Identity of Shibboleth-based multi-resource on online experimental platform

Yu Zhang,Huimei Lu,Yong Xiang
DOI: https://doi.org/10.3969/j.issn.1001-3695.2017.03.061
2017-01-01
Abstract:Federated identity was applied to achieve single-sign-on for the situation in which users were from different organizations.However,the diversity of resources brought about trouble of management.To solve the problem,this paper selected Shibboleth as a method of federated identity.System in federation provided REST API of their own resources,and released the authorization code which identified the access rights of resource by the attribute publishing policy in Shibboleth,thus it accessed multi-resouce by users from different organazations after unified authentication.Taking online experimental platform based on OpenEdX as an example,it implemented unified authentication and authorization of complex resources.It applied Shibboleth to authenticate users,coupled with REST API and authorization code,and it shared complex resources during several systems.Moreover,it developed some XBlocks on OpenEdX to share data with other systems.
What problem does this paper attempt to address?