Shibboleth

**Shibboleth** is a [single sign-on](https://en.wikipedia.org/wiki/Single_sign-on) log-in system for computer networks and the [Internet](https://en.wikipedia.org/wiki/Internet). It allows people to sign in using just one identity to various systems run by federations of different organizations or institutions. The federations are often universities or public service organizations. The Shibboleth [Internet2](https://en.wikipedia.org/wiki/Internet2) [middleware](https://en.wikipedia.org/wiki/Middleware) initiative created an [architecture](https://en.wikipedia.org/wiki/Information_technology_architecture) and [open-source](https://en.wikipedia.org/wiki/Open-source_model) implementation for [identity management](https://en.wikipedia.org/wiki/Identity_management) and [federated identity](https://en.wikipedia.org/wiki/Federated_identity)-based [authentication](https://en.wikipedia.org/wiki/Authentication) and [authorization](https://en.wikipedia.org/wiki/Authorization) (or [access control](https://en.wikipedia.org/wiki/Access_control)) infrastructure based on [Security Assertion Markup Language](https://en.wikipedia.org/wiki/Security_Assertion_Markup_Language) (SAML). Federated identity allows the sharing of information about users from one security domain to the other organizations in a federation. This allows for cross-domain single sign-on and removes the need for content providers to maintain usernames and passwords. [Identity providers](https://en.wikipedia.org/wiki/Identity_provider) (IdPs) supply user information, while service providers (SPs) consume this information and give access to secure content.