home.social

#caep — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #caep, aggregated by home.social.

fetched live
  1. SSO под другим углом

    SSO принято считать системой единого входа: она проверяет пользователя и выдаёт токен. Но в этой же точке можно собирать подтверждённые данные, применять внешние политики, запускать обязательные действия и уведомлять другие системы о новой сессии. Разберём, как SSO формирует единый пользовательский контекст и как Claims Providers, AuthZEN, SSF/CAEP и Script Runner расширяют его роль — от системы входа до платформы управления корпоративной идентичностью.

    habr.com/ru/articles/1074438/

    #SSO #IAM #OpenID_Connect #AuthZEN #SSF #CAEP #claims #аутентификация #управление_доступом #архитектура

  2. SSO под другим углом

    SSO принято считать системой единого входа: она проверяет пользователя и выдаёт токен. Но в этой же точке можно собирать подтверждённые данные, применять внешние политики, запускать обязательные действия и уведомлять другие системы о новой сессии. Разберём, как SSO формирует единый пользовательский контекст и как Claims Providers, AuthZEN, SSF/CAEP и Script Runner расширяют его роль — от системы входа до платформы управления корпоративной идентичностью.

    habr.com/ru/articles/1074438/

    #SSO #IAM #OpenID_Connect #AuthZEN #SSF #CAEP #claims #аутентификация #управление_доступом #архитектура

  3. SSO под другим углом

    SSO принято считать системой единого входа: она проверяет пользователя и выдаёт токен. Но в этой же точке можно собирать подтверждённые данные, применять внешние политики, запускать обязательные действия и уведомлять другие системы о новой сессии. Разберём, как SSO формирует единый пользовательский контекст и как Claims Providers, AuthZEN, SSF/CAEP и Script Runner расширяют его роль — от системы входа до платформы управления корпоративной идентичностью.

    habr.com/ru/articles/1074438/

    #SSO #IAM #OpenID_Connect #AuthZEN #SSF #CAEP #claims #аутентификация #управление_доступом #архитектура

  4. "#CAEP is an opiniated version of webhooks" => I like this definition/introduction by @timcappalli

    #identiverse

  5. "#CAEP is an opiniated version of webhooks" => I like this definition/introduction by @timcappalli

    #identiverse

  6. "#CAEP is an opiniated version of webhooks" => I like this definition/introduction by @timcappalli

    #identiverse

  7. "#CAEP is an opiniated version of webhooks" => I like this definition/introduction by @timcappalli

    #identiverse

  8. "#CAEP is an opiniated version of webhooks" => I like this definition/introduction by @timcappalli

    #identiverse

  9. Extremely interesting discussion on this week's @riskybusiness podcast soapbox segment (overcast.fm/+It0jHgm4Q/41:09) with Okta's Chief Product Architect Karl McGuinness (@[email protected]) about their adoption of CAEP (openid.net/specs/openid-caep-s) for better continuous access evaluation and first implemented in production in collaboration with Apple's Managed Apple ID for businesses and schools (developer.apple.com/wwdc23/102)

    If you're not super-familiar with with CAEP (or RISC) a good primer is this Shared Signals guide which covers SSF and the event protocols and their definitions: sharedsignals.guide/#eventdefi Or, if you just like reading specs, check out the OpenID URL 👆 (shout out to @timcappalli) and nerd out.

    On a personal note I am very excited to be paving the road to get from the limited signal fidelity of SCIM et al. to a true continuous authn/authz future.

    #OIDC #SharedSignal #CAEP #SSO

  10. Extremely interesting discussion on this week's @riskybusiness podcast soapbox segment (overcast.fm/+It0jHgm4Q/41:09) with Okta's Chief Product Architect Karl McGuinness (@[email protected]) about their adoption of CAEP (openid.net/specs/openid-caep-s) for better continuous access evaluation and first implemented in production in collaboration with Apple's Managed Apple ID for businesses and schools (developer.apple.com/wwdc23/102)

    If you're not super-familiar with with CAEP (or RISC) a good primer is this Shared Signals guide which covers SSF and the event protocols and their definitions: sharedsignals.guide/#eventdefi Or, if you just like reading specs, check out the OpenID URL 👆 (shout out to @timcappalli) and nerd out.

    On a personal note I am very excited to be paving the road to get from the limited signal fidelity of SCIM et al. to a true continuous authn/authz future.

    #OIDC #SharedSignal #CAEP #SSO

  11. Extremely interesting discussion on this week's @riskybusiness podcast soapbox segment (overcast.fm/+It0jHgm4Q/41:09) with Okta's Chief Product Architect Karl McGuinness (@[email protected]) about their adoption of CAEP (openid.net/specs/openid-caep-s) for better continuous access evaluation and first implemented in production in collaboration with Apple's Managed Apple ID for businesses and schools (developer.apple.com/wwdc23/102)

    If you're not super-familiar with with CAEP (or RISC) a good primer is this Shared Signals guide which covers SSF and the event protocols and their definitions: sharedsignals.guide/#eventdefi Or, if you just like reading specs, check out the OpenID URL 👆 (shout out to @timcappalli) and nerd out.

    On a personal note I am very excited to be paving the road to get from the limited signal fidelity of SCIM et al. to a true continuous authn/authz future.

    #OIDC #SharedSignal #CAEP #SSO

  12. Extremely interesting discussion on this week's @riskybusiness podcast soapbox segment (overcast.fm/+It0jHgm4Q/41:09) with Okta's Chief Product Architect Karl McGuinness (@[email protected]) about their adoption of CAEP (openid.net/specs/openid-caep-s) for better continuous access evaluation and first implemented in production in collaboration with Apple's Managed Apple ID for businesses and schools (developer.apple.com/wwdc23/102)

    If you're not super-familiar with with CAEP (or RISC) a good primer is this Shared Signals guide which covers SSF and the event protocols and their definitions: sharedsignals.guide/#eventdefi Or, if you just like reading specs, check out the OpenID URL 👆 (shout out to @timcappalli) and nerd out.

    On a personal note I am very excited to be paving the road to get from the limited signal fidelity of SCIM et al. to a true continuous authn/authz future.

    #OIDC #SharedSignal #CAEP #SSO

  13. Extremely interesting discussion on this week's @riskybusiness podcast soapbox segment (overcast.fm/+It0jHgm4Q/41:09) with Okta's Chief Product Architect Karl McGuinness (@[email protected]) about their adoption of CAEP (openid.net/specs/openid-caep-s) for better continuous access evaluation and first implemented in production in collaboration with Apple's Managed Apple ID for businesses and schools (developer.apple.com/wwdc23/102)

    If you're not super-familiar with with CAEP (or RISC) a good primer is this Shared Signals guide which covers SSF and the event protocols and their definitions: sharedsignals.guide/#eventdefi Or, if you just like reading specs, check out the OpenID URL 👆 (shout out to @timcappalli) and nerd out.

    On a personal note I am very excited to be paving the road to get from the limited signal fidelity of SCIM et al. to a true continuous authn/authz future.

    #OIDC #SharedSignal #CAEP #SSO