BB29  Lynn Ayres Program Manager Identity Services  Tore Sundelin Program Manager Identity Services One identity model that puts users in control of their identities Software Live.

Download Report

Transcript BB29  Lynn Ayres Program Manager Identity Services  Tore Sundelin Program Manager Identity Services One identity model that puts users in control of their identities Software Live.

BB29
 Lynn Ayres
Program Manager
Identity Services
 Tore Sundelin
Program Manager
Identity Services
One identity model that puts users in control of their identities
Software
Live ID
“Geneva”
Server
Microsoft
Services
Connector
Active Directory
Enhances Developer
Productivity
Microsoft
Federation
Gateway
Windows
CardSpace
“Geneva”
Standards Based
.Net Access
Control
Service
“Geneva”
Framework
Live
Framework
Claims-Based Access
Services
Flexibility via Choice
One identity model that puts users in control of their identities
Software
Live ID
“Geneva”
Server
Microsoft
Services
Connector
Active Directory
Enhances Developer
Productivity
Microsoft
Federation
Gateway
Windows
CardSpace
“Geneva”
Standards Based
.Net Access
Control
Service
“Geneva”
Framework
Live
Framework
Claims-Based Access
Services
Flexibility via Choice
Services Revolution



1.
2.
3.

Switch from a server (Exchange) to a
cloud service
Adopt a new service
Move an on-premises app to a
cloud service
How does a business use services without
changing their on-premises identity
infrastructure? (ex: Active Directory)
Cloud
Enterprise
Apps
ISV Apps
Azure Services Platform
Microsoft
Online
Live
Mesh
Microsoft
Dynamics
CRM Online
Enterprise On-Premises
Browser
Office
Apps
Live
Identity
Service
Windows
Live
Desktop
Active
Directory
Exchange ISV Apps SharePoint

IT admin

Employees

Developers



Federation hub brokers access for
Cloud services:
 Microsoft cloud applications
 Developers using Azure Services Platform
 Other businesses using the Gateway

Manage one relationship to connect to
any service

Free download for quick and easy setup

Connects Active Directory to the Gateway
and cloud services and applications

Protects corporate account security
Cloud
Enterprise
Apps
ISV Apps
Azure Services Platform
Live
Identity
Service
Microsoft
Federation
Gateway
Microsoft
Services
Connector
Browser
Microsoft
Online
Live
Mesh
Microsoft
Dynamics
CRM Online
Enterprise On-Premises
Active
Directory
Office
Apps
Windows
Live
Desktop
Exchange ISV Apps SharePoint
 Tore Sundelin
Program Manager
Identity Services
Registers the enterprise’s domain, sign-in
endpoint, and a token signing key
 Enterprise asserts domain ownership via an SSL
cert issued by a trusted CA
 Ongoing management is automatic

Enterprise
Microsoft
Services
Connector
Active
Directory
Server Apps
Microsoft
Federation
Gateway
Microsoft Cloud
Applications
Developer
Services

Connector
Federation
User
clicks issues
accesses
taken
validates
link
to
Gateway
Microsoft
service
foraservice
login
credentials
validates
issues
Services
token
service
token
and
with
Connector
token
redirects
and
Active
transforms
andDirectory
for
to
redirects
Microsoft
claims
to
authentication
requested
Federation
service Gateway
Browser
Office
Desktop
Enterprise
Apps
Microsoft
Services
Connector
Active
Directory
Server Apps
Microsoft
Federation
Gateway
Microsoft Cloud
Applications
Developer
Services

Businesses federate once to connect to
any service

Services federate once to connect to
any business

Hub and spoke model abstracts complexity:

Endpoint changes, key rollovers, protocol
changes, etc.
 For businesses:
 Microsoft Services Connector, “Geneva”
 Works for businesses without AD
 Protocols:
SAML
 Tokens: SAML
 For relying services:
 Frameworks: .NET, “Geneva”, Live
 Messaging:
SAML


Supports range of network infrastructures:










Microsoft Services Connector
Preview available today:
www.microsoft.com/servicesconnector
 Beta in early 2009


Microsoft Federation Gateway




Released, available today
Whitepaper
On-boarding documentation
We want your feedback!

Forum
© 2008 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries.
The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market
conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation.
MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.