par janua | Mar 30, 2015 | Communauté, Gestion des Identités, Open Source, Sécurité, SSO
OpenAM 12 tricks: I recently had to find a solution built on OpenAM where the business requirements were to be able to display a form to end users accessing a SAML SP (among several) for the first time, in order to let them make a choice upon which SAML assertions...
par janua | Mar 26, 2015 | Communauté, Open Source, Sécurité, SSO
This is a simple demo showing a mobile application, in this case running in an iPhone simulator, interacting with ForgeRock OpenAM 12.0 REST API’s. A basic session token interaction is demonstrated along with demonstration and discussion on how authorization deci...
par janua | Fév 5, 2015 | Communauté, Gestion des Identités, Open Source, Sécurité, SSO
OpenAM security is a serious matter, especially when this software has a critical role in your architecture, which is often the case. So here are some advices to avoid OpenAM security holes. 1 – OpenAM lower layers security To avoid security flaws in your OpenAM...
par janua | Jan 9, 2015 | Communauté, Developpement, Gestion des Identités, Sécurité, SSO
OpenAM Custom Password Generator : I told you in a previous post about the OpenLDAP Password Policy Module which allows defining the password complexity rules by configuring an external file. OpenAM-CPG is an OpenAM reset password plugin using the same configuration...
par janua | Déc 22, 2014 | Conférence, Documents, Gestion des Identités, SSO
Une présentation de Cyril Grosjean, directeur technique de JANUA sur OAuth et OpenID. OpenID est un système d’authentification décentralisé qui permet l’authentification unique, ainsi que le partage d’attributs. Il permet à un utilisateur de s’authentifier auprès de...
par janua | Déc 19, 2014 | Communauté, Gestion des Identités, IoT, Sécurité, SSO
You know that blue “Share” button in Google Apps? Ever wanted to add a feature like that to your own app or API ecosystem? The UMA protocol enables you to do just that. Source : https://forgerock.org/openuma/ User-Managed Access (UMA) is an OAuth-based protocol that...