Shibboleth Web-proxy for Single Sign-on of Cloud Services

Single Sign-On (SSO) allows users to access services, for which they possess sufficient access rights, without re-authentication once they are authenticated successfully. Shibboleth supports SSO of web services and allows building federations. In this paper a Shibboleth web proxy is described, which integrates a Shibboleth service provider to manage authentication and extends Cloud management systems by enabling SSO of multiple cloud services. It is shown how this approach can be used for highly dynamic Cloud environments, where services are often added and removed. The Shibboleth web proxy implementation has been contributed to the Open Source Community and is made available in the OpenNebula EcoSystem.

[1]  Wolfgang Hommel Campus Single Sign-On und hochschulübergreifendes Identity Management , 2010 .

[2]  Andrew Richards,et al.  Shibboleth Access for Resources on the National Grid Service (SARoNGS) , 2009, 2009 Fifth International Conference on Information Assurance and Security.

[3]  Wei Jie,et al.  A Guanxi Shibboleth based Security Infrastructure , 2008, 2008 12th Enterprise Distributed Object Computing Conference Workshops.

[4]  Anthony Sulistio,et al.  Cloud Infrastructure & Applications - CloudIA , 2009, CloudCom.