Skip to main content

SAML 2.0 implementation for the NERC DataGrid based on the Java OpenSAML library

Project description

SAML 2.0 implementation for use with the Earth System Grid Federation Attribute and Authorisation Query interfaces. The implementation is based on the Java OpenSAML libraries. An implementation is provided with ElementTree but it can easily be extended to use other Python XML parsers.

Releases

0.8.1

  • Fixes for SAML response processing - allow for more liberal check of response type and for case for status message value not returned

0.8.0

  • Re-factored to use ndg-httpsclient for client HTTP calls in place of M2Crypto.

  • decoupled SAML bindings classes from types.

0.7.0

  • add command line script for making attribute and authorisation decision query client calls.

0.6.0

  • added support for SAML 2.0 profile of XACML v2.0 (http://docs.oasis-open.org/xacml/2.0/access_control-xacml-2.0-saml-profile-spec-os.pdf), specifically the SAML request extensions: XACMLAuthzDecisionQuery and XACMLAuthzDecisionStatement. This an alternative to the SAML defined AuthzDecisionQuery. It enables a richer functionality for expressing queries and authorisation decisions taking advantage of the full capabilities of a XACML PDP.

  • fixed bug in SAML SOAP binding code: RequestBaseSOAPBinding and derived classes to act as a query factory, instead of container, for thread safety.

    Thanks to Richard Wilkinson for these contributions.

0.5.5

  • allow passing a client certificate chain in client HTTPS requests

0.5.4

  • fix for ndg.saml.saml2.binding.soap.server.wsgi.queryinterface.SOAPQueryInterfaceMiddleware: bug in issuerFormat property setter - setting issuerName value.

0.5.3

  • fix for ndg.soap.utils.etree.prettyPrint for undeclared Nss.

0.5.2

  • fix for applying clock skew property in queryinterface WSGI middleware, and various minor fixes for classfactory module and m2crytpo utilities.

0.5.1

  • fix for date time parsing where no seconds fraction is present, fixed error message for InResponseTo ID check for Subject Query.

0.5

  • adds WSGI middleware and clients for SAML SOAP binding and assertion query/request profile.

It is not a complete implementation of SAML 2.0. Only those components required for the NERC DataGrid have been provided (Attribute and AuthZ Decision Query/ Response). Where possible, stubs have been provided for other classes.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

ndg_saml-0.8.1.tar.gz (110.5 kB view details)

Uploaded Source

File details

Details for the file ndg_saml-0.8.1.tar.gz.

File metadata

  • Download URL: ndg_saml-0.8.1.tar.gz
  • Upload date:
  • Size: 110.5 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No

File hashes

Hashes for ndg_saml-0.8.1.tar.gz
Algorithm Hash digest
SHA256 f90a52f5880cde5e0d08d5d57f3347d2870fa4b8ef173e335a0ac5dac5967a60
MD5 3931ac22d5e153a0987779c028c2a4a6
BLAKE2b-256 6f041b3ebe52e02f4a72727b73dbb87540e535abab0d56a54176a2cfd465d4d8

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page