An organization wants to enable its employees to access an external web-based software application using their existing internal network credentials without prompting them to re-enter their passwords. Which of the following identity architecture technologies best satisfies this requirement?
- Federated Single Sign-On using Security Assertion Markup Language (SAML)Cevap
- BRole-Based Access Control (RBAC) rules applied at the application database level
- CPerimeter firewall access control lists (ACLs) permitting direct client traffic
- DDeploying a host-based intrusion prevention system (HIPS) on client workstations
Cevap
Federated Single Sign-On using Security Assertion Markup Language (SAML)
Federated Single Sign-On (SSO) using SAML (Security Assertion Markup Language) allows an organization's Identity Provider (IdP) to authenticate users locally and pass secure tokens to an external Service Provider (SP). This eliminates the need for users to re-enter credentials when accessing third-party software.
Adım Adım Çözüm
Anahtar Kavram
Federated Identity Management and Single Sign-On (SSO)