exam questions

Exam SY0-501 All Questions

View all questions & answers for the SY0-501 exam

Exam SY0-501 topic 1 question 296 discussion

Actual exam question from CompTIA's SY0-501
Question #: 296
Topic #: 1
[All SY0-501 Questions]

Which of the following is commonly used for federated identity management across multiple organizations?

  • A. SAML
  • B. Active Directory
  • C. Kerberos
  • D. LDAP
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
fonka
3 years, 11 months ago
Correct SAmL is the write answer
upvoted 1 times
...
Not_My_Name
4 years, 7 months ago
I understand SAML is used for web-based SSO and employs federated identity management, but Active Directory does this for non web-based entities. Aren't both answers equally correct?
upvoted 1 times
...
vaxakaw829
4 years, 9 months ago
Security Assertion Markup Language (SAML) is an Extensible Markup Language (XML)– based data format used for SSO on web browsers. Imagine two web sites hosted by two different organizations. Normally, a user would have to provide different credentials to access either web site. However, if the organizations trust each other, they can use SAML as a federated identity management system. Users authenticate with one web site and are not required to authenticate again when accessing the second web site. (Darril Gibson’s Get Certified Get Ahead p. 196)
upvoted 3 times
...
MelvinJohn
5 years, 1 month ago
In AD FS, identity federation[3] is established between two organizations by establishing trust between two security realms. A federation server on one side (the Accounts side) authenticates the user through the standard means in Active Directory Domain Services and then issues a token containing a series of claims about the user, including its identity. On the other side, the Resources side, another federation server validates the token and issues another token for the local servers to accept the claimed identity. This allows a system to provide controlled access to its resources or services to a user that belongs to another security realm without requiring the user to authenticate directly to the system and without the two systems sharing a database of user identities or passwords. ADFS uses a claims-based access-control authorization model. This process involves authenticating users via cookies and Security Assertion Markup Language (SAML). That means ADFS is a type of Security Token Service, or STS. You can configure STS to have trust relationships that also accept OpenID accounts.
upvoted 1 times
...
MelvinJohn
5 years, 1 month ago
For "identity management" Active Directory does the actual management and employs SAML to do the authentication. Active directory is the traffic cop - the manager.
upvoted 1 times
...
Elb
5 years, 3 months ago
In order for FIM to be effective, the partners must have a sense of mutual trust. Authorization messages between partners in an FIM system can be transmitted using Security Assertion Markup Language (SAML) or a similar XML standard that enables a user to log on once for affiliated but separate websites or networks. Examples of FIM systems include OpenID and OAuth, as well as Shibboleth, which is based on OASIS SAML.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago