SPML Interoperability Demonstration Gavenraj Sodhi, Business Layers 14 April 2003 RSA Conference...

Post on 04-Jan-2016

217 views 1 download

Tags:

transcript

SPML Interoperability Demonstration

Gavenraj Sodhi, Business Layers14 April 2003RSA Conference 2003

RARA

Digital CertificateDigital Certificate

Validates SAML TokenReturns validation

Success/Failure

Validates SAML TokenReturns validation

Success/Failure

SOAP message with SPML Body and SAML Token Header - Add New Contractor

If Validation is successful, request for adding new contractor is passed

If Validation is successful, request for adding new contractor is passed

Request registered Notification

SPML: Create New AccountSPML: Create New Account

SPML: Account CreatedSPML: Account Created

Request fulfilled and New Contractor is provisioned

Enterprise AccessEnterprise AccessManagement Management

ServiceService

PSPPSPPSTPST

SAML Token

SPML

SOAP MessageHeader

Body

© 2001-2002 OASIS Open Inc.

SPML Client (RA)The Initial screen for

adding a user

© 2001-2002 OASIS Open Inc.

SPML Client (RA)

Click on the Add user button

once all the user details are

filled.

© 2001-2002 OASIS Open Inc.

SPML Client (RA)

A message with the SPML

request created from the user

information will be displayed

© 2001-2002 OASIS Open Inc.

SPML Client (RA) The SAML Authentication information in

the SOAP header

© 2001-2002 OASIS Open Inc.

SAML Authentication

The message on the SAML Authentication

server indicating that the SAML authentication of

the user succeeded

© 2001-2002 OASIS Open Inc.

SAML Authorization

The message on the SAML Authorization

server indicating that the SAML authorization of the

user succeeded

© 2001-2002 OASIS Open Inc.

SPML Client (RA)

The SPML response will be displayed once the PSP adds

the user

© 2001-2002 OASIS Open Inc.

SPML Client (RA)

The result of the user add operation is displayed at the bottom of the page

The user details can be viewed by

selecting View Details.

© 2001-2002 OASIS Open Inc.

SPML Client (RA)

The details of the user add operation

Information elements sent to the

client by the PSP

© 2001-2002 OASIS Open Inc.

SPML Processing (PSP)

The user added can be viewed from PSP’s

(eProvision) interface

© 2001-2002 OASIS Open Inc.

eProvision (PSP)

The activities of the user added can then be

tracked from the activities section of the PSP’s (eProvision) interface

© 2001-2002 OASIS Open Inc.

SPML addRequest to PST

The PSP generated SPML addRequest that

can be sent to any SPML compliant PST.

Thank you

Gavenraj Sodhi

Gavenraj.Sodhi@businesslayers.com