SAML Token Claims Based Identity SPUser ǻ = username Claim Value Type . = String + = RFC822 Name SharePoint Protocols.

Download Report

Transcript SAML Token Claims Based Identity SPUser ǻ = username Claim Value Type . = String + = RFC822 Name SharePoint Protocols.

SAML Token
Claims Based Identity
SPUser
ǻ = username
Claim Value Type
. = String
+ = RFC822 Name
SharePoint Protocols
Start
User
credentials
provided?
Yes
Is the
endpoint
outside of an
app web?
No
OAuth token
present?
No
Yes
Set user context
No
Yes
Is endpoint
CSOM/REST?
No
Yes
Does the
token
include user
info?
Yes
Set app and user
context
No
Set App-Only
context
Use anonymous
context
End
HTTP service
limited access
on behalf of a resource owner
or by allowing
the third-party application to obtain access on its own
behalf
7. Access token
Windows Azure
ACS
2. Request
context token
3. Signed
context token
6. Refresh
token
Subject
8. Req. + Access token
1. Start App
4. App Redirect
SharePoint Server
9. SharePoint data
5. Request App Start Page + Context Token (SPAppToken)
10. App Start Page + Contents
App Server
Out of box
S2S Scenarios,
Extensibility
App Model
Oauth & S2S
identity
platform
Claims
infrastructure
Services
Scenarios
SharePoint
to
Exchange
eDiscovery
Site Mailboxes
MySite Project Tasks Sync
High Resolution Photos
SharePoint
to SharePoint
Translation service
Hybrid: Duet/SAP
Hybrid Search
SharePoint to
MTW
Multi-tenant Workflows (MTW)
SharePoint to Apps
App Model extensibility
SharePoint to Azure
media service…
SharePoint Video Portal (upcoming)
Sponsored by