Leveraging Claims-Based Identity and Access Control in Windows Azure for Cloud Solutions
Dive into the comprehensive world of claims-based identity and access control within Windows Azure. This guide, authored by Anton Boyko, a seasoned .NET developer, explores service-oriented approaches to identity management, covering topics like claims filtering, session handling, and authorizations. Learn how to effectively utilize Windows Identity Foundation (WIF) in ASP.NET, standardize identity capabilities, and integrate various identity providers. This resource is essential for professionals looking to ensure robust security and interoperability in cloud applications.
Leveraging Claims-Based Identity and Access Control in Windows Azure for Cloud Solutions
E N D
Presentation Transcript
Identity & Access Control in the Cloud Anton Boyko .NET developer
Scenarios • Windows Azure
A Service-Oriented Approach to Identity • Windows Azure Reuse Identity Capabilities via Standard Facades Rely 100% on Infrastructure Take Care of everything
Windows Azure Claims-Based Identity Claims .NET Framework Extension Programming model for claims Visual Studio Tools & Templates Windows Identity Foundation
Windows Azure WIF Pipeline for ASP.NET FAM SAM CAM Redirect Token handling Claims filtering Session Claims-Based Authorization Claims
Windows Azure WIF in Windows Azure Sessions URI Certificates
Windows Azure Authenticating Users from Business Partners (I)
Windows Azure Authenticating Users from Business Partners (II) Windows Azure Active Directory Access Control Host an STS in cloud for you Handles relationships with business and social Ips WS-Federation, WS-Trust, Open ID, OAuth
Identity Providers Active Directory Access Control Your Application Active Directory Access Control Browser-based WS-Federation SAML SAML SWT SWT ADFS2 . WS-Federation Rich Client ADFS2 . WS-Trust WS-Trust Server 2 Server OAuth WRAP/2.0 Service Identities
Windows Azure Authenticating Users from Web and Social Providers Sign-up and claims enrichment