SAML Token Claims Based Identity SAML Token Claims Based Identity SPUser.

Slides:



Advertisements
Similar presentations
Suchin Rengan Principal Technical Architect Salesforce.com
Advertisements

SearchSearch User Profiles SearchSearchExcelExcelUserProfilesUserProfiles Managed Metadata.
AttributeValue Display NameChris Gideon User NameContoso\cgideon TitleSenior PFE.
 Rich Randall Development Lead Microsoft Corporation BB44.
Kevin Donovan Program Manager, Office BI Microsoft Corporation
Contoso photo Contoso ? Contoso photo Contoso.
SIM403. Claims Provider Trust Relying Party x Relying Party Trust Claims Provider Trust Your ADFS STS Partner ADFS STS & IP Relying Party Trust Partner.
SharePoint The Previously…. On…. Collaboration Business Intelligence Portal Business Forms Search Content Management Platform Services Workspaces,
©2012 Microsoft Corporation. All rights reserved..
Access Control Patterns & Practices with WSO2 Middleware Prabath Siriwardena.
SAML 2.0 og ”Geneva” OIOSAML Workshop 31. marts 2009 Århus René Løhde, Microsoft
SharePoint 2010 Business Productivity: What's new for Developers in Microsoft SharePoint 2010 Matthew McDermott, MVP Aptillon, Able Blue
0 Who Are You and What Do You Want? Working with Oauth in SharePoint 2013 Eric Shupps SharePoint MVP.
GRDevDay March 21, 2015 Cloud-based Identity for Applications.
Silver SponsorsGold Sponsors Bronze Sponsors SharePoint App Model Redefine your SharePoint Customisation Erwin Tsai SharePoint Solution Architect Techfly.
Microsoft ® Official Course Developing Remote-hosted Apps for SharePoint Microsoft SharePoint 2013 SharePoint Practice.
Conditional access DirectAccess & automatic VPN Desktop Virtualization.
Clients using wide variety of devices/languages/platforms Server applications using wide variety of platforms/languages Browser Native app Server.
Esri UC2013. Technical Workshop. Technical Workshop 2013 Esri International User Conference July 8–12, 2013 | San Diego, California Building Secure Applications.
SharePoint Server 2013 Architecture and Identity
SIM205. (On-Premises) Storage Servers Networking O/S Middleware Virtualization Data Applications Runtime You manage Infrastructure (as a Service)
©2012 Microsoft Corporation. All rights reserved..
Troubleshooting Federation, AD FS 2.0, and More…
Fraser Technical Solutions, LLC
©2012 Microsoft Corporation. All rights reserved. Content based on SharePoint 2013 Technical Preview and published July Introducing.
OAuth 2.0 Security IETF OAuth WG Conference Call, 14th December 2012.
App development in SharePoint 2013 LIVE Introducing Cloud App Model Cloud-hosted Apps Experiences from the Field.
Prabath Siriwardena Senior Software Architect. An open source Identity & Entitlement management server.
SPC204 Security Problems in SharePoint 2010 Authentication and Authorization.
Business Productivity Suite Business Collaboration Platform Information Platform Reporting Services ReportsCentral Admin.
Marat Bakirov Readify. 2 3 ServerClient Browser Host Web Server Host SharePoint & Exchange Office APP Client APIs Server APIs.
Datacenter LOB web service LOB app Partner Mobile Device.
First Look Clinic: What’s New for IT Professionals in Microsoft® SharePoint® Server 2013 Sayed Ali (MCTS, MCITP, MCT, MCSA, MCSE )
Solution SusQtech (Winchester, VA) SharePoint MVP since 2007 Working with SharePoint since 2001 Work on all types of deployments Dream about.
Troubleshooting Federation, AD FS 2.0, and More…
/
© 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Otomo End User SSO - TOI March 2014 Otomo 10.5 – End User SSO Support.
Module 5 Configuring Authentication. Module Overview Lesson 1: Understanding Classic SharePoint Authentication Providers Lesson 2: Understanding Federated.
SharePoint Security Fundamentals Introduction to Claims-based Security Configuring Claims-based Security Development Opportunities.
Forms Based Auth Windows SAML Claim TypeValue NameidentifierContoso\gbadea PrimarysidS UserlogonnameContoso\gbadea.
OAuth Use Cases Zachary Zeltsan 31 March Outline Why use cases? Present set in the draft draft-zeltsan-oauth-use-cases-01.txt by George Fletcher.
SharePoint 2013 Architecture Service applications in SharePoint 2013.
App Manifest Web Page HTML/CSS/JS APP SharePoint App Web SharePoint Host Web Windows Azure Websites SharePoint Host Web Your hosted site SharePoint.
Securing Angular Apps Brian Noyes
Token TOKEN User Groups Roles Claims Authentication Provider Identities STSUser Authentication Method UserGroup Role Assignment Permission Level FD.
Windows 8 Application Microsoft Word with an app for Office Internal O365 SharePoint Site Windows Azure Web Sites Windows Azure Workflow Service.
Expenses Timesheets Approvals Expense capture Timesheets Expense capture Timesheets Expense capture Timesheets.
SAML Token Claims Based Identity SAML Token Claims Based Identity SPUser.
Thinking Outside of the Box A Look at BCS and the Client OM August 25th, 2010 Philadelphia Area SharePoint User Group.
The Kirk Evans + Israel Vega, Jr $wa = Get-SPWebApplication $arguments = New-Object Microsoft.SharePoint.Administration.SPWebApplication+SPMigrateUserParameters.
Using PIV Cards with NIH Login Chris Leggett NIH Login Technical Lead CIT/NIH.
Secure Mobile Development with NetIQ Access Manager
Prabath Siriwardena, Director of Security, WSO2 Twitter
About Me AUTHENTICATION Identity Provider.
Authentication methods SharePoint Web Application Windows integrated Membership & Role Providers Web SSO Access control Roles protected Anonymous.
Demo YOURNAMESPACE /v2/mgmt/service /v2/mgmt/web /v2/wsfederation /v2/wstrust / v2/FederationMetadata/ /FederationMetadata.xml /v2/metadata/IdentityProviders.js.
OAuth and Application Identity
Application Authentication using Azure AD
Migrating SharePoint Add-ins from Azure ACS to Azure AD
Chairs: Derek Atkins and Hannes Tschofenig
Cross-Org Collaboration using SharePoint 2010 & AD FS 2.0
What is OAuth and Why?.
ACS Functionality.
A few recent days in the news…
Agenda OAuth Concepts Programming OAuth.
Authentication and Authorization Federation
SharePoint Online Authentication Patterns
Office 365 Development.
Western Mass Microsoft Technology Users Group
HIP – FAS flows addendum to the OIDC integration guide for eBox HIPs.
Presentation transcript:

SAML Token Claims Based Identity SAML Token Claims Based Identity SPUser

Claim Value Type. = String + = RFC822 Name

Is the endpoint outside of an app web? Does the token include user info? Is endpoint CSOM? OAuth token present? Use anonymous context Set app and user context Set user context End Start User credentials provided? Set App-Only context Yes No

SharePoint Apps OAuth Flow 7- Access token 10. IFrame contents 5. Request IFrame contents 4. Page - IFrame 9. SharePoint data 8. Request – Access token 1. Request 2. Request context token 3. Signed context token 6. Refresh token STS (ACS) SharePoint ServerApp Server Subject