An organization has recently decided to implement SSO. The requirements are to leverage access tokens and focus on application authorization rather than user authentication. Which of the following solutions would the engineering team most likely configure?
Choose an answer
Tap an option to check your answer.
Correct answer: OAuth.
Why this is the answer
OAuth (Open Authorization) is the most suitable solution because it is an open standard for access delegation, commonly used for application authorization. It allows a user to grant a third-party application limited access to their resources on another service (like Google or Facebook) without sharing their credentials. This aligns with the requirement to leverage access tokens and focus on application authorization. LDAP (Lightweight Directory Access Protocol) is a protocol for accessing and maintaining distributed directory information services, primarily used for user authentication and directory lookups, not application authorization. Federation is a broader concept for establishing trust between different security domains, often using protocols like SAML or OAuth, but it's not a specific protocol for application authorization itself. SAML (Security Assertion Markup Language) is an XML-based standard for exchanging authentication and authorization data between an identity provider and a service provider, primarily focused on user authentication for SSO, not specifically application authorization via access tokens.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed