Sun logo      Copyright      Index      Next     

Sun ONE Identity Server 6.1 Product Brief

Contents


About This Book
Audience for This Guide
Identity Server 6.1 Documentation Set
Identity Server Core Documentation
Identity Server Policy Agent Documentation Set
Your Feedback on the Documentation
Documentation Conventions Used in This Guide
Typographic Conventions
Terminology
Related Information

Chapter 1   Overview of Identity Server
An Identity Management Paradigm
The Problem
The Solution
How Identity Server Works
Identity Administration
Access Management
Service Management
Federation Management
Identity Server Architecture
Sun ONE Directory Server
Identity Server Components

Chapter 2   Identity Management
Basic Directory Server Concepts
Overview of the Directory Tree
Directory Entries and the Base DN
Directory Server Schema
Static and Dynamic Groups
Managed and Filtered Roles
How Identity Server Works with Directory Server
Identity Server Objects Are Added to Directory
Groups
Users
Services
Roles
Policies
Containers
People Containers
Group Containers
Delegated Administration and Self-Registration
Identity Management Interfaces

Chapter 3   Access Management
Authentication
Client Detection
Basic Authentication
Users Using A Web Browser
Java Applications
C Applications
The Authentication User Interface
Single Sign-On
Cross-Domain Single Sign-On
Policy Agents
Cross-Domain Controller
Policy Service
Policy Management
Policy Configuration
Policy Agents
Policy Types
Conditional Policy
Referral Policy
Policy Service Architecture

Chapter 4   Services Management
How Services Work in Identity Server
Core Services
Service Plug-Ins
Attribute Types
Dynamic Attributes
User Attributes
Organization Attributes
Global Attributes
Policy Attributes
Identity Server Core Services
Administration
Authentication
Authentication Configuration
Client Detection
Logging
Naming
Password Reset
Platform
Policy Configuration
SAML
Session
User
The Service Configuration Interface

Chapter 5   Federation Management
The Need for Federation Management
The Liberty Alliance Project
Liberty Specifications 1.1 Changes
Federation Concepts
Account Federation (Identity Federation)
Authentication Domain
Circle Of Trust
Common Domain
Federated Identity
Federation Termination
Identity Provider
Name Identifier
Service Provider
Single Logout
Single Sign-on
Trusted Provider
Federation Management Process
Pre-Login Process
Federation Single Sign-On Process
Federation Management Protocols and APIs
Single Sign-on and Federation Protocol
Federation Termination Notification Protocol
Name Registration Protocol
Single Log-Out Protocol
IDP Introduction Protocol
Federation Management APIs

Index


Copyright      Index      Next     


Copyright 2003 Sun Microsystems, Inc. All rights reserved.