Single Sign-On Interoperability ScenariosSSO Interoperability Scenarios Over the past several years many institutions have already embarked upon Single-Sign-on rollouts using a number of open-source and vendor provided systems. The Single Sign-On platform is capable of interoperating with these systems in certain recommended architectural deployments, though full-functionality may be subject to deployment/configuration constraints. Jasig® Central Authentication Service (CAS®) Schools with existing Jasig® CAS® infrastructure can leverage those services under two scenarios.
In either scenario above, the institution would be responsible for supporting and maintaining its own SSO infrastructure. The second scenario would also require the institution to support the Clearpass extension (see references) to allow the Quicklaunch framework access to the user’s credentials. Shibboleth ® Shibboleth ®(a project of the Internet2 consortium) has been deployed in a number of institutions interested in federation, attribute based authorization, and standards compliance with SAML. The scenarios for integration with Shibboleth ®are similar to those above for CAS®, namely:
The second scenario in particular allows for a combination of SSO for both environments, and is easily supported in the standard Single Sign-On configuration (if CAS® is used as primary auth). Some more details are described in the References section at the page listed under: CAS®-Shib® Cohabitation. For more information about myCampus Single Sign-On, please send an e-mail to membership@campuseai.org | |
