SSO comparison request from executive management

IAM David Bantz dabantz at
Fri Dec 18 19:50:05 EST 2015

Thanks Tom. I will include a reference to the software recommendation (just
Shibb and SimpleSAMLphp).


On Fri, Dec 18, 2015 at 3:20 PM, Tom Scavo <trscavo at> wrote:

> On Fri, Dec 18, 2015 at 6:24 PM, IAM David Bantz <dabantz at>
> wrote:
> > As I feared, vendor messages maligning Shibboleth as an outdated solution
> > that is a nightmare to manage have triggered the following request from
> my
> > executive management:
> >
> >> David,
> >> I continue to get messages (primarily from Ping) about options to Shib.
> >> Do you have time to do a quick comparison (functionality and cost) of
> Shib,
> >> Ping and other vendors that should be on our radar for UA?
> >
> > I've replied briefly indicating why I regard the statements about
> Shibboleth
> > as false, but I'm pleading again for a strong well-grounded response to
> this
> > request.
> The InCommon Federation Interoperability Working Group [1] chaired by
> Walter Hoehn from the University of Memphis, is in the final stages of
> preparing a SAML V2.0 Implementation Profile for Federation
> Interoperability (linked on the WG home page). I imagine you could use
> this document to compare the functionality of Shibboleth and
> PingFederate, but total cost of ownership is another matter, I'm not
> sure how to measure that in each case.
> There is also the SAML Software Guidelines [2] published by InCommon.
> In order for PingFederate (or any implementation) to be mentioned on
> that page, it would have to correctly consume InCommon metadata. Apart
> from the implementations already mentioned on that page, I don't know
> of any software that does that.
> Hope this helps,
> Tom
> [1]
> [2]
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <>

More information about the users mailing list