Government ID, Smart Cards, Identification and Authentication

Danish Government says 'yes' to SAML 2.0 and encourages Microsoft to support those specifications

Thursday, April 27, 2006

The Danish Government this week agreed to stick with its endorsement of SAML 2.0 (Security Assertion Markup Language) as the “recommended standard for federation,” and urged Microsoft to support “customer choice by implementing support for SAML 2.0 in their operating system…” Using privately-controlled specifications could “stifle innovation…” the report adds. SAML is an XML standard for exchanging authentication and authorization data between security domains.


The Danish IT Architecture Committee has decided to stand firm on SAML 2.0 as the recommended standard for federation. The OASIS ratified SAML 2.0 standard has, since April 2005, been the officially recommended standard for the federation in the Danish public sector.

Microsoft’s recent decision to ship a federation service, as part of its Windows 2003 server operating system without supporting the SAML 2.0 standard challenges this recommendation because the WS-Federation specification implemented by Microsoft cannot interoperate with SAML 2.0.

Denmark thinks Microsoft should support customer choice by implementing support for SAML 2.0 in their operating system on equal footing with the WS-Federation specification.

Basing e-government on privately controlled specifications that may stifle innovation is not desirable from the Danish point of view. As a consequence the Danish IT Architecture committee has decided to stand firm on the SAML 2.0 recommendation. At the same time the committee has decided to try and work towards convergence in the area of federation standards through dialogue with EU, other governments, suppliers and standardizations bodies. For further information, see: europa.eu.int/idabc/en/document/5538/194[end] 

SPYRUS Inc. has received a third FIPS 140-2 Level 3 verification for its Hydra Privacy Card, the first and only commercial product of its kind. The USB encryption devices have already received the certificate 1179 for file-based encryption and certificate 1320 for the SPYCOS crypto core, as well as the certificate 1394 for the XTS-AES sector-based encryption devices.

read more »

PhoneFactor’s SSL/TLS authentication project has been officially released by vendors after just one year in the making. Microsoft began releasing patches for all supported versions of Windows last week and the SSL/TLS vulnerability has been addressed by all major vendors without any known problems taking place.

read more »

Ceelox has announced it has earned the “Compatible with Windows 7” due to its work with Microsoft in utilizing the Windows 7 Windows Biometric Framework, a set of components designed to better support biometric devices and built into the operating system, to create compatibility with its own offerings.

read more »

The Entrust IdentityGuard authentication system is ready for deployment amongst enterprises seeking protection on Microsoft Windows desktops and servers. The multi-factor authentication technology is designed specifically for Microsoft Windows clients. Entrust has reported that IdentityGuard can operate on more than 90% of the world’s Microsoft Windows desktops.

read more »

As part of a new partnership with RSA Secured Partner Program, Ping Identity has certified that their PingFederate technology is compatible with the RSA’s SecurID two-factor authentication solution. This collaboration will result in a comprehensive user-friendly solution to authenticate to a range of Cloud identity applications.

read more »

Microsoft has partnered with InCommon Affiliate for a program that’s responsible for providing the education community with a way to connect with affiliate partners who are able to help build the necessary underlying online infrastructure on campus that supports federated access.

read more »