From the course: Cloud Data, Platform, and Applications Security by Pearson

Unlock this course with a free trial

Join today to access over 25,200 courses taught by industry experts.

Identity providers

Identity providers

In the previous lesson, we introduced federated access, and we mentioned one of the most important aspects of the triad of federated access. There's three parties. The identity provider, the actual consumer who's consuming the resources, and the service or the service provider. So let's look at that first very important piece, the IDP. Often, an IDP is an organizational directory or a service, like a token service, that stores and verifies user identity information. Many organizations will still host their own directory services and then connect to a cloud or another service or service provider. The identity provider typically stores much more information about the user or the subject than is needed to authorize that particular consumer. So for example, in a directory service, I might have information about my address or my beneficiary of my life insurance policy, things like that. I don't need that information to be shared with a service or a service provider. They're given…

Contents