Federerad säkerhet och identitetshantering – lokalt och i molnet Robert Folkesson
Federerad autentisering ClientRelying Party Security Token Service 1 2 Token signerad claims name: Robert, roles : … … Trust
Active Directory ClientRelying Party Domain Controller 1 2 Kerberos Service Ticket proof claims name: Robert, groups : … … Trust
Vad händer när applikation ligger utanför domänen? Client Kerberos Service Ticket Domain Controller
Client Token Domain Controller Trust Token Security Token Service
Demo Single Sign On med WIF och ”fusk”-ADFS 2
Trust Federation Gateway Moln- applikation Trust Federation Gateway Security Token Service Security Token Service Security Token Service
Federation med Azure Access Control Service Olika format / protokoll in (WS-Trust, WS- Federation, WRAP, OpenId) Ett format ut REST API, Adminverktyg Rules engine
DEMO Federation med Azure Access Control Service
Resurser Claims-based identity and access control
Resurser Programming Windows Identity Foundation Programming-Windows-Identity- Foundation-Dev/dp/
Resurser download/en/details.aspx? displaylang=en&id=14347 acs.codeplex.com WIF-startsida: Identity developer training kit: ASC på codeplex: Fabrikam Shipping:
Tack! blogg: