Chapter 3

Federated Identity Technologies

Information in this chapter:

• OpenID

• OAuth

• Security Tokens

• Web Service Specifications

• Windows Identity Framework

• Claims-Based Identity

3.1. Introduction

In this chapter, we will be getting a little more technical. Now that you have a good general understanding of federated identity, we will cover the technologies that go into creating a federated identity solution. Most solutions use standard technologies for authentication, authorization, and security tokens. In this chapter, we will start by covering OpenID, OAuth, Simple Web Tokens (SWTs), JSON Web Token (JWT), and Security Assertion Markup Language (SAML). Next we will cover the specifications and extensions that bring federated identity security ...

