SharePoint Authentication and Authorization

Preview:

DESCRIPTION

SharePoint as a platfor

Citation preview

Scott

Hoag

ciphertxt

Dan

Usher

usher

Jason

Himmelstein

sharepointlhorn

introductions

a few ground rules…

Security

http://xkcd.com/109/

authorizing

authority

authority

authority

authority

http://go.spdan.com/cba

htt

p:/

/go.s

pdan.c

om

/cla

imsencodin

g

Sourc

e:

htt

p:/

/go

.sp

da

n.c

om

/iis

au

th

AS

P.N

ET

Auth

entication

1. Resource Requested

2. AuthN Request / Redirect

3. AuthN Request

4. Security Token

5. Security Token Request

6. Service Token

7. Resource Request w/Service Token

8. Resource Sent

Identity Provider

Security Token Service

aka IP-STS

SharePoint 2010

aka RP

Side Story

SharePint Anyone?

https://sts.domain.com

Anonymous

Authentication

Is In Site Group?

Does user have claim attribute?

Web Application / Site Collection

Secured Site / Site Collection / Content

Content Repository

Content

Real World

Questions / Evals

Recommended