160 likes | 251 Views
Federerad säkerhet och identitetshantering – lokalt och i molnet. Robert Folkesson - 2011-12-01. Federerad autentisering. claims name: Robert, roles : … …. Security Token Service. signerad. Trust. 1. Token. 2. Client. Relying Party. Active Directory. claims name: Robert,
E N D
Federerad säkerhet och identitetshantering – lokalt och i molnet Robert Folkesson - 2011-12-01
Federeradautentisering claims name: Robert, roles : … … Security Token Service signerad Trust 1 Token 2 Client Relying Party
Active Directory claims name: Robert, groups : … … DomainController proof Trust 1 Kerberos Service Ticket 2 Client Relying Party
Vadhändernärapplikationliggerutanfördomänen? DomainController Kerberos Service Ticket Client
Trust Security Token Service DomainController Token Token Client
Demo Single Sign On med WIF och ”fusk”-ADFS 2
Federation Gateway Federation Gateway Security Token Service Security Token Service Security Token Service Trust Trust Moln-applikation
FederationmedAzureAccess Control Service Olika format / protokollin (WS-Trust, WS-Federation, WRAP, OpenId) Rulesengine Ett format ut REST API, Adminverktyg
DEMO Federationmed Azure Access Control Service
Resurser Claims-based identity and access control http://tinyurl.com/claimsguide
Resurser Programming Windows IdentityFoundation http://www.amazon.com/Programming-Windows-Identity-Foundation-Dev/dp/0735627185
Resurser WIF-startsida: Identity developertraining kit: ASC påcodeplex: Fabrikam Shipping: • www.microsoft.com/wif • www.microsoft.com/download/en/details.aspx?displaylang=en&id=14347 • acs.codeplex.com • www.fabrikamshipping.com
Tack! robert.folkesson@activesolution.se twitter: @rfolkesblogg: www.robertfolkesson.se