Skip to content
Surf Wiki
Save to docs
general/identity-management

From Surf Wiki (app.surf) — the open knowledge base

SAML-based products and services

List of computer security products


List of computer security products

Security Assertion Markup Language (SAML) is a set of specifications that encompasses the XML-format for security tokens containing assertions to pass information about a user and protocols and profiles to implement authentication and authorization scenarios. This article has a focus on software and services in the category of identity management infrastructure, which enable building Web-SSO solutions using the SAML protocol in an interoperable fashion. Software and services that are only SAML-enabled do not go here.

Products that provide SAML actors

SAML actors are Identity Providers (IdP), Service Providers (SP), Discovery Services, ECP Clients, Metadata Services, or Broker/IdP-proxy. This table shows the capability of products according to Kantara Initiative testing. Claimed capabilities are in column "other". Each mark denotes that at least one interoperability test was passed. Detailed results with product and test procedure versions are available at the Kantara/Liberty site given below.

NOTE: This table represents a snapshot over time roll up of the most recent product test results (multiple testing rounds). Please note that some products features and abilities may have been updated since they were last tested. Please check the website information of the originating product for the latest features and updates.

Product NameProject/VendorLicenseKantara-certified InteroperabilityOther Featuresnb=1stp=1IdP}}nb=1stp=1IdP Light}}nb=1stp=1SP}}nb=1stp=1SP Light}}nb=1stp=1eGov 1.5}}nb=1stp=1Attr Auth Resp}}nb=1stp=1POST Bind.}}RolesProtocols
10Duke Identity Provider10Duke
adAS SSOPRiSE
ADFS 1.xMicrosoft
ADFS 2.0Microsoft
ADFS 2.1Microsoft
ADFS 3.0Microsoft
ADFS 4.0Microsoft
AerobaseAerobase
AfrilasAble - AXS Guard
AsimbaAsimba.org
AssureBridge SAMLConnectAssureBridge
Auth0Auth0
Authentic2Entrouvert
AuthStackBuckhill
BIG-IP Access Policy ManagerF5 Networks
BitiumBitium
CA Single Sign-OnCA
Central Authentication Server (CAS)Apereo Foundation
Centrify DirectControlCentrify
CeptorCeptor
cidaascidaas by Widas ID GmbH
Citrix Open CloudCitrix
Cloud Identity ManagerMcAfee
Cloud Federation ServiceRadiant Logic
CloudsealCloudsealSaaS
CognitoAmazon
Comfact IDPComfact
SignicatSignicat
Corto https://sites.google.com/site/cortopages/Corto project homeGÉANT
DACSSafran Identity & Security
Dot Net WorkflowThe Dot Net Factory
DirX AccessAtos/Siemens
DualShieldDeepnet Security
Elastic SSO Team9STAR
Elastic SSO Enterprise9STAR
ESOEQueensland University of Technology
Entra ID (formerly known as Azure Active Directory)Microsoft
Entrust GetAccessEntrust
Entrust IdentityGuardEntrust
EICEricsson
EmpowerIDThe Dot Net Factory
Evidian Web Access ManagerEvidian
Fluig IdentityTOTVS
Forum SentryForum Systems
Fugen Cloud ID BrokerFugen Solutions
FusionAuthFusionAuth
GlobalSignGlobalSign SSOGMO GlobalSign
Gluu ServerGluu
Hitachi ID Identity and Access Management SuiteHitachi ID Systems, Inc.
Horizon App ManagerVMware
HP IceWall SSOHP
ILANTUS Sign On ExpressIlantus
Intel Cloud SSOIntel
Ilex Sign&goILEX
iSAMLAvoco
iWelcomeiWelcome
JOSSO (Community Ed.)josso.org
JOSSO (Enterprise Ed.)Atricore
Juniper SSL VPNJuniper Networks
KeycloakJBoss
Layer 7SecureSpan Gateway
LarpeEntrouvert
LemonLDAP::NGLemonLDAP::NG
LoginRadiusLoginRadius
MicroFocus (NetIQ) Access ManagerNetIQ (formerly Novell)
miniOrangeminiOrange
NetWeaver AppserverSAP
OneGateMobilityGuard
OpenAMtitle=ForgeRock has shuttered the open-source community, and no longer allows new development on their platform under a permissive licensewebsite=timeforaforkdate=June 1, 2017url=http://www.timeforafork.com/ref=accessdate=June 1, 2017}}
OktaOkta
OneLoginOneLogin
OpenAthens LAeduserv
OpenAthens SPeduserv
Open SelectOpenASelect.org
Optimal IdM VIS Federation ServicesOptimal IdM
Oracle Identity Federation 11gOracle
Pega 7 PlatformPegasystems Inc.
PhoneFactorPhoneFactor, Inc
PicketLinkJBoss Community
PingFederatePing Identity
Plurilock AIPlurilock
PortalGuardPistolStar, Inc.
RSA Federated IdentityRSA
SAASPASSSAASPASS
Safewhere*IdentifySafewhere
SailPoint IdentityNowSailPoint
SamanageSamanage
SATOSASATOSA
SecureAuthSecureAuth Corp.
SecureSSOSurePassID
ShibbolethInternet2
SimpleSAMLphpUNINETT AS
SmartsigninPerfectCloud
SMS PASSCODE Multi-factor AuthenticationSMS PASSCODE
SSO EasyConnectSSO Easy
SSOgenSSOGEN Corporation
Symlabs Federated Identity SuiteSymlabs
SymplifiedSymplified
Tivoli Federated Identity ManagerIBM
TrustBindNTT Software Corp
TrustBuilderSecurIT
TrustelemTrustelem
USP Secure Entry ServerUnited Security Providers
WeblogicOracle
WSO2wso2
ZITADELZITADEL
ZXIDzxid

Libraries and toolkits to develop SAML actors and SAML-enabled services

Libraries and toolkits are used by developers to integrate applications and services into SAML federations or to build their own SAML-actors like IdPs.

Libraries and ToolkitsOrganizationLicencePurpose and Language bindings
Australian Access FederationAustralian Access FederationMetadata Registry based on former work by SWITCH
ComponentSpaceComponentSpaceSAML libraries for ASP.NET and ASP.NET Core applications
CortoWAYFSAML2 proxy, virtual IdP, user consent
DjangoSAML2GitHubSAML2 application for Django, using PySAML2 underneath
EmpowerID IdP & SP KitDot Net FactoryIdP and SP Kit, .NET, REST, and SOAP-based integration kit to SAML-enable applications
FEMMASourceForgeWorkaround for the ADFS limitation of a single EntityID per XML infoset
Firefox ECP PluginOpenlibertyFirefox extension for compliance with SAML ECP
FLOG F-Ticks VizualizationSUNETParse and chart F-Ticks for webSSO and Eduroam
JaggerHEAnetMetadata and Federation data manager; Shibboleth IDP GUI
JAKOBWAYFBackchannel attribute collector
JANUSWAYFMetadata Registry for hub-and-spoke federations based on SimpleSAMLphp; includes self-service
Jitbit ASP.NET SAML libGitHubSAML 2.0 "consumer" component for ASP.NET
LassoEntrouvertSAML-Library: C/C++, Python, Java, Perl, PHP
LightSAML coreSAML-Library: PHP
OIOSAML 2.0 ToolkitDanish IT and Telekom AgencySP Framework: Java, .NET, PHP (Documentation see OIOSAML.java)
OmniAuth-ShibbolethOneLoginSAML-Library: ASP/.NET, Java, PHP, Python, Ruby
OneLoginOneLoginSAML-Library: ASP/.NET, Java, PHP, Python, Ruby
OpenConextSURFnetService Provider Proxy and Hub-and-Spoke federation middleware, includes SAML proxy and central group management for creating collaboration platforms
OpenSAMLInternet2SAML-Library: C++, Java
METTERENAgathers and shows information about federations (mostly about SPs and IdPs)
MujinaSURFnetSAML test actors that can be dynamically configured using a REST interface
PAC4J-SAMLSAML Service Provider Library (and other authentication mechanisms)
PEERGÉANTSAML Metadata Registry
PHPHWAYF.dkSAML Metadata Processor
Ping IdentityPing IdentityJava, .NET, PHP and language neutral integration kits to SAML-enable applications
PySAML2GitHubSAML-Library: Python
Python-SAMLOneLoginSAML-Library: Python
PysfemmaGitHubautomate membership configuration of an ADFS STS in a SAML2 based Identity Federation
PyFFSUNETSAML Metadata Processor
RaptorJisctoolkit to enable Shibboleth IdP statistics analysis
SAML Metadata AggregatorNORDUnetAggregates single metadata files and provides MDX webservice
SAML Tracer (Firefox addon)UNINETT ASFirefox Plug-In to trace SAML messages
SecureBlackbox/n softwareThe component that implements SAML in client apps, which need to use service providers, or can be used to create your own service and identity providers
SpringSecurity SAMLSpringSourceSAML-enable applications based on Spring framework
Switch GMTSWITCH-AAIGroup Management Tool for Shibboleth
WebisogetCommand-line Tool to fetch a SSO-protected page including Shibboleth-Login
ZXIDzxidC, other lang using swig.org

References

References

  1. "Kantara Initiative 2011 Q1 SAML 2.0 Full-Matrix Interoperability Testing".
  2. (12 November 2021). "Liberty Alliance SAML interoperability tests".
  3. (11 February 2022). "10Duke Identity Provider".
  4. "adAS SSO".
  5. "Open Source Identity & Access Management".
  6. "Aerobase". Aerobase Org.
  7. "Afrilas".
  8. "Asimba".
  9. "AssureBridge".
  10. "Auth0".
  11. "Authentic2".
  12. "Authstack - Identity Access Management (IAM) and Single Sign-On Software".
  13. "Bitium Single Sign-on".
  14. "CA Federation Manager".
  15. "CAS SAML2 Authentication".
  16. "Secure IT Infrastructure for Online Business Applications {{!}} Ceptor".
  17. "cidaas – European Cloud Identity and Access Management".
  18. "Citrix Open Cloud Access".
  19. "RadiantOne Cloud Federation Service".
  20. "Cloudseal SSO for Java".
  21. "Amazon Cognito: SAML identity providers (identity pools)".
  22. "Comfact IDP".
  23. "Signicat".
  24. "Morpho DACS".
  25. "Dot Net Workflow cloud and corporate SSO and Federation".
  26. "DirX Access".
  27. "DualShield unified authentication platform".
  28. (16 October 2018). "9STAR's Elastic SSO Team".
  29. (16 October 2018). "9STAR's Elastic SSO Enterprise".
  30. "Entrust GetAccess".
  31. "Entrust IdentityGuard".
  32. "EIC".
  33. "EmpowerID".
  34. "API Security Gateway".
  35. "FusionAuth Community Edition".
  36. (30 March 2020). "GlobalSign SSO". Globalsign.
  37. "Open Source Access Management".
  38. "IAM Solutions".
  39. "Horizon App Manager".
  40. "HP IceWall SSO".
  41. (10 September 2019). "ILANTUS Xpress Sign-On".
  42. "Intel Cloud SSO".
  43. "Ilex".
  44. "Avoco Identity".
  45. "iWelcome".
  46. "JOSSO (Community Edition)".
  47. "JOSSO (Enterprise Edition)".
  48. "Juniper SSL VPN".
  49. "Keycloak". JBoss Community.
  50. "Layer 7".
  51. "Larpe".
  52. "LemonLDAP::NG".
  53. "NetIQ Access Manager".
  54. "NetWeaver Appserver".
  55. "Mobilityguard OneGate".
  56. (June 1, 2017). "ForgeRock has shuttered the open-source community, and no longer allows new development on their platform under a permissive license".
  57. "Cloud service platform".
  58. "OneLogin Single Sign On".
  59. "OpenAthens LA".
  60. "OpenAthens SP".
  61. "OpenASelect".
  62. "Optimal IdM VIS Federation Services".
  63. "Oracle Identity Federation 11g".
  64. (15 September 2020). "Pega7".
  65. "PhoneFactor".
  66. "PicketLink".
  67. "PingFederate".
  68. "Plurilock AI Cloud".
  69. "DEFEND Continuous Authentication".
  70. "PortalGuard".
  71. "RSA Federated Identity Manager".
  72. "Safewhere*Identify".
  73. "SailPoint IdentityNow".
  74. "Samanage".
  75. (25 October 2021). "Github/SATOSA".
  76. "SecureAuth".
  77. "SurePassID".
  78. "SimpleSAMLphp".
  79. "Smartsignin Single Sign-on".
  80. "SMS PASSCODE".
  81. "SSO EasyConnect".
  82. "Symlabs Federated Identity Suite".
  83. "Symplified".
  84. (9 November 2020). "Tivoli Federated Identity Manager".
  85. "TrustBind/Federation Manager".
  86. "TrustBuilder".
  87. "Trustelem Cloud SSO {{!}} Active Directory and multi-factor authentication".
  88. "USP Secure Entry Server".
  89. "WSO2".
  90. "ZITADEL".
  91. "ZXID".
  92. "Federation Registry".
  93. "ComponentSpace".
  94. "cortoweb".
  95. "knaperek/djangosaml2".
  96. "EmpowerID Dot Net Workflow Idp & SP Kit".
  97. (May 2015). "Federation Metadata Manager for ADFS".
  98. "Firefox ECP Plugin".
  99. (8 May 2020). "FLOG".
  100. (20 October 2021). "JAGGER (ResourceRegistry3".
  101. "JAKOB Attribute Collector".
  102. (21 March 2020). "JANUS".
  103. (13 April 2022). "Jitbit SAML toolkil".
  104. "Lasso".
  105. "LightSAML core".
  106. "OIOSAML 2.0 Toolkit".
  107. "OIOSAM.net Service Provider Framework".
  108. (16 December 2020). "Shibboleth Binding for OmniAuth 1.x".
  109. "SAML Toolkits from OneLogin".
  110. "OpenConext".
  111. "OpenSAML".
  112. (14 January 2021). "Metadata Explorer Tool".
  113. (13 April 2022). "Mujina Mock IdP and SP".
  114. "PAC4J Security Engine".
  115. (26 June 2018). "PEER".
  116. (7 June 2015). "PHPH".
  117. "PingFederate Integration Kits".
  118. (13 April 2022). "PySAML2".
  119. (28 January 2019). "Pysfemma".
  120. "PyFF".
  121. "Raptor".
  122. "SAML Metadata Aggregator".
  123. "SAML Tracer".
  124. "SAMLBlackbox (SAML component and class library) - SecureBlackbox".
  125. "SpringSecurity SAML Site".
  126. "SWITCH Group Management Tool".
  127. "Webisoget - eduGAIN Wiki".
  128. "ZXID".
  129. (23 October 2018). "9STAR Shibboleth/SAML SSO Services". 9STAR.
  130. (16 October 2018). "9STAR Shibboleth/SAML SSO Support".
  131. "Arcot A-OK".
  132. "eduTEAMs".
  133. "Federation Lab".
  134. "Feide OpenIdP".
  135. "Gazelle IHE interop test framework".
  136. "Gluu On-Prem Managed Service".
  137. "Identity Hub".
  138. "OneLogin SSO".
  139. "RE:EP".
  140. "Phonefactor".
  141. "PingOne".
  142. "SAML .NET Dev Zone".
  143. "samlidp.io - SAML Identity Provider as a Service".
  144. "SecureAuth Corp.".
  145. "SSO Circle IDP".
  146. "Testshib.org".
  147. "United ID".
  148. "Verizon Web Access Management as a Service".
  149. "ZXIDP.org".
Info: Wikipedia Source

This article was imported from Wikipedia and is available under the Creative Commons Attribution-ShareAlike 4.0 License. Content has been adapted to SurfDoc format. Original contributors can be found on the article history page.

Want to explore this topic further?

Ask Mako anything about SAML-based products and services — get instant answers, deeper analysis, and related topics.

Research with Mako

Free with your Surf account

Content sourced from Wikipedia, available under CC BY-SA 4.0.

This content may have been generated or modified by AI. CloudSurf Software LLC is not responsible for the accuracy, completeness, or reliability of AI-generated content. Always verify important information from primary sources.

Report