sharepoint authentication and authorization

41

Upload: dan-usher

Post on 02-Jul-2015

381 views

Category:

Technology


3 download

DESCRIPTION

SharePoint as a platfor

TRANSCRIPT

Page 1: SharePoint Authentication and Authorization
Page 2: SharePoint Authentication and Authorization

Scott

Hoag

ciphertxt

Page 3: SharePoint Authentication and Authorization

Dan

Usher

usher

Page 4: SharePoint Authentication and Authorization

Jason

Himmelstein

sharepointlhorn

Page 5: SharePoint Authentication and Authorization

introductions

Page 6: SharePoint Authentication and Authorization

a few ground rules…

Page 7: SharePoint Authentication and Authorization
Page 8: SharePoint Authentication and Authorization

Security

Page 9: SharePoint Authentication and Authorization

http://xkcd.com/109/

Page 10: SharePoint Authentication and Authorization
Page 11: SharePoint Authentication and Authorization
Page 12: SharePoint Authentication and Authorization
Page 13: SharePoint Authentication and Authorization
Page 14: SharePoint Authentication and Authorization
Page 15: SharePoint Authentication and Authorization
Page 16: SharePoint Authentication and Authorization
Page 17: SharePoint Authentication and Authorization
Page 18: SharePoint Authentication and Authorization
Page 19: SharePoint Authentication and Authorization
Page 20: SharePoint Authentication and Authorization

authorizing

authority

authority

authority

authority

Page 21: SharePoint Authentication and Authorization
Page 22: SharePoint Authentication and Authorization
Page 23: SharePoint Authentication and Authorization

http://go.spdan.com/cba

Page 24: SharePoint Authentication and Authorization
Page 25: SharePoint Authentication and Authorization

htt

p:/

/go.s

pdan.c

om

/cla

imsencodin

g

Page 26: SharePoint Authentication and Authorization

Sourc

e:

htt

p:/

/go

.sp

da

n.c

om

/iis

au

th

AS

P.N

ET

Auth

entication

Page 27: SharePoint Authentication and Authorization

1. Resource Requested

2. AuthN Request / Redirect

3. AuthN Request

4. Security Token

5. Security Token Request

6. Service Token

7. Resource Request w/Service Token

8. Resource Sent

Identity Provider

Security Token Service

aka IP-STS

SharePoint 2010

aka RP

Page 28: SharePoint Authentication and Authorization

Side Story

SharePint Anyone?

Page 29: SharePoint Authentication and Authorization
Page 30: SharePoint Authentication and Authorization
Page 31: SharePoint Authentication and Authorization
Page 32: SharePoint Authentication and Authorization
Page 33: SharePoint Authentication and Authorization
Page 34: SharePoint Authentication and Authorization

https://sts.domain.com

Page 35: SharePoint Authentication and Authorization
Page 36: SharePoint Authentication and Authorization

Anonymous

Authentication

Is In Site Group?

Does user have claim attribute?

Web Application / Site Collection

Secured Site / Site Collection / Content

Content Repository

Content

Page 37: SharePoint Authentication and Authorization
Page 38: SharePoint Authentication and Authorization

Real World

Page 39: SharePoint Authentication and Authorization
Page 40: SharePoint Authentication and Authorization

Questions / Evals