function readOnly(count){ }
Starting November 20, the site will be set to read-only. On December 4, 2023,
forum discussions will move to the Trailblazer Community.
+ Start a Discussion
RonKingRonKing 

Options for SAML generation under Federated SSO implementation

Hello,

 

I am researching SSO configurations for our company's SF CRM solution.

 

We are currently authenticating users through assigned digital certificates against our corporate LDAP. We would like to extend this to pass them through to our SF application using SSO. A federated authentication configuration appears to be our best option, but we are undecided as to which SAML tool to use under this scenario.

 

We are considering two options: Oracle OIF and Sun OpenSSO. Either may work under our architecture, but I wanted to get further feedback from the community as to the best tool to use.

 

Has anyone in the community used either of these products in their SSO implementations?

If so, how would you rate OIF or OpenSSO in terms of ease of implementation, configuration or support?

 

I would appreciate any information that you could provide on either tool.

 

Thanks,

 

Ron

iankbarnettiankbarnett

If this is your primary use case (SSO to SFDC) -- I think you are trying to swat a fly with a automobile. It will take you 1-3 weeks just to get the Oracle/Sun software installed -- plus the required HW and administrative overhead will set you back a tidy sum. 

 

Also, industry rumor is that Oracle is not keeping the Sun OpenSSO product but is instead using their own moving forward so you may want to take that into consideration.

 

Please take a look at our solution(s) from Ping Identity.

 

http://sites.force.com/appexchange/apex/results?type=Apps&keywords=ping

 

We are the industry leader in Federation and SSO and close partners with SFDC and can usually get customers up and running in a day or so.

 

Hope this helps -

 

Ian