Enterprise single sign-on

Finding a Desktop Application for Managing the Desktop Single Entry Point (SAML v2, Identity Provider, Service Provider)

0
source share
3 answers

Here is how I achieved in my enterprise:

There may be 2 approaches

  • Use "Windows Authentication", which can be given to you by the actual user trying to access the website. Any corporate application (provided that it is hosted on an Intranet) has integration with Active Directory. This user ID can be authenticated using an LDAP server.

  • OAuth , . Front End . , .

+1

ADFS 2.0 RSTS SSO, IdentityProviders Relinging . STS ( , , web api/web service/AD/Database, STS IDP).

-, IDP, Relying RSTS. ( wcf, WS Trust).

/ .

ADFS 3.0, JOT (JSON) ( ) SAML 2.0.

0

ADFS 2.0 Windows Server 2008 R2. , , , , URL- .

ADFS 3.0 . ADFS 3.0 , , Microsoft Internet Information Services (IIS) , .

0

Source: https://habr.com/ru/post/1792111/


All Articles