SAML 2.0 Shared Credentials Authentication Context Extension and Related Classes

Defines an authentication context extension to the SAML 2.0 Authentication Context specification SAMLAC that allows providers to distinguish whether or not the credential by which a principal authenticates to the identity provider is known to be shared amongst a group of users or unique to that user. Two new Authentication Context classes and associated schemas are also introduced to distinguish between these two cases.

Readers should be familiar with SAMLAC before reading this document.

Produced by:

Security Services (SAML) TC

Voting history:

May 2007

Voting History

Cite as:

Cite as:
[SAML2.0-context-ext] SAML 2.0 Shared Credentials Authentication Context Extension and Related Classes. Edited by Paul Madsen and Ashish Patel. 23 May 2007. OASIS Committee Specification 01. http://docs.oasis-open.org/security/saml/SpecDrafts-Post2.0/sstc-saml-context-ext-sc-cs-01.html. Latest version: http://docs.oasis-open.org/security/saml/SpecDrafts-Post2.0/sstc-saml-context-ext-sc.html.