par janua | Mar 30, 2015 | Communauté, Gestion des Identités, Open Source, Sécurité, SSO
OpenAM 12 tricks: I recently had to find a solution built on OpenAM where the business requirements were to be able to display a form to end users accessing a SAML SP (among several) for the first time, in order to let them make a choice upon which SAML assertions...
par janua | Mar 26, 2015 | Communauté, Open Source, Sécurité, SSO
This is a simple demo showing a mobile application, in this case running in an iPhone simulator, interacting with ForgeRock OpenAM 12.0 REST API’s. A basic session token interaction is demonstrated along with demonstration and discussion on how authorization deci...
par janua | Fév 5, 2015 | Communauté, Gestion des Identités, Open Source, Sécurité, SSO
OpenAM security is a serious matter, especially when this software has a critical role in your architecture, which is often the case. So here are some advices to avoid OpenAM security holes. 1 – OpenAM lower layers security To avoid security flaws in your OpenAM...
par janua | Jan 6, 2015 | Communauté, Developpement, LDAP, Open Source, Produit
OpenLDAP Password Policy Module: the password policy overlay in OpenLDAP provides the option for calling an external module to check the passwords complexity requirements. We modified this custom module in order to implement Active Directory compatibility. This open...
par janua | Déc 30, 2014 | Developpement, LDAP, Open Source, Produit
White Pages by Janua offers an highly customizable, easy to configure and deploy web interface/web app. White Pages by Janua allows users to access an LDAP directory from a desktop computer, a laptop, or even from a tablet or smartphone. It can also be incorporated on...
par janua | Oct 17, 2014 | Communauté, LDAP, Open Source
A new security issue hit the streets this week: the Poodle SSL bug. While the vulnerability is mostly triggered by the client, it’s also possible to prevent attack by disabling the use of SSLv3 all together on the server side, eg. OpenDJ. from Ludovic Poitou blog...