Softpedia
 


LINUX CATEGORIES:



GLOBAL PAGES >>
NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Linux Kernel 3.9.3 / 3....
  • LibreOffice 3.6.6 / 4.0.3
  • MPlayer 1.1.1
  • systemd 204
  • Arch Linux 2013.05.01
  • Blender 2.67
  • KDE Software Compilatio...
  • CrunchBang Linux Stable...
  • Elementary OS 0.1 / 0.2...
  • SystemRescueCd 3.6.0
  • Home > Linux > Security

    Carillon STS 0.02

    Download button

    No screenshots available
    Downloads: 640  View global page NEW!  Tell us about an update
    User Rating:
    Rated by:
    Fair (2.9/5)
    19 user(s)
    Developer:

    License / Price:

    Last Updated:

    Category:
    Carillon Information Security Inc. | More programs
    GPL / FREE
    July 20th, 2007, 19:35 GMT
    ROOT / Security

     Read user reviews (0)  Refer to a friend  Subscribe

    Carillon STS description

    Carillon STS is a PHP-based Federated Identity Provider (IdP).

    Carillon STS is a PHP-based Federated Identity Provider (IdP) which is capable of acting as a Secure Token Service (STS) compatible with Windows CardSpace and other "infocard" implementations. The project has been successfully tested with CardSpace, as well as with Chuck Mortimore's Firefox identity selector plugin.

    Once installed and configured, the Carillon STS allows a user to authenticate himself, either by password or by X.509 certificate, whereupon he is issued a digitally signed infocard containing some standard identity claims and optionally some customizable identity claims. When he presents this infocard to a Relying Party's (RP's) site, his browser's identity selector requests a SAML token from the Carillon STS.

    If the authentication information is still valid, a digitally signed token will be issued with the various claims asserted. The browser takes this token, checks the digital signature, encrypts it for the RP, and passes it along. It is the RP's responsibility to decrypt the SAML token, check the digital signature, check the asserted claims, and make an access decision based on this information.

    What's New in This Release:

    · This version contains updates for X.509 support to work more properly with Windows CardSpace.
    · The infocard now contains the right kind of UserCredential tag, and the right assertion names and tags.
    · The mex output contains policy for allowing CardSpace to authenticate itself using the certificate.
    · The token request consumer checks the signature on the included timestamp, since CardSpace doesn't support using the user certificate for the HTTPS/SSL transport.
    · There are several other fixes.



    Product's homepage

      


    TAGS:

    Identity Provider | Secure Token Service | manage info cards | Carillon | STS | Identity

    Go to top

    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM