Microsoft CRM 2011 IFD 与 Windows Auth
有人可以向我解释为什么要使用 IFD(面向互联网的部署)来访问 Microsoft CRM,而不是仅使用 Windows 身份验证吗?他们的特征似乎与我相当。但不确定 IFD 相对于 Windows 身份验证的优势。
谢谢!
Can someone explain to me why one would use IFD (Internet Facing Deployment) to access Microsoft CRM vs. just using Windows Authentication? They seem equivalent to me in their features. Not sure of the benefits of IFD over Windows auth however.
Thanks!
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(2)
查看之前的答案,了解有关此主题的一些讨论: MS Dynamics CRM 的公开现场部署与 IFD 部署
从我的角度来看,通过互联网使用 Windows Auth 进行 CRM 的最大问题是 Outlook 集成问题。我要说的第二点是,Windows Auth 可能会给在域外(即他们的家庭计算机)从非域计算机访问 CRM 的人员带来问题。并非总是如此,但我看到弹出的问题(不是经常)在基于表单的配置中可以避免。
提醒一下,2011 年,IFD 功能已发生重大更改,因此您必须使用基于声明的 Active Directory 联合身份验证服务。我建议阅读 http://blogs.msdn.com/b/crm/archive/2011/01/13/configuring-ifd-with-microsoft-dynamics-crm-2011.aspx 并观看视频: http://www.youtube.com/watch?v=ZD5qaa-G99E。
您当然可以使用 Windows Auth,但如果您愿意投入额外的工作,请使用面向 Internet 的设置,以获得更强大且支持更好的安装。
Take a look at this previous answer for some discussion on this topic: Exposed onsite vs IFD deployments for MS Dynamics CRM
I would say from my standpoint the biggest issue with using Windows Auth over the internet for CRM is the issue of Outlook integration. The second point I would make is that Windows Auth can present issues to people accessing CRM from a non-domain computer when outside the domain - i.e., their home computer. Not always but I have seen issues pop-up (not very often) that are avoided in a forms based configuration.
As a reminder in 2011 the IFD feature has been changed signficantly so that you must use Active Directory Federation Service which is claims-based. I recommend reading over http://blogs.msdn.com/b/crm/archive/2011/01/13/configuring-ifd-with-microsoft-dynamics-crm-2011.aspx and watching the video at http://www.youtube.com/watch?v=ZD5qaa-G99E.
You can certainly go with Windows Auth but if you are willing to put in the extra work go with the Internet Facing setups for a more robust and better supported install.
我想补充一下之前的答案。
从域外集成 Outlook 客户端可以通过不时在控制面板中重置 Windows 凭据来完成。
另一个复杂的问题是 SharePoint 集成,它不能在域外使用 SSO。
如果您确实使用 IFD,我在此博客上推荐:
http://dynamics.co.il/configuring-crm-2011-ifd
I want to add to privious answer.
Integrating Outlook client from outside the domain can be done by reseting windows credential in the control panel from time to time.
another complication is SharePoint integration which can't be used outside the domain with SSO.
If you do use IFD, I recommand on this blog:
http://dynamics.co.il/configuring-crm-2011-ifd