Although this video is more than 10 years old, it is still the best. I came here after watching two videos for SAML and I felt that this is the best and more knowledgeable.
@thrajguru7 жыл бұрын
The way you conveyed the information is super simple to understand by a layman - Great work!
@elizabeth328010 жыл бұрын
awesome video: usually these are way to drug out: accurate and simple explanation=gratitude
@עידובלייכר3 жыл бұрын
11 years ago and still good
@grahambrown58745 жыл бұрын
What you failed to explain at the beginning, which I would like to have known about, when the user want’s to access an SP, where does the SP get the user ID that it needs to send to the idP, where a check is made to authorise SP usage? Otherwise, a useful video.
@rafaelporto91345 жыл бұрын
that was by far the best explanation about saml on youtube... thanks
@danstroe10176 жыл бұрын
short , concise and simple, thank you !
@SandipPatil-qp2up10 жыл бұрын
very informative, simple and stright to understand. Thank you.
@CheeseBae5 жыл бұрын
2:33 Who is Earl and why do I need to go to him on the internet?
@Jaydyte5 жыл бұрын
Justin He means, for those who don’t know, going to an URL😅, that is a web address on the internet.
@Godlystriker4 жыл бұрын
This made my day
@aravind91144 жыл бұрын
@@Godlystriker Mine too! lol
@manjunathshirageri29454 жыл бұрын
lol
@rishabhtiwari34323 жыл бұрын
Simple and to the point explanation - gratitude.
@LawrenceRitchie4 жыл бұрын
Pretty much echoes the notes I've taken on the subject. Very concise and easy to understand. I will subscribe to your channel now, as it can at times be hard to find concise explanations of technical subjects on KZbin
@fuu8124 жыл бұрын
Clean, short, simple explanation. Thank you!
@xp30925 жыл бұрын
Wow this is more easy to follow and understand. great video dude
@vacalepic67685 жыл бұрын
succinct to the point! However, lack details for beginners to understand fully. For example, Assertion xml was not explained at all as this assertion file is crucial to SSO concept.
@priyanshukant9 жыл бұрын
Awesome !!, SAML enlightening in a simple way , Thanks for sharing.
@csodarudi86426 жыл бұрын
So the user clicks on a link and the federation software starts to work on the IdP side? And what happens between these 2 events? This is the worst explanation of the SP-initiated SSO. Maybe the IdP-initiated SSO would have been a better choice as an introduction to SAML.
@pranavbhat924 жыл бұрын
Concise & complete... Thank you...!!
@daniela.91773 жыл бұрын
This is excellent. Short but very informative.
@LukeChavers10 жыл бұрын
Great vid. However, saying "U-R-L" instead of "Earl" will make you seem 10 years younger.
@nickgilbert12648 жыл бұрын
Yeah I found that so distracting I actually had to rewind the video! :) I wonder if he reads out web addresses like it's 1999 too? Aitch-tee-tee-pee, colon, forward-stroke, forward-stroke.....
@Sooper356 жыл бұрын
lol I caught that too.
@stevenjchang5 жыл бұрын
Yeah I immediately paused the video and went to the comment section after I heard Earl
@free3style7875 жыл бұрын
@@nickgilbert1264 Thats funny :DD
@findsidd5 жыл бұрын
Mike - You have explained well and in simple terms.. If you can also publish IDP initiated SAML SSO, it will be a great help.
@stanleygono71295 жыл бұрын
concise explanation right there. Thank you very much
@avijitchatterjee82285 жыл бұрын
Thanks Mike for this wonderful video. It was very informative indeed.
@nicolaemerceanu5 жыл бұрын
Excellent explanation of SAML! Thank you!
@Corrado493 жыл бұрын
Thanks for the video, better explanation I have found.
@vanillacokejunky6 жыл бұрын
great high level overview, thanks for the explanation
@MohanPatil_Software_Engineer7 жыл бұрын
Very helpful information in easiest way.
@davids40035 жыл бұрын
A 9 year old video does a better job explaining than current literature. Figures.
@arvinddixit0074 жыл бұрын
perfect explanation, simple and crisp .. Thank you
@felipecorrea43524 жыл бұрын
great explanation
@reviewshyd11554 жыл бұрын
Very nice video..
@azaadsk5 жыл бұрын
Simple but clear
@ALXsk85 жыл бұрын
Good and simple explanation, clean as water
@haribhaskar37255 жыл бұрын
Wrapping the concept under a Nut ...Awesome..
@xGBallx7 жыл бұрын
Great video. Thanks for sharing!
@VirajWagh9 жыл бұрын
Right to the point.. 👍
@baladba64036 жыл бұрын
Thanks for the good explanation
@PrinceChingChing5 жыл бұрын
was this an IDP initiated SAML since the SP did not send a SAML request to the IDP?
@shikagohan6 жыл бұрын
what is the word he used at 0:43 "multiple authentification c.." ?
@CarolineWirthle6 жыл бұрын
shikagohan credentials
@pranithkumarkancharla1767 жыл бұрын
informative thank you very much.
@positivityonly74 жыл бұрын
Sir.. I need to integrate saml with next cloud server... I have downloaded the saml libraries but not able to integrate the next cloud application with my IDENTITY ACCESS MANAGEMENT SERVER
@PingIdentityTV4 жыл бұрын
Hi Vishal, for inquiries please reach out to our Support Community (support.pingidentity.com/s/community-home). Thank you!
@rvramesh11 жыл бұрын
Informative!
@ddentrec211 жыл бұрын
Perfect.
@troller4jesus7 жыл бұрын
I don't understand. So you don't have to create an account or profile for the user in the cloud? Don't you typically have to have a mapped account in other applications?
@visionflightsim6 жыл бұрын
Your account is in the IdP. The connections between service providers/cloud providers/apps hosted in the cloud utilize SAML to authenticate users in your idP. Take for example an application hosted in AWS but your IdP is Azure. The SAML connection is between AWS and Azure. YOU create your user's account or assign the role to a group and provide the connection role to the AWS application within Azure. When the user attempts to use the app in AWS, it will go to the IdP and request the validation and follows the process as described in the video above. Most folks now are using ADFS (AD Federated Services) as a two-factor front-end for the user. They authenticate with their UN and pass and then follow the 2FA steps. Once in, they can be routed wherever. Usually to a dashboard within Azure or you can replace it with your own portal, whatever you want. The applications that user has access to can be displayed or linked on that page. The user simply clicks on the link and boom SSO takes over behind the scenes using SAML instead of then having to enter additional creds at the application. BASIC example: User logs in to portal.mycompany.com. They auth using their UN and pass and then 2FA. They are routed to the page after ADFS steps in and completes that process. Then they click on...say...ADP. ADPs connection to the IdP (Azure in this case) is auth'd through SAML. User simply clicks on the ADP button, boom, in to their ADP profile. It works, it's more secure, easier on the management, faster for the user, less chance of phishing or vishing attacks or even social attacks to get authentication. They are in, the SAML connection keeps the connection protected, and the internet footprint of authentication for your organization is HIGHLY reduced. Win win win...and another win lol.
@murmur24105 жыл бұрын
@@visionflightsim . Shouldn't it be mentioned that the user needs to first authenticate with IDP first?
@visionflightsim5 жыл бұрын
@@murmur2410 sometimes. It's not a recommended security practice to mention it at the outside. The users are told internally. Only thing on the outside is the banner that states "screw you don't connect to my stuff...blah blah blah". No evidence to your setup should ever be available on the outside.
@AmineOnline4 жыл бұрын
Tank you
@healthymealthy7753 жыл бұрын
Good stuff
@harim65986 жыл бұрын
Nice into music
@mineralisk4 жыл бұрын
thanks
@9up9up9up5 жыл бұрын
This doesn't differentiate from OAuth.
@joanjohnsen28004 жыл бұрын
Lisa
@AyushmanAdhikary5 жыл бұрын
Ya jwt saml are analogous.. :P
@salvatorefancello17895 жыл бұрын
Chi è che gioca a gioga giue UE oua acontrola a
@Eduardo-ow8mo4 жыл бұрын
no tech deep detail at all
@PaganAbroad5 жыл бұрын
Very poor explanation - nothing on what if any n/w connectivity is require between idp + sp
@ChrisPunches5 жыл бұрын
Literally the worst description of transaction flow I've ever seen. If he knows how saml works I see no evidence of it in this video.
@neowakeup11005 жыл бұрын
here to hack my school website , and this is a track im leaving behind incase they need it
@elmaridodesumadre7 жыл бұрын
good video but the SP and IDP do no talk to each other , instead , the SP redirects the user to the IDP , IDP generates the assertion and profile and then user goes back to the SP who lets the user through so he can access the app , you can check out the SAML flow here : en.wikipedia.org/wiki/Security_Assertion_Markup_Language
@rossdrew92177 жыл бұрын
User accesses SP SP checks with IdP if use is valid **SP->IdP** -not logged in SP redirects to IdP IdP validates user User returns to SP SP checks with IdP if use is valid **SP->IdP** -receives user info SP Authentication continues