[X] Close

Thank You

We will be get back to you right away!

Official Contact Form

[X] Close







  • By giving Gluu your e-mail address or telephone number, you agree to allow Gluu to contact you with information related to its cloud identity products, services and/or educational information related to cloud identity security.

Open Source Cloud Identity

Schedule a Demo
+1 (877) 464-6972

OX logo

Discover the Strength of OX

OX is a dedicated open source platform for enabling single sign-on and data sharing using SAML and OpenID Connect, a soon-to-be finalized standard and profile of OAuth 2.0. OX also leverages other complimentary open standards including RADIUS, Simple Cloud Identity Management (SCIM) and User Managed Access (UMA).

 

 

OX Technical Overview

OX is a lightweight, open source authorization and authentication platform that supports a curated suite of identity federation and access management standards and protocols.

  • OAuth 2.0
  • OpenID Connect
  • SAML
  • UMA
  • RADIUS
  • SCIM
  • JBoss Seam
  • Python / Java
OAuth 2.0 focuses on client developer simplicity while providing specific authorization flows for web applications, desktop applications, mobile phones, and living room devices. OpenID Connect and UMA, both supported by the OX platform, are profiles of OAuth 2.0.
OpenID Connect is a simple identity layer on top of the OAuth 2.0 protocol that supports a suite of lightweight specifications to provide a framework for identity interactions via REST like APIs.
oxAuth is Gluu’s open source interop-leading OpenID Connect 1.0 Provider (“OP”) which implements OAuth 2.0, Authentication, Simple Web Discovery, and Dynamic Client Registration. Interop Results
An OpenID Connect Client can be a web, native, or other application that accepts OpenID Connect tokens for attribute exchange and single sign-on.
SAML is an XML-based open standard data format for exchanging authentication and authorization data between parties, in particular, between an identity provider (IDP) and and a Relying Party (RP).
Shibboleth is an open-source project that provides software to create a SAML IdP for Single Sign-On. Gluu’s oxTrust application provides a simple web based interface to manage Shibboleth for SAML SSO relationships.
A SAML Service Provider, or SP, is a website or application that accepts SAML tokens from a SAML IDP for secure attribute exchange.
User-Managed Access (UMA), also a profile of OAuth 2.0, aims to develop an authorization system that puts an individual in full control of their resources which may be scattered across multiple Web applications.
The UMA PDP, or Policy Descion Point, positions an organization to be able to utilize the API management capabilities of UMA.
The UMA PEP, or Policy Enforcement Point, is where the resource provider notates who has access to what information with which credentials; essentially keeping a log of all API interactions.
RADIUS is a networking protocol that provides centralized Authentication, Authorization, and Accounting (AAA) management for computers to connect and use a network service.
The RADIUS server built into the OX platform allows an organization to leverage their LDAP or Active Directory and strong authentication for wi-fi and VPN access.
Typically a wireless server or a VPN.
The Simple Cloud Identity Management (SCIM) specification defines a simple, RESTful protocol for identity account management operations. SCIM’s model is based upon the experience of existing schemas and SaaS deployments, with specific emphasis on simplifying development and integration, and wherever possible, applying existing authentication, authorization, and privacy mechanisms.
oxTrust is a JBoss Seam application that provides organizational cloud identity management services, including REST service endpoints and a user friendly cloud identity management console (aka a GUI).
The OX cloud identity platform supports custom authentication scripts written in java, python, or jython. The platform is vendor neutral and can support multiple steps, factors, and solutions simultaneously. We currently have easy integration for a handful of 2FA solutions. Learn more.

Pre-requisite Skills

OX software is primarily written in Java. The oxAuth, oxServer, and oxTrust applications are deployed in a standard J2EE servlet container like tomcat. Also, the underlaying persistence technology for OX is LDAP: we use the open source java ldap server OpenDJ as our test server, although other LDAP v3 servers should work too.

We try to make installing OX software as easy as possible and encourage users to post any problems to the mailing lists, but deploying the OX Platform does require fairly advanced technical proficiency.

Download OX

Gluu Can Help…

If this sounds like a lot to handle, don’t worry. Gluu offers support packages for the OX, or you can deploy the software quickly on the public or private cloud using one of Gluu’s on demand servers.