A method, system and apparatus for federated identity brokering. In
accordance with the present invention, a credential processing gateway
can be disposed between one or more logical services and one or more
service requesting clients in a computer communications network. Acting
as a proxy and a trusted authority to the logical services, the
credential processing gateway can map the credentials of the service
requesting clients to the certification requirements of the logical
services. In this way, the credential processing gateway can act as a
federated identity broker in providing identity certification services
for a multitude of different service requesting clients without requiring
the logical services to include a pre-configuration for specifically
processing the credentials of particular service requesting clients.