Skip to main content
ProtocolMature

SAML

Also known as: Security Assertion Markup Language, SAML 2.0

Following adds this technology to your private workspace so related learning is easier to organise and revisit.

Technology explained

What is SAML?

Security Assertion Markup Language is an XML-based standard for exchanging authentication and authorisation assertions between identity and service providers.

In common browser SSO, an identity provider signs an assertion that a service provider validates before creating a session. Certificate rollover, audience and recipient validation, clock skew and metadata management are central to secure operation.

Primary purpose

Enable federated enterprise sign-in between separate security domains.

Typical environments
Enterprise Identity SystemsSaaS Applications
Typical use cases
  • Enterprise single sign-on (SSO)
  • Cross-domain identity federation
  • Legacy application authentication
Technology map

Explore related technologies

Related technologies

Connected knowledge

2 resources for SAML

Browse by purpose, from definitions and learning through operations, diagnostics and controlled recovery.

Technology journey

Learn and operate with SAML

Ordered as a reader progression -- from core definitions through to operational reference -- using only the content already connected in the technology registry.

Lexicon Definitions(1)

Start here: understand the core vocabulary.

Systems Engineering(1)

Learn the architecture, concepts and engineering context.