioning of identities of users for cloud services. Whenever SPM is available organizations should use it to provide accounts of users and profiles with the cloud service....

XACML (eXtensible Access Control Markup Language)

It is an OASIS-certified general-purpose extensible markup language(XML) based access control language for policy management and access decisions. It uses XML schema for policy language which is used to protect the resources and protect access decisions over these resources....

Open Authentication (OAuth)

It is an authentication standard that allows customers to share their private resources/files such as files, videos, pictures, etc. stored on one cloud service provider with another cloud service provider without disclosing any authentication information such as username or password....