you, yourself and internet
DESCRIPTION
Identity management in 21st century is not an easy task - neither for user, nor for developers.TRANSCRIPT
![Page 2: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/2.jpg)
ABOUT ME
• Windows Azure MVP (3 times now)
• With Azure from the beginninghttp://blogs.staykov.net/@astaykov
![Page 3: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/3.jpg)
AGENDA
What has changed ? Small story Terminology Windows Azure Active
Directory & Access Control Service
Demos
![Page 4: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/4.jpg)
IDENTITY
ASP.NET Membership Provider
ASP.NET OAuth WIF OWIN
![Page 5: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/5.jpg)
WHAT HAS CHANGED?
![Page 6: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/6.jpg)
SMALL STORY
![Page 7: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/7.jpg)
THE STORY
![Page 8: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/8.jpg)
USER PERCEPTIONS
Create an account 3 out of 4 customers avoid this
Information accuracy 76 % have given incomplete / incorrect
Password reset 45% admin to leave the site
Create account 24% of online shoppers abandon the site
User loyalty 55% are likely to return
![Page 9: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/9.jpg)
IN REAL LIFE
![Page 10: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/10.jpg)
IT’S ALL ABOUT CLAIMS
![Page 11: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/11.jpg)
CLAIMS
ClaimSecurity Token (SAML, SWT, JWT)Security Token Service (STS) Identity providerFederation Provider
![Page 12: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/12.jpg)
TERMINOLOGY
SSI (Single Sign In)SSO (Single Sign-Out or Single Sign-On)
Identity Management*
![Page 13: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/13.jpg)
SCENARIOS Global app
![Page 14: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/14.jpg)
Windows Azure*
CLAIMS-BASED IDENTITYClaims
Active DirectoryFederation Services 2/3Windows Server RoleAn STS for ADWS-Federation, WS-Trust, SAML
![Page 15: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/15.jpg)
WIF PIPELINE FOR ASP.NET
FAM SAM CAMRedirectToken handlingClaims filtering
Session Claims-BasedAuthorization
Windows Azure
Claims
![Page 16: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/16.jpg)
WINDOWS AZURE ACTIVE DIRECTORY ACCESS
CONTROL
![Page 17: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/17.jpg)
AUTHENTICATING USERS FROM WEB AND SOCIAL PROVIDERS
Sign-up and claims enrichment
Windows Azure*
![Page 18: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/18.jpg)
ACCESS CONTROL SERVICE – BUILDING BLOCKS
ACS Namespace
IdentityProviders
RelyingParty
Applications
RuleGroups
Service Identities
![Page 19: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/19.jpg)
KEY TAKEAWAYS
Claims will get the job done! Use Federated Authentication It is way easier than managing
password hashes It is FREE!
![Page 20: You, yourself and Internet](https://reader036.vdocuments.site/reader036/viewer/2022081519/558a5f45d8b42a24558b4620/html5/thumbnails/20.jpg)
DEMOSGet cracking some code!