Presentation is loading. Please wait.

Presentation is loading. Please wait.

SIM323. Active Directory ? ? ? ? ? ? ? ? ?

Similar presentations


Presentation on theme: "SIM323. Active Directory ? ? ? ? ? ? ? ? ?"— Presentation transcript:

1 SIM323

2

3

4

5 Active Directory

6

7 ?

8

9 ? ?

10

11 ? ? ? ? ? ?

12

13 AD FS 2.0 Application Service

14 demo

15 AD FS 2.0 Application Service

16 Username Binding

17 Username Binding

18 Username Binding

19 https://[server]/adfs/services/trust/13/usernamemixed https://[server]/adfs/services/trust/13/windowstransport

20 AD FS 2.0 Application Service <security authenticationMode="IssuedTokenOverTransport" messageSecurityVersion="WSSecurity11WSTrust13WSSecureConversation13WSSecurityPolicy12 BasicSecurityProfile10"> …

21 Service Binding <security authenticationMode="IssuedTokenOverTransport" messageSecurityVersion="WSSecurity11WSTrust13WSSecureConversation13WSS ecurityPolicy12BasicSecurityProfile10">

22 Service Binding

23

24

25 Active Directory with AD FS

26

27

28

29 AD FS 2.0 Application Service

30 demo

31 Active Directory with AD FS

32

33

34 demo

35 Active Directory with AD FS

36

37 demo

38 Active Directory with AD FS

39 Disable Formatting private string DisableFormatting(string input) { StringBuilder output = new StringBuilder(); XmlReaderSettings rs = new XmlReaderSettings(); rs.IgnoreComments = true; rs.IgnoreWhitespace = true; using (XmlReader reader = XmlReader.Create(new StringReader(input),rs)) { XmlWriterSettings ws = new XmlWriterSettings(); ws.OmitXmlDeclaration = true; ws.NewLineHandling = NewLineHandling.Replace; ws.NewLineChars = ""; using (XmlWriter writer = XmlWriter.Create(output, ws)) { writer.WriteNode(reader, true); } return output.ToString(); }

40 Saving user credential on device is dangerous.

41 Set AD FS token lifetime

42 Access Control Service (AD FS 2.0 )

43

44 http://.../claims/emailaddress=calebb@live.com& http://.../claims/identityprovider=FaceBook& Audience=http://localhost:32075/& ExpiresOn=1302285961& Issuer=https://contoso.accesscontrol.windows.net/& HMACSHA256=X...DGzVepvditIP33IIq753JCz99ENY=

45 IdP Application Service ACS

46 demo

47 (AD FS 2.0 )

48

49

50

51

52

53 www.microsoft.com/teched Sessions On-Demand & CommunityMicrosoft Certification & Training Resources Resources for IT ProfessionalsResources for Developers www.microsoft.com/learning http://microsoft.com/technet http://microsoft.com/msdn http://northamerica.msteched.com Connect. Share. Discuss.

54

55 Scan the Tag to evaluate this session now on myTechEd Mobile

56

57


Download ppt "SIM323. Active Directory ? ? ? ? ? ? ? ? ?"

Similar presentations


Ads by Google