Skip Ribbon Commands Skip to main content

Description

The goal of NIH’s Federated Identity service is to give a person the ability to use the same user name, password, or other personal identification to access multiple applications or data sources securely and seamlessly by relying on the identity provider’s authentication process rather than NIH’s. Federated Identity service is enabled through the use of open industry standards and/or openly published specifications.

Please view the NIH Federation Identity - Identity Provider Brick below:

Tactical

(0-2 years)

  • Active Directory Federated Services
  • Identity Provider (NED, InCommon, Active Directory Application Mode)
  • Identity Lifecycle Manager (ILM)
  • LDAP
  • Directory Services (edDirectory, Apple Open Directory, ActiveDirectory)

 

Strategic

(2-5 years)

  • Identity Provider (NED, ibroker (identity service provider for identity services))

Retirement

(To be eliminated)

Containment

(No new development

  • Oracle Internet Directory (Commons, other NIH Oracle directories)
  • NIH local directories duplicating additional identities

Baseline

(Today)

  • Active Directory (NIH, NIH External)
  • Oracle Internet Directory (Commons)
  • LDAP
  • Apple Open Directory
  • eDirectory

Emerging

(To track)

  • OpenID
  • OASIS
  • Liberty Aliance

Comments

N/A

Time Table

This architecture definition approved on: June 25, 2008

The next review is scheduled in: TBD