Windows Identity Foundation-IdentityProvider 发起的 SSO
感谢您的阅读。我正在尝试在我的网站 (Site1) 和我们关联的另一个网站 (Site2) 之间执行 SSO。我想使用 WIF 和 STS。我的网站已连接到 SQL Server 数据库,并且我针对该数据库进行身份验证。通过身份验证后,我想在主页上显示一个链接/图标,链接到其他站点(site2)并提供其他站点(site2)所需的声明。从我在网上看到的情况来看,大多数情况是在 site2 上请求资源时,系统重定向到 STS 站点,并且在 STS 成功登录后,声明将呈现给 site2 并为用户提供访问权限。如何实现 IDP 发起的 SSO?单击登录后的链接时,我想对 site2 页面进行身份验证。
Thanks for reading. I am trying to perform SSO between my website(Site1) and another site(Site2) that we have association with. I'd like to use WIF and STS. My website is already connected to a SQL server database and i authenticate against that database. Once I'm authenticated, I'd like to show a link/icon on my main page that links to the other site(site2) and provides the claims that the other site(site2) needs. From what I've seen online its mostly the case that on requesting a resource on site2, the system redirects to STS site and on successful login at the STS the claims are presented to the site2 and user is provided access. How can i achieve IDP initiated SSO? On clicking a link post login, i'd like to authenticate to site2 page.
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
data:image/s3,"s3://crabby-images/d5906/d59060df4059a6cc364216c4d63ceec29ef7fe66" alt="扫码二维码加入Web技术交流群"
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(1)
使用基于声明的身份验证(使用 WIF 和 ASP.NET)的此方案的最简单实现是让 Site1 和 Site2 都信任 STS。所以会有 3 个组件。其他答案(以及您的问题)似乎表明 Site1 和 STS 是一个整体,通常不建议这样做。
序列为:
未经身份验证,他会被重定向到 STS。
创建的。
未经身份验证,因此重定向到 STS
Site2(可能且经常具有不同的声明)
更新:
声明指南的本章讨论 SharePoint 特定设置和配置。
http://msdn.microsoft.com/en-us/library/hh446525。 ASPX
The simplest implementation of this scenario with claims based authentication (with WIF and ASP.NET) is to have Site1 and Site2 both trust an STS. So there would be 3 components. The other answers (and your question) seem to suggest that Site1 and the STS are a single thing, which is not generally recommended.
Sequence would be:
unauthenticated, he is redirected to the STS.
created.
unauthenticated, so redirects to STS
Site2 (potentially and often with different claims)
Update:
This chapter of the claims guide talks about SharePoint specific settings and config.
http://msdn.microsoft.com/en-us/library/hh446525.aspx