Download presentation
Presentation is loading. Please wait.
Published byCaren Richardson Modified over 9 years ago
1
Technofolies Brussels, Oct 29 & 30
2
Technofolies
3
Welcome Consumerization.
4
Demo
5
Why Cloud Services
6
Kerberos <token
7
AD FS Definitions AD FS = Active Directory Federation Service! Service on top of AD. Replace the Kerberos token by a trusted token. The token contains a collection of claims (Key – Value). Trust is based on certificates. Delagate the authorization from the application to an external authority. Service Token Service (STS) is the application delivering the token. AD FS is a STS. Relaying Party (RP) is a backend application using token from the STS.
8
AD FS Relaying parties
9
AD FS Tool
10
AD FS Active Mode Domain Controller 1 3 Kerberos Service Ticket Trust ADFS 3.0 2 SAML Token
11
AD FS Passive Mode Domain Controller 1, Request a Page 2, Redirect Kerberos Service Ticket ADFS 3.0 WWW 3 SAML Token 4 5
12
AD FS Full Picture Domain Controller 1, Request a Page 2, Redirect Kerberos Service Ticket ADFS 3.0 WWW 3 SAML Token 4 5 6 7 8
13
AD FS Internet Authentication Domain Controller 1, Request a Page 2, Redirect UserName / Password MultiFactor Auth. E-Token, etc… ADFS 3.0 WWW 3 SAML Token 4 5 6 7 8
14
AD FS Cloud Service Domain Controller 1, Request a Page 2, Redirect UserName / Password MultiFactor Auth. E-Token, etc… ADFS 3.0 WWW 3 SAML Token 4 5 6 7 8 Kerberos Service Ticket Certificate Delegation Authentication.
15
Distributed Architecture WWW Kerberos Service Ticket UserName / Password MultiFactor Auth. E-Token, etc…
16
AD FS Cross Companies WWW Trusted AD FSClient Company AD FS Service Company 1 & 9 2 3 4 5 6 7 8
17
AD FS Environment splitting Domain Controller Dev TestAcc Prod.
18
AD FS Limitation
19
TechNet
20
TechNet on Twitter
21
Azure trial for free Get your free Azure trial at Azure.com/trial
22
Contacts Gilles Flisch technofolies@flisch.be Arnaud JUND a.jund@neomytic.be Vincent FIEVEZ v.fievez@ephec.be See you next year 2015
23
Note
Similar presentations
© 2024 SlidePlayer.com. Inc.
All rights reserved.