SlideShare une entreprise Scribd logo
1  sur  8
Télécharger pour lire hors ligne
08/08/2012

                       Ревенков Павел
EPAM Cloud Computing Competence Center

             pavlo_revenkov@epam.com
Арнольд
Шварценеггер


        Сертификат
Token




           Имя         Арнольд

         Фамилия     Шварценеггер
                                    Утверждения
                                      (claims)
           Пол         Мужской

         Возраст        65 лет
Identity providers
          User                                                  Active
                                                   Token
                                                               Directory




          Relying party
           application                                          Google


Yes

 Token?

                          Access Control Service               Facebook


                               Federation
                                provider
           No
ACS       Federation              Identity
           Rule Engine    provider               Provider
FP-Token                              IP-Token




            Claim           ACS       JWT        Google
            Rule                      SAML 1.1   Facebook
            Language                  SAML 2.0   Yahoo
                                      SWT        Active Directory
Ваше приложение работает только с Access
Control Service;

Нет необходимости писать новый код для
аутентификации;

Прозрачная интеграция с существующей
инфраструктурой Active Directory.
Windows Identity Foundation SDK:
   Приложение;
   Сервер.

Active Directory Federation Services Role
Services:
   Сервер.
How to Authenticate Web Users with Windows
Azure Access Control Service
  https://www.windowsazure.com/en-
  us/develop/net/how-to-guides/access-control/

Single Sign-On from Active Directory to a
Windows Azure Application Whitepaper
  http://www.microsoft.com/en-
  us/download/details.aspx?id=13789
Windows Azure Access Control Service

Contenu connexe

Plus de Pavel Revenkov

Windows Azure Versioning Strategies
Windows Azure Versioning StrategiesWindows Azure Versioning Strategies
Windows Azure Versioning StrategiesPavel Revenkov
 
Windows Azure Zero Downtime Upgrade
Windows Azure Zero Downtime UpgradeWindows Azure Zero Downtime Upgrade
Windows Azure Zero Downtime UpgradePavel Revenkov
 
Windows Azure Service Bus
Windows Azure Service BusWindows Azure Service Bus
Windows Azure Service BusPavel Revenkov
 
Windows Azure PowerShell Cmdlets
Windows Azure PowerShell CmdletsWindows Azure PowerShell Cmdlets
Windows Azure PowerShell CmdletsPavel Revenkov
 
Starting with windows azure
Starting with windows azureStarting with windows azure
Starting with windows azurePavel Revenkov
 
Windows Azure Service Bus
Windows Azure Service BusWindows Azure Service Bus
Windows Azure Service BusPavel Revenkov
 
Windows Azure Storage services
Windows Azure Storage servicesWindows Azure Storage services
Windows Azure Storage servicesPavel Revenkov
 

Plus de Pavel Revenkov (13)

Windows Azure Versioning Strategies
Windows Azure Versioning StrategiesWindows Azure Versioning Strategies
Windows Azure Versioning Strategies
 
Windows Azure Zero Downtime Upgrade
Windows Azure Zero Downtime UpgradeWindows Azure Zero Downtime Upgrade
Windows Azure Zero Downtime Upgrade
 
Windows Azure Service Bus
Windows Azure Service BusWindows Azure Service Bus
Windows Azure Service Bus
 
Windows Azure Drive
Windows Azure DriveWindows Azure Drive
Windows Azure Drive
 
SQL Azure
SQL AzureSQL Azure
SQL Azure
 
Storage Services
Storage ServicesStorage Services
Storage Services
 
Windows azure start
Windows azure startWindows azure start
Windows azure start
 
SQL Azure Federations
SQL Azure FederationsSQL Azure Federations
SQL Azure Federations
 
Windows Azure PowerShell Cmdlets
Windows Azure PowerShell CmdletsWindows Azure PowerShell Cmdlets
Windows Azure PowerShell Cmdlets
 
Starting with windows azure
Starting with windows azureStarting with windows azure
Starting with windows azure
 
Windows Azure Service Bus
Windows Azure Service BusWindows Azure Service Bus
Windows Azure Service Bus
 
Windows Azure Storage services
Windows Azure Storage servicesWindows Azure Storage services
Windows Azure Storage services
 
Windows Azure Drive
Windows Azure DriveWindows Azure Drive
Windows Azure Drive
 

Windows Azure Access Control Service

  • 1. 08/08/2012 Ревенков Павел EPAM Cloud Computing Competence Center pavlo_revenkov@epam.com
  • 2. Арнольд Шварценеггер Сертификат Token Имя Арнольд Фамилия Шварценеггер Утверждения (claims) Пол Мужской Возраст 65 лет
  • 3. Identity providers User Active Token Directory Relying party application Google Yes Token? Access Control Service Facebook Federation provider No
  • 4. ACS Federation Identity Rule Engine provider Provider FP-Token IP-Token Claim ACS JWT Google Rule SAML 1.1 Facebook Language SAML 2.0 Yahoo SWT Active Directory
  • 5. Ваше приложение работает только с Access Control Service; Нет необходимости писать новый код для аутентификации; Прозрачная интеграция с существующей инфраструктурой Active Directory.
  • 6. Windows Identity Foundation SDK: Приложение; Сервер. Active Directory Federation Services Role Services: Сервер.
  • 7. How to Authenticate Web Users with Windows Azure Access Control Service https://www.windowsazure.com/en- us/develop/net/how-to-guides/access-control/ Single Sign-On from Active Directory to a Windows Azure Application Whitepaper http://www.microsoft.com/en- us/download/details.aspx?id=13789