Security Assertion Markup Language (SAML)

SAML is a standard used for exchanging authentication and authorization data between parties, particularly between identity providers and service providers.

It uses XML-based messages to facilitate the transfer of authentication data. Users are redirected from a service provider to an identity provider for authentication.

Details

Type: XML-based Open Standard

Purpose: Enables secure web-based authentication and authorization.

Flow:

  1. User attempts to access a service provider (SP).

  1. Redirected to the identity provider (IdP) for authentication.

  1. The IdP returns a SAML assertion to the SP, confirming the user's identity.

Use Cases: Frequently used for enterprise applications and B2B scenarios, particularly in organizations needing strong security measures.

Integration: More complex than CAS and OIDC, typically used in larger enterprises with existing infrastructure.

Available To
Staff, Students and Alumni (Selected Application)
Service Fee

Free

Service Hours

7×24

Getting Started

You may refer to the website below for more information about SAML client configuration:

Remark

The application owner needs to manage access control through the returned attributes.

Additional Resources


Learn More

Support

General Enquiries cchelp@ust.hk
Suggestions & Complaints cclisten@ust.hk
Serviceline +852-2358-6200