|
|
Paper: |
Enabling OpenID Authentication for VO-integrated Portals |
Volume: |
461, Astronomical Data Analysis Software and Systems XXI |
Page: |
423 |
Authors: |
Plante, R.; Yekkirala, V.; Baker, W. |
Abstract: |
To support interoperating services that share proprietary data and
other user-specific information, the VAO Project provides login
services for browser-based portals built on the open standard,
OpenID. To help portal developers take advantage of this service, we
have developed a downloadable toolkit for integrating OpenID single
sign-on support into any portal. This toolkit provides APIs in a few
languages commonly used on the server-side as well as a command-line
version for use in any language. In addition to describing how to use
this toolkit, we also discuss the general VAO framework for single
sign-on. While a portal may, if it wishes, support any OpenID
provider, the VAO service provides a few extra features to support VO
interoperability. This includes a portal's ability to retrieve (with
the user's permission) an X.509 certificate representing the
authenticated user so that the portal can access other restricted
services on the user's behalf. Other standard features of OpenID allow
portals to request other information about the user; this feature will
be used in the future for sharing information about a user's group
membership to enable sharing within a group of collaborating
scientists. |
|
|
|
|