<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: Single Sign-On, SAML, and Authentication in Documentum</title>
	<atom:link href="http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/feed/" rel="self" type="application/rss+xml" />
	<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/</link>
	<description>Ponderings on Life, the Universe, and Information</description>
	<lastBuildDate>Fri, 10 Feb 2012 22:28:54 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: paintball barrel</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-15792</link>
		<dc:creator><![CDATA[paintball barrel]]></dc:creator>
		<pubDate>Tue, 29 Jun 2010 02:30:32 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-15792</guid>
		<description><![CDATA[Good post, doing some research on saml and ran across this.]]></description>
		<content:encoded><![CDATA[<p>Good post, doing some research on saml and ran across this.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Raoul B</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-11218</link>
		<dc:creator><![CDATA[Raoul B]]></dc:creator>
		<pubDate>Wed, 02 Dec 2009 16:05:00 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-11218</guid>
		<description><![CDATA[Hi Bab,

actually I didn&#039;t find much info on developing on CenterStage but if you look on our web site (www.solfit.ch) you will see that we already implemented SSO for CenterStage based on kerberos.
You need to understand java, dwr, and ExtJS (ajax).

I thought you might be interested...
Raoul]]></description>
		<content:encoded><![CDATA[<p>Hi Bab,</p>
<p>actually I didn&#8217;t find much info on developing on CenterStage but if you look on our web site (www.solfit.ch) you will see that we already implemented SSO for CenterStage based on kerberos.<br />
You need to understand java, dwr, and ExtJS (ajax).</p>
<p>I thought you might be interested&#8230;<br />
Raoul</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bab</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-6731</link>
		<dc:creator><![CDATA[Bab]]></dc:creator>
		<pubDate>Wed, 26 Aug 2009 08:16:58 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-6731</guid>
		<description><![CDATA[Hi,

great blog ! I love word press.

Maybe this isn&#039;t the best place for my question.... but...
I&#039;m working with Center Stage and I&#039;d like to integrate my SSO system.

I&#039;m looking for information, guide for developers.  Nothing.

Do you have any idea?

Thank you.]]></description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>great blog ! I love word press.</p>
<p>Maybe this isn&#8217;t the best place for my question&#8230;. but&#8230;<br />
I&#8217;m working with Center Stage and I&#8217;d like to integrate my SSO system.</p>
<p>I&#8217;m looking for information, guide for developers.  Nothing.</p>
<p>Do you have any idea?</p>
<p>Thank you.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brinda</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-4798</link>
		<dc:creator><![CDATA[Brinda]]></dc:creator>
		<pubDate>Thu, 18 Jun 2009 21:50:09 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-4798</guid>
		<description><![CDATA[Hi,

I am lookin towards integrating Documentum and BPM to an external application. Both the EMC app server and the external application share the same authentication store and SSO provider. 

Can you please let me know if there is there an API exposed through DFS to perform the SSO (token based authentication) from an external product to documentum?

Is there a way to access the SSO generated token from within the form adaptors and the BPM  events to perform an SSO login to the external system]]></description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>I am lookin towards integrating Documentum and BPM to an external application. Both the EMC app server and the external application share the same authentication store and SSO provider. </p>
<p>Can you please let me know if there is there an API exposed through DFS to perform the SSO (token based authentication) from an external product to documentum?</p>
<p>Is there a way to access the SSO generated token from within the form adaptors and the BPM  events to perform an SSO login to the external system</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Pie</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3075</link>
		<dc:creator><![CDATA[Pie]]></dc:creator>
		<pubDate>Thu, 17 Apr 2008 14:26:25 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3075</guid>
		<description><![CDATA[I would suggest two things.  One would be to read my &lt;a href=&quot;http://wordofpie.wordpress.com/2008/04/06/ecm-design-patterns/&quot; rel=&quot;nofollow&quot;&gt;more recent post on Authentication Design Patterns&lt;/a&gt; and the &lt;a href=&quot;http://forums.developer.emc.com/thread.jspa?threadID=518&quot; rel=&quot;nofollow&quot;&gt;discussion&lt;/a&gt; on the &lt;a href=&quot;http://developer.emc.com/developer/&quot; rel=&quot;nofollow&quot;&gt;EMC Developer Network&lt;/a&gt;.  The Network itself is a useful resource.

From a purely technical perspective, if SSO is not an option, I would continue your course,  but maybe encrypt and move the authentication information into a properties file for use in your code.  If you are feeling adventurous, try the Generated Credential Authentication approach that I mention.]]></description>
		<content:encoded><![CDATA[<p>I would suggest two things.  One would be to read my <a href="http://wordofpie.wordpress.com/2008/04/06/ecm-design-patterns/" rel="nofollow">more recent post on Authentication Design Patterns</a> and the <a href="http://forums.developer.emc.com/thread.jspa?threadID=518" rel="nofollow">discussion</a> on the <a href="http://developer.emc.com/developer/" rel="nofollow">EMC Developer Network</a>.  The Network itself is a useful resource.</p>
<p>From a purely technical perspective, if SSO is not an option, I would continue your course,  but maybe encrypt and move the authentication information into a properties file for use in your code.  If you are feeling adventurous, try the Generated Credential Authentication approach that I mention.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sujeet</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3073</link>
		<dc:creator><![CDATA[Sujeet]]></dc:creator>
		<pubDate>Wed, 16 Apr 2008 21:44:06 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3073</guid>
		<description><![CDATA[thanks for the info about licesing, i wil let my PM knows about the risk involved. back to my problem, do you have any hints for accomplishing this..

sujeet]]></description>
		<content:encoded><![CDATA[<p>thanks for the info about licesing, i wil let my PM knows about the risk involved. back to my problem, do you have any hints for accomplishing this..</p>
<p>sujeet</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Pie</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3072</link>
		<dc:creator><![CDATA[Pie]]></dc:creator>
		<pubDate>Wed, 16 Apr 2008 21:13:01 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3072</guid>
		<description><![CDATA[If your purpose is to provide search without authentication, then aside from losing the auditing and authorization for each user, you need to be sure to be cognizant of the licensing issues.]]></description>
		<content:encoded><![CDATA[<p>If your purpose is to provide search without authentication, then aside from losing the auditing and authorization for each user, you need to be sure to be cognizant of the licensing issues.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sujeet</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3071</link>
		<dc:creator><![CDATA[Sujeet]]></dc:creator>
		<pubDate>Wed, 16 Apr 2008 20:43:27 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3071</guid>
		<description><![CDATA[thanks for the quick reply. The idea is to populate the Advaced Search Page without propmting the login screen. I am hardcoding the userid,  password, docbase name and domain. 

Sujeet]]></description>
		<content:encoded><![CDATA[<p>thanks for the quick reply. The idea is to populate the Advaced Search Page without propmting the login screen. I am hardcoding the userid,  password, docbase name and domain. </p>
<p>Sujeet</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Pie</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3070</link>
		<dc:creator><![CDATA[Pie]]></dc:creator>
		<pubDate>Wed, 16 Apr 2008 20:14:11 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3070</guid>
		<description><![CDATA[Short answer: Yes.

Long answer: It depends on what you are trying to do.  If you are just running scripts, you can use the DFC and connect through the code.

So my question is, what exactly are you trying to accomplish? A simple use-case should help to clarify things.]]></description>
		<content:encoded><![CDATA[<p>Short answer: Yes.</p>
<p>Long answer: It depends on what you are trying to do.  If you are just running scripts, you can use the DFC and connect through the code.</p>
<p>So my question is, what exactly are you trying to accomplish? A simple use-case should help to clarify things.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sujeet</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3069</link>
		<dc:creator><![CDATA[Sujeet]]></dc:creator>
		<pubDate>Wed, 16 Apr 2008 18:43:31 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-3069</guid>
		<description><![CDATA[Hi,

I am just wandering, can we access the contents from the documentum repository without prompting the user to enter the login information. i would like to run the scripts background. Help really appreciated.

Regards,
Sujeet]]></description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>I am just wandering, can we access the contents from the documentum repository without prompting the user to enter the login information. i would like to run the scripts background. Help really appreciated.</p>
<p>Regards,<br />
Sujeet</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: James</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-263</link>
		<dc:creator><![CDATA[James]]></dc:creator>
		<pubDate>Tue, 14 Aug 2007 10:31:05 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-263</guid>
		<description><![CDATA[My blog mentioned the need for encryption between the DFC and Documentum which is different than the content server?]]></description>
		<content:encoded><![CDATA[<p>My blog mentioned the need for encryption between the DFC and Documentum which is different than the content server?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Pie</title>
		<link>http://wordofpie.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-214</link>
		<dc:creator><![CDATA[Pie]]></dc:creator>
		<pubDate>Wed, 08 Aug 2007 03:11:37 +0000</pubDate>
		<guid isPermaLink="false">http://wordofpie.wordpress.com/2007/08/07/single-sign-on-saml-and-authentication-in-documentum/#comment-214</guid>
		<description><![CDATA[James has &lt;a href=&quot;http://duckdown.blogspot.com/2007/08/single-sign-on-saml-and-authentication.html&quot; rel=&quot;nofollow&quot;&gt;already replied&lt;/a&gt;.  For more information on Documentum&#039;s security, check &lt;a href=&quot;http://software.emc.com/products/content_management/documentum_family/platform_architecture/enterprise_class_infrastructure/platform/security/security.htm&quot; rel=&quot;nofollow&quot;&gt;this page&lt;/a&gt; on their website. Most people don&#039;t implement all of the features of encryption between the client (Web Application Server) and the Content Server.  It is there and only requires a digital certificate.

Oh, and I think a better description of what Documentum stores from LDAP is cached information.  If the LDAP server(s) that Documentum is aware of is down, those users do not get into the system.]]></description>
		<content:encoded><![CDATA[<p>James has <a href="http://duckdown.blogspot.com/2007/08/single-sign-on-saml-and-authentication.html" rel="nofollow">already replied</a>.  For more information on Documentum&#8217;s security, check <a href="http://software.emc.com/products/content_management/documentum_family/platform_architecture/enterprise_class_infrastructure/platform/security/security.htm" rel="nofollow">this page</a> on their website. Most people don&#8217;t implement all of the features of encryption between the client (Web Application Server) and the Content Server.  It is there and only requires a digital certificate.</p>
<p>Oh, and I think a better description of what Documentum stores from LDAP is cached information.  If the LDAP server(s) that Documentum is aware of is down, those users do not get into the system.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

