Thursday, April 30, 2009


In my deck at the RSA Workshop, I referred to all of OpenID, SAML, ID-WSF, cards, OAuth etc as federated technologies.

Even as I made the statement, I was prepared to duck, wincing mentally in anticipation of objections as many disagree with the generalization, liking to use 'federation' to distinguish the various protocols.

Nice to see I'm not alone.


Anonymous said...

I don't get it. Why would you doubt that. I thought there was agreement that at the end of the day SAML, WS-Fed, OpenID and OAuth are all federation protocols.

Paul Madsen said...

I don't doubt it myself. But others use it as a 'shibboleth' (hah) to separate SAML etc from OpenID etc

Anonymous said...

Why would my comment show up as Anonymous? You must take privacy of your readers very seriously.