Sun Java logo     Copyright      Index      Next     

Sun logo
Sun Java System Identity Server 2004Q2 Technical Overview 

Contents


About This Book
Audience for This Guide
Identity Server 2004Q2 Documentation Set
Identity Server 2004Q2 Core Documentation
Identity Server Policy Agent Documentation
Your Feedback on the Documentation
Documentation Conventions Used in This Guide
Typographic Conventions
Terminology
Related Information
Related Third-Party Web Site References

Chapter 1   Overview of Identity Server
An Identity Management Paradigm
The Problem
The Solution
How Identity Server Works
Identity Administration
Access Management
Service Management
Federation Management
Identity Server Architecture
Sun Java System Directory Server
Identity Server Components
What’s New in This Release
Enhancements to Federation Management
Identity Federation Framework
Liberty Identity Web Services Framework
Identity Service Instance Specification
Enhancements to SAML
Customized JAAS Authorization Framework
Enhancements to Administration Console
Centralized Agents Management
Display Options and Available Actions
Session Failover for Application Server
Nested Groups Support
Configuration and Tuning Scripts
Configuration Script
Tuning Scripts
Enhancements to Authentication
JAAS Shared State
Agent Authentication
Java Database Connectivity Authentication Module Sample
Java Card Digital Identity Authentication Module Sample
Windows Desktop Single Sign-On

Chapter 2   Identity Management
Basic Directory Server Concepts
Overview of the Directory Tree
Directory Entries and the Base DN
Directory Server Schema
Static and Dynamic Groups
Managed and Filtered Roles
How Identity Server Works with Directory Server
Identity Server Objects Are Added to Directory
Groups
Users
Services
Roles
Policies
Containers
People Containers
Group Containers
Delegated Administration and Self-Registration
Identity Management Interfaces

Chapter 3   Access Management
Authentication
Client Detection
Basic Authentication
Users Using A Web Browser
Java Applications
C Applications
The Authentication User Interface
Single Sign-On
Cross-Domain Single Sign-On
Policy Agents
Cross-Domain Controller
Policy Management and Configuration
Policy Framework
Policy Configuration
Policy Agents
Policy Types
Conditional Policy
Referral Policy
Policy Management Architecture

Chapter 4   Services Management
How Services Work in Identity Server
Core Services
Service Plug-Ins
Attribute Types
Dynamic Attributes
User Attributes
Organization Attributes
Global Attributes
Policy Attributes
Identity Server Core Services
Administration
Authentication
Authentication Configuration
Client Detection
Logging
Naming
Password Reset
Platform
Policy Configuration
SAML
Session
User
The Service Configuration Interface

Chapter 5   Federation Management
The Need for Federated Identities
The Liberty Alliance Project
The Circle of Trust
Federation Management Architecture
Identity Federation Framework
Identity Web Services Framework
Identity Service Instance Specifications (ID-SIS)
Supporting Components
The Federation Management Process
Federation Single Sign-On Process
Pre-Login Process
System Flow

Glossary

Index


Copyright      Index      Next     


Copyright 2004 Sun Microsystems, Inc. All rights reserved.