Towards Secure Single Sign-On

SSSO means different things to different people. We must reach some broadly-acceptable definition for the project. Components are likely to include: We dont want to go off in a unique direction, as for SSSO to be really useful it must be interoperable between organisations. This means tracking work that is going on in the Internet and elsewhere. A few starting points:

IETF:  http://www.ietf.org/

Security Area Director is Jeffrey Schiller <jis@mit.edu> and Marcus Leech <mleech@nortel.ca>

Relevant Working Groups and documents include these (some of which are probably competing or overlapping):

W3C:  http://www.w3.org/

Commercial Certificate Issuers

Existing products related to SSSO

Directory Enabled Networks (DEN)

Initiatives and work-in-progress

Other resources