ow2con'14 - lemonldap::ng 1.4 new features, linagora

22
David COUTADEUR Clément OUDOT [email protected] [email protected] What's new in LemonLDAP::NG 1.4?

Upload: ow2-consortium

Post on 25-Jun-2015

100 views

Category:

Technology


0 download

DESCRIPTION

LemonLDAP::NG is a Free Software dédicated to SSO and access control, used in numerous french administrations and other organizations. Developped since 10 years, it evolves constantly bringing new features at each version. The 1.3 version has been exposed during the last OW2 con'. We will present the 1.4 version that was released in July 2014, with plenty of new features like session cache sharing, bootstrap skin, captcha cluster mode, Nginx support trough LUA Handler and self register service.

TRANSCRIPT

Page 1: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

David COUTADEUR Clément [email protected] [email protected]

What's new in LemonLDAP::NG 1.4?

Page 2: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

2

About us

Page 3: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

3

LemonLDAP::NG Presentation

Page 4: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

4

Some history

2003 2006 2010 2014

Project creation

NG version

SAMLCAS

OpenID

1.4 release

Page 5: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

5

Single Sign On

User

Web Application

WebSSO Portal

1

2

3

Page 6: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

6

Access Control

UserWeb

Application

1

SSO

2

Authorization

3

Page 7: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

7

Components

CommonCommon

ManagerManager HandlerHandler

PortalPortal

Administration interface

User interactions

Applications protection

Page 8: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

8

Authentication backends

LDAPLDAPADAD

ApacheApache SAMLSAML

CASCAS RadiusRadius OpenIDOpenID

WebIDWebID

BrowserBrowserIDID

DBIDBI

YubikeyYubikey

Page 9: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

9

Self Service

Password Password changechange

Password Password resetreset

Login Login historyhistory

Page 10: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

10

Identity protocols gateway

SAMLSAMLCASCAS

OpenIDOpenID

Page 11: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

11

New features of version 1.4

Page 12: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

12

Bootstrap Skin

Page 13: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

13

Self register service

Fill a form

First nameLast nameEmail

Validate by clicking link in email

Receive login and password in email

Page 14: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

14

use Mouse

Configuration Configuration attributesattributes SessionsSessions

HandlerHandler CaptchaCaptcha

Cluster modeCluster mode

Page 15: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

15

Session identifiers

MD5SHA256

8c7fef2b3820ecdea49614be7b769c62

9be0bab50d1c14b51264a7194fc2517cb25a5788e860cf672823dff434348dba

Page 16: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

16

SAML IDP SSO initiated

11

22

IdentityProvider

ServiceProvider

http://auth.example.com/saml/singleSignOn?IDPInitiated=1&spConfKey=myserviceprovider

Page 17: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

17

Nginx Support

LUA Perl

Work in progressHandler available on GitHub

Page 18: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

18

Conclusion

Page 19: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

19

Stay tunedhttp://lemonldap-ng.org

IRC #lemonldap-ng@freenode

http://mail.ow2.org/wws/

@lemonldapng

http://www.ohloh.net/p/lemonldap-ng

Page 20: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

20

Thanks

OW2 Staff LemonLDAP::NG team LINAGORA

Page 21: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

21

Questions?

Page 22: OW2con'14 - LemonLDAP::NG 1.4 New features, Linagora

22

Thanks for your attention