Jump to content

OpenID Connect

From Wikipedia, the free encyclopedia
This is an old revision of this page, as edited by Brouhaha (talk | contribs) at 05:09, 7 June 2019 (Open Source Providers: change list of open source providers to an unnumbered list). The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.

OpenID Connect (OIDC) is an authentication layer on top of OAuth 2.0, an authorization framework.[1] The standard is controlled by the OpenID Foundation.

Description

OpenID Connect is a simple identity layer on top of the OAuth 2.0 protocol, which allows computing clients to verify the identity of an end-user based on the authentication performed by an authorization server, as well as to obtain basic profile information about the end-user in an interoperable and REST-like manner. In technical terms, OpenID Connect specifies a RESTful HTTP API, using JSON as a data format.

OpenID Connect allows a range of clients, including Web-based, mobile, and JavaScript clients, to request and receive information about authenticated sessions and end-users. The specification suite is extensible, supporting optional features such as encryption of identity data, discovery of OpenID Providers, and session management.[1]

Open Source Providers

There are several Open Source implementations of OpenID connect providers, including:

Adoption

Organizations that have started to use OpenID Connect include the following:

  1. Auth0[5],
  2. Authentiq[6],
  3. ForgeRock,
  4. Gigya,[7]
  5. 10Duke,[8]
  6. Amazon,
  7. Steam,[9]
  8. Centrify,[10]
  9. The Chilean government,[11]
  10. Deutsche Telekom,[12]
  11. Google,[13]
  12. IBM,[14]
  13. Janrain,[15]
  14. Microsoft,[16]
  15. Okta,[17]
  16. OneLogin,[18]
  17. Ping Identity,[19]
  18. Salesforce,[20]
  19. The Nomura Research Institute of Japan,[21]
  20. VMware,[22]
  21. General Electric,
  22. i-Sprint Innovations[23],
  23. The Norwegian government.[24],
  24. Cidaas customer identity management[25],
  25. Quest- One Identity,
  26. CA Technologies,
  27. Onegini[26]

See also

References

  1. ^ a b "OpenID Connect". OpenID Foundation. Retrieved 2016-04-18.
  2. ^ MitreID OIDC IdP Implementation
  3. ^ DEX, an OIDC Provider with Pluggable Connectors
  4. ^ [1]
  5. ^ Auth0 OpenID Connect Protocol Reference
  6. ^ Authentiq Developer Documentation
  7. ^ OpenID Connect
  8. ^ 10Duke Identity Provider, 10duke.com. Retrieved 25 July 2016.
  9. ^ OpenID Connect Support for Amazon Cognito, 2014, Jeff Barr, amazon.com. Retrieved 25 July 2016.
  10. ^ Custom OpenID Connect applications, centrify.com. Retrieved 25 July 2016.
  11. ^ OpenID Connect en ClaveÚnica, 2016, claveunica.gob.cl
  12. ^ OpenID Connect @ Deutsche Telekom, 2014, Dr. Torsten Lodderstedt, gsma.com. Retrieved 25 July 2016.
  13. ^ OpenID Connect, 2016, google.com. Retrieved 25 July 2016.
  14. ^ OpenID Connect, 2016, ibm.com. Retrieved 25 July 2016.
  15. ^ "Janrain Supports OpenID Connect".
  16. ^ OpenID Connect and OAuth 2.0 support in Azure Active Directory has GA’d!, 2014, Alex_Simons, microsoft.com. Retrieved 25 July 2016.
  17. ^ OpenID Connect, okta.com. Retrieved 25 July 2016.
  18. ^ Onelogin Supported Platforms and Standards, 2016, Leif Brown, onelogin.com. Retrieved 25 July 2016.
  19. ^ OpenID Connect, pingidentity.com. Retrieved 25 July 2016.
  20. ^ Inside OpenID Connect on Force.com, 2014, Pat Patterson, pingidentity.com. Retrieved 25 July 2016.
  21. ^ "The OpenID Foundation Launches the OpenID Connect Standard".
  22. ^ "vmware/lightwave". GitHub. Retrieved 2016-12-01.
  23. ^ "OpenID Connect(UAM)". i-sprint.com. Retrieved 2017-04-11.
  24. ^ https://difi.github.io/idporten-oidc-dokumentasjon/index.html
  25. ^ https://www.cidaas.com/cidaas-gets-openid-certificate/
  26. ^ Onegini OpenID Connect Protocol Reference