Skip to main content

Identity & Service providers

Description

Soffid Identity Federation addon helps administrators to manage an Identity Federation. With Soffid you can manage the whole federation security configuration, increasing the security while reducing the federation management costs. Soffid can also act as a Service Provider, serving identities to any SAML capable application server.

The main supported standard is SAML. SAML allows to completely detach the identification process from web applications,  known as Service Providers. With SAML, identification is performed by specialized servers known as Identity Providers.  Additionaly, some other, less secure, but some times convenient protocols like OAuth (Open Authorization) and OpenID-Connect protocols are supported. Elder protocols like Openid (do not confuse with OpenID-Connect) are deprecated and no  longer supported.

You can visit the Introduction page to find more information about the federation members.

Screen overview

&&TODO&& Poner un vide de una configuración complete?????????????????????????

 

Federation members

Entity Group

Description

An entity group is just like a folder that allows you to manage different kinds of federation members. One of the most common ways to group federation members is by trust level.

When you create an entity group, the Identity Providers and the Service Providers records will be displayed. Then you could add identities and services selecting the proper record.

Screen overview

image-1652360950792.png

Standard attributes

  • Entity Group: name of the group.
  • Url Metadata: will be the URL of an external entity group when the entity group was esternal.
  • Providers: by default, it creates two groups, an identity provider and a service provider.


&&TODO&& Poner los enlaces a los Federation members cuando esten definidos

Identity Provider

&&TODO&& Poner los enlaces a los Federation members cuando esten definidos

Virtual Identity Provide

&&TODO&& Poner los enlaces a los Federation members cuando esten definidos

Service Provider

&&TODO&& Poner los enlaces a los Federation members cuando esten definidos

 

Actions

&&TODO&& 


https://en.wikipedia.org/wiki/Identity_provider