Setting up a Stanford Service Provider using Stanford's Federated IdP (SAML2) (Lecture)

Wednesday, August 2, 2017

8:30 am

Redwood Hall G19 Map

Sponsored by:
University IT Technology Training

Enroll in this lecture

As Stanford is moving from Webauth to SAML 2.0 this lecture will help you understand what that means for you as an application/service provider.

So you need to authenticate users for your application/service on the network and you don't want to have to handle password changes and everything else that comes with managing users locally? The Information Security Office has strongly suggested that you should use the campus single-signon (SSO) infrastructure.

This lecture will cover the terminology of Shibboleth and the Security Assertion Markup Language (SAML) and how it is made available to campus from University IT's campus infrastructure. It will cover the steps to configure two SAML components. The objective is that class participants will gain the knowledge necessary to build and configure applications that leverage Stanford's single-signon infrastructure.

Topics covered in this lecture include:
- the terminology:
- Shibboleth
- Stanford Webauth
- SAML entities
- IdP, AA, SP, RP, federations
- Working with SAML metadata
- assertions
- claims
- confirming authentication and getting user attributes
- configuring Apache with mod_shib
- review of all the pieces
- overview of the registration process
- what's required in the Apache configuration and metadata files
- configuring Node.js with passport-saml
- review of all the pieces
- overview of the registration process
- what's required in the Node configuration and metadata files

Laptops are recommended, but not required.

When:
Wednesday, August 2, 2017
8:30 am – 11:30 am
Where:
Redwood Hall G19 Map
Admission:

Free lecture -- enroll via above link.

Tags:

Lecture / Reading Engineering 

Audience:
Faculty/Staff, Students, Members
Contact:
650-723-4391, techtraining@stanford.edu
More info:
Visit this website