224
Novell Access Manager 3.1 SP2 Identity Server Guide
n
ov
do
cx (e
n)
16
Ap
ril 20
10
Managed cards come from an identity provider. When the users interact with the Identity Server,
they can install a managed card from the Identity Server into the CardSpace client. The managed
card provides metadata to CardSpace about how to interact with the Identity Server, which includes
the available attributes (claims).
Personal cards are created with the CardSpace client software, and the user decides which attributes
are available.
The purpose of a card is to define the source for the identity, the provider of the authentication token,
and the credentials provided in the token.
Figure 8-1
illustrates that the provider for the identity and
token can be either an identity provider when a managed card is selected or the CardSpace client
when a personal card is selected.
Figure 8-2
illustrates the process when a relying party requests a token.
Figure 8-2
Using a Card for Authentication
1. The user requests access to an application, and the application sends the request to the relying
party.
2. The relying party returns the security token requirements, which include the issuer ID, the
required attributes, and the token type to CardSpace.
3. The CardSpace client software highlights the cards that meet the requirements, and the user
selects the card to use.
Personal Card
CardSpace Client
Relying Parties
X
Y
Z
Identity Providers
A
B
C
Managed Card
Managed Card
1
2
4
3
5
Application
Security Token
Security
Token
Содержание ACCESS MANAGER 3.1 SP2 - README 2010
Страница 4: ...4 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Страница 12: ...12 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Страница 158: ...158 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Страница 172: ...172 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Страница 182: ...182 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Страница 290: ...290 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Страница 362: ...362 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Страница 374: ...374 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...