Federated security
Federated security delegates the authentication of user or service (consumer) to an external party known as an identity provider (IdP). An application using federated security will trust the IdP to properly authenticate the consumer and provide details about the consumer or claims accurately. This information about the consumer is presented as a token. A common scenario for this would be a web application using a social IdP such as Google, Facebook, or Microsoft.
Federated security can handle a variety of scenarios, from interactive sessions to authentication backend services or non-interactive sessions. Another common scenario is the ability to provide a single authentication experience or single sign-on (SSO) across ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access