Getting
Authentication Information to CarRentalInc
by Request/Response
Need
a car? Click here
AirlineInc.com
John Doe
1. http://www.AirlineInc.com
CarRentalInc.com
2. HTTP Redirect
3. https://www.AirlineInc.com/redirect?
TARGET=https://www.CarRentalInc.com&
SAMLRequest=…encoded AuthnRequest…
4. HTML form
that is filled in with an encoded
Response plus
JavaScript.
5. The Response is automatically forwarded to https://www.CarRentalInc.com
Explanation
on next slide ...
