Skip to main content
← All glossary termsCompliance & Security

SAML 2.0

Also known as: SAML, Security Assertion Markup Language, SAML SSO, SAML identity provider

SAML 2.0 (Security Assertion Markup Language) is the XML-based federation protocol widely used in higher education and enterprise identity management for browser-based single sign-on between service providers (like an LMS) and identity providers (like Active Directory or Google Workspace).

SAML 2.0 is the identity federation protocol of choice for universities. The institution runs an Identity Provider (IdP) — Microsoft Entra ID, Shibboleth, Google Workspace, or Okta — and the LMS is a Service Provider (SP). The learner authenticates once against the IdP; the IdP asserts the identity to the LMS via a signed XML token. No passwords are ever sent to or stored by the LMS.

SAML vs OIDC — which to choose

  • SAML 2.0 — better compatibility with legacy enterprise IdPs (ADFS, Shibboleth). Most universities already have SAML-capable infrastructure. No JavaScript dependency — works in browser redirects.
  • OpenID Connect (OIDC) — simpler, modern, JSON-based. Better for mobile and SPA clients. Used by Google, Microsoft (modern flows), Okta.

DeepTech supports both SAML 2.0 and OIDC, so institutions can connect their existing IdP without rebuilding their identity infrastructure.

See it in action

DeepTech is an institutional LMS by APQOR Technologies Private Limited. Book a 30-minute walkthrough with our higher-ed team.