SlideShare une entreprise Scribd logo
1  sur  12
QUICK AZURE
MICROSOFT WINDOWS AZURE PLATFORM
DISCUSSIONS
 Microsoft Windows Azure platform
 Windows Azure AppFabric Access Control
 Windows Azure AppFabric Service Bus
WINDOWS AZURE APPFABRIC
ACCESS CONTROL
AUTHENTICATION
CLAIM-BASED IDENTITY MODEL
TRANSMISSION PROTOCOLS
 Security Assertion Markup Language (SAML)
 Simple Web Token (SWT)
firstname=Keith&email=keith@fabrikam.com&roles=staff,partner&issuer=htt
ps://foo.accesscontrol.windows.net/&Audience=http://fabrikam.com/svc&Expi
resOn=1256767172
&HMACSHA256=0egc2SllR6RGb5lrM5EFyCLIuyBvz3gJn3bMgGD1z58=
 Web Resource Authorization Protocol (WRAP).
Microsoft term: Security Token Service
CHAINED ISSUER
Access
Control
WINDOWS AZURE APPFABRIC
SERVICE BUS
ENTERPRISE SERVICE BUS PATTERN
SERVICE BUS
END

Contenu connexe

Plus de Duy Lâm (7)

Advantages of Cassandra's masterless architecture
Advantages of Cassandra's masterless architectureAdvantages of Cassandra's masterless architecture
Advantages of Cassandra's masterless architecture
 
KMS TechCon 2014 - Interesting in JavaScript
KMS TechCon 2014 - Interesting in JavaScriptKMS TechCon 2014 - Interesting in JavaScript
KMS TechCon 2014 - Interesting in JavaScript
 
Building Single-page Web Applications with AngularJS @ TechCamp Sai Gon 2014
Building Single-page Web Applications with AngularJS @ TechCamp Sai Gon 2014Building Single-page Web Applications with AngularJS @ TechCamp Sai Gon 2014
Building Single-page Web Applications with AngularJS @ TechCamp Sai Gon 2014
 
Mocha
Mocha Mocha
Mocha
 
Refactoring group 1 - chapter 3,4,6
Refactoring   group 1 - chapter 3,4,6Refactoring   group 1 - chapter 3,4,6
Refactoring group 1 - chapter 3,4,6
 
Amazon Web Services
Amazon Web ServicesAmazon Web Services
Amazon Web Services
 
Overview of character encoding
Overview of character encodingOverview of character encoding
Overview of character encoding
 

Dernier

+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 

Dernier (20)

Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu SubbuApidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 

Microsoft Windows Azure in short

Notes de l'éditeur

  1. This need for authentication and authorization are common across many different types of systems, from Web services and browser-based applications, to rich Windows desktop applications, and console command line applications. But despite the common need for these features, many services require with solutions. Most developers are not security experts, and many feel uncomfortable being given the job of authenticating and authorizing users. This is not a subject that has been traditionally taught in computer science curriculum, and there’s a long history of ignoring it until late in the development lifecycle. It’s often difficult to implement single-sign on across them, or to federate identity across security realms. How a service in system A can trust a request in system B ? How to authorize them ?
  2. Pictures from: http://www.infoq.com/news/2009/10/Guide-Claim-Based-Identity
  3. SAML: specified an XML format for tokens (SAML tokens) as well as protocols for performing Web App/Service single sign on using SAML tokens, sometimes referred to inside Microsoft as SAMLP (for the SAML protocol suite). WS-Federation and related WS-* specifications also define a set of protocols for Web App/Service single sign on SWT: While SAML and WS-* are protocols designed to be used with SOAP, REST aims for a more minimalist approach. Thus, AC issues tokens in a format called Simple Web Token (SWT) developed jointly by Microsoft, Google, and Yahoo. A SWT token (pronounced swat) looks very much like the query string in a URL, and consequently is easy to parse by any REST Web service. WRAP : The protocol that AC uses to issue tokens is called Web Resource Authorization Protocol. WRAP is a REST convention (developed in conjunction with SWT) that is used to request tokens from issuers such as AC. As you might expect, this community-developed protocol is simple to use. To request a token, issue a POST command with your request to your issuer's WRAP endpoint (AC refers to this as its STS endpoint) with a content type of "application/x-www-form-urlencoded.“
  4. Picture from: http://msdn.microsoft.com/en-us/magazine/cc163366.aspx
  5. Picture from : http://en.wikipedia.org/wiki/File:ESB.svg
  6. Picture from : http://www.microsoft.com/windowsazure/appfabric/ Service Bus helps to provide secure connectivity between loosely-coupled services and applications, enabling them to navigate firewalls or network boundaries and to use a variety of communication patterns.