Discussion page for the SSO refurbishing
This is a discussion page for future enhancements and changes to SSO
Please edit this page directly to add comments or specification changes and additions.
Notes / Ideas
- OpenID Connect (built on OAuth) - IETF standard - delegated authentication and authorization (link)
- Facebook Connect
Notes on IVOA Single-Sign-On Profile: Authentication Mechanisms
- Deprecate digital signatures as SOAP services are being replaced by REST services
- Add OpenID/OAuth mechanisn
- From INAF: Look into the use of shibboleth
IVOA document