<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"><channel><title>Oracle AppsLab - Latest Comments in Opensocial with SSO for corporate users</title><link>http://theappslab.disqus.com/</link><description></description><language>en</language><lastBuildDate>Wed, 04 Jun 2008 19:03:58 -0000</lastBuildDate><item><title>Re: Opensocial with SSO for corporate users</title><link>http://theappslab.com/2008/05/30/opensocial-with-sso-for-corporate-users/#comment-594376</link><description>The secure token being generated by Connect contains the user credentials for which service providers can authenticate and verify the user identity.</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Anthony Lai</dc:creator><pubDate>Wed, 04 Jun 2008 19:03:58 -0000</pubDate></item><item><title>Re: Opensocial with SSO for corporate users</title><link>http://theappslab.com/2008/05/30/opensocial-with-sso-for-corporate-users/#comment-594110</link><description>Hi Gopi,&lt;br&gt;Nope.  SAML is the right thing to do for authentication between external and internal domains.  &lt;br&gt;For the case above, everything is still under firewall, and we are leveraging single-sign on to allow different internal service providers to communicate to each other without having the user to authenticate to each service.&lt;br&gt;Thanks.&lt;br&gt;Sincerely,&lt;br&gt;Anthony</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Anthony Lai</dc:creator><pubDate>Wed, 04 Jun 2008 18:22:21 -0000</pubDate></item><item><title>Re: Opensocial with SSO for corporate users</title><link>http://theappslab.com/2008/05/30/opensocial-with-sso-for-corporate-users/#comment-588281</link><description>Hi Anthony, I like this solution too! Easy to implement, high security. But I doubt if it is technically feasible that "Connect acts as a proxy and forward the request along with the user credentials to the backend server, and the user is already authenticated. " What do you mean by "user credentials" here? is it SSO token? My knowledge on Oracle SSO is limited. I do not know whether Connect can fetch this and forward to another application. If it is possible, this solution is very cool!</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Dongwei</dc:creator><pubDate>Wed, 04 Jun 2008 08:22:16 -0000</pubDate></item><item><title>Re: Opensocial with SSO for corporate users</title><link>http://theappslab.com/2008/05/30/opensocial-with-sso-for-corporate-users/#comment-567538</link><description>Hi Anthony,&lt;br&gt;&lt;br&gt;Good article. &lt;br&gt;&lt;br&gt;In some my customer implementations we used Enterprise SSO solution like Oblix for internal apps authentication and then SAML for external (SaaS/externally hosted) apps to authenticate with the internal identity store. Is the integration pattern that you explained in this blog is similar to this pattern?&lt;br&gt;&lt;br&gt;Regards,&lt;br&gt;Gopi Padakandla&lt;br&gt;Blog : &lt;a href="http://www.enterprise20link.com/" rel="nofollow"&gt;http://www.enterprise20link.com/&lt;/a&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">gpadakandla</dc:creator><pubDate>Sun, 01 Jun 2008 12:49:38 -0000</pubDate></item></channel></rss>