| Manage Authorization Decisions
Symlabs Policy Decision Point (PDP) is the component of Symlabs Federated Identity Suite that implements a system to evaluate and act on authorization requests based on pre-established policies plus information describing the requester. It is fully compatible with Liberty specifications and SAML 2.0, including support for XACML to define the rules that grant or deny access to resources and services, and it incorporates an internal rules engine that determines the policies to apply when a user requests access to a service.
When a user attempts to access a service, a Policy Enforcement Point (PEP) sends a message to Symlabs Policy Decision Point asking whether to approve the connection. It then replies with permission or denial for access to that service based on the rules that have been defined and the parameters that were passed in the request.
Symlabs Policy Decision Point is capable of integrating with any Liberty-compatible PEP, and with Identity Provider (IdP), Discovery Service (DS), and profile services like Personal Profile (PP) to coordinate a comprehensive policy decision and enforcement process. It includes a web-based, Single Sign-On (SSO) enabled graphical user interface that simplifies user administration. Support For Key Industry Standards
Symlabs Policy Decision Point includes support for OASIS XACML 2.0 and SAML 2.0 Authorization Decision Query, plus the following Liberty ID-Web Services Framework (ID-WSF 1.1) specifications:
A powerful capability of Symlabs Policy Decision Point is its simultaneous support for SAML 2.0, Liberty ID-FF 1.2, and WS-Federation 1.0 standards for SSO, plus Session and Federation Management. |
Features
Benefits
Platforms Supported
|