Eugenio Pace

Preparing to be wrong

Browse by Tags

Tagged Content List
  • Blog Post: Claims Identity Guide–Hands On Labs

    Training content based on our guides has been as popular as the content itself. You can now download the “Release Candidate” for labs corresponding to the new guide . The labs are more than just a mirror of the guide. We took the opportunity of adding a few things that complement and extend what is explained...
  • Blog Post: Intuit Data Services + Windows Azure + Identity

    This week, we completed a small PoC for brabant court , a customer that is building a Windows Azure application that integrates with Intuit’s Data Services (IDS). A couple words on mabbled from brabant court. Mabbled is a Windows Azure app (ASP.NET MVC 3, EF Code First, SQL Azure, AppFabric ACS|Caching...
  • Blog Post: Authentication in WP7 client with REST Services–Part I

    In the last drop, we included a sample that demonstrates how to secure a REST web service with ACS, and a client calling that service running in a different security realm: In this case, ACS is the bridge between the WS-Trust/SAML world (Litware in the diagram) and the REST/SWT side (Adatum’s a-Order...
  • Blog Post: Drop #2 of Claims Identity Guide on CodePlex

    Second drop of samples and draft chapters is now available on CodePlex. Highlights: All 3 samples for ACS v2: (" ACS as a Federation Provider ", " ACS as a FP with Multiple Business Partners " and " ACS and REST endpoints "). These samples extend all the original "Federation...
  • Blog Post: Web Single Sign Out–Part II

      Following up on previous post , there were 2 questions: Where do these green checks images come from? There are nowhere in a-Order or in a-Expense… you would spend hours looking for the PNG, or JPG or GIF and you will never find it, because it is very well concealed. Can you guess where it comes...
  • Blog Post: Single Sign Out–WebSSO

    While reviewing all the existing samples we’ve noticed that our implementation of Single Sign Out was kind of….weak.  It wasn’t really fully implemented and wasn’t very clear what was happening either (or what it should happen) We’ve fixed all that now in scenario 1: WebSSO . Things get more complicated...
  • Blog Post: ACS as a Federation Provider – Claims transformation

    To work properly, a-Order needs a number of claims to be supplied: User name Organization Role The "Organization” claim is used to filter orders belonging to a specific customer of Adatum. For example, Litware users (like Rick) will eventually end up with a token containing a claim with “Organization...
  • Blog Post: ACS as a Federation Provider–Home Realm Discovery Part 2

    In my previous post, I had a question for all you: What would happen if Adatum’s FP didn’t supply ACS with the whr parameter? An the answer is: ….. ACS will simply ask the user!   ACS has no way (besides the whr parameter) of knowing where to go next (unless you configured your app with only 1 Identity...
  • Blog Post: Our next project – Claims based Identity and Access Control

    Not surprisingly maybe, security in general, and authentication & authorization in particular, is a consistently highly rated concern for our customers. These concerns are especially elevated  with those considering the cloud, because they don’t have as much control on the cloud as they would...
  • Blog Post: Claims Identity Guide samples updated

    I’ve just uploaded to CodePlex updated samples for the Claims based Identity Guide . This have all been adapted to work on Visual Studio 2010, .NET 4.0 and MVC 2.0. See here for downloading the bits. From the release notes:                                   ...
  • Blog Post: Identity Federation Interoperability – WIF + ADFS + CA SiteMinder

      Update: I just found this comprehensive guide for setting up federation with CA SiteMinder. http://technet.microsoft.com/en-us/library/ff754295(WS.10).aspx How it works (Full size diagram here ) End to end demo (Video here ) Technorati Tags: Federated Identity , SSO , Federation Provider , Identity...
  • Blog Post: Identity Federation Interoperability – WIF + ADFS + IBM Tivoli Federated Identity Manager

      How it works (Full size diagram here ) End to end demo (Video here ) Technorati Tags: ADFS , WIF , Geneva , Identity Federation , Identity Provider , STS , SSO
  • Blog Post: Identity Federation Interoperability – WIF + ADFS + Sun’s OpenSSO

    As I announced some time ago, we’ve been working on a few labs that demonstrate interoperability with 3rd party identity components. More specifically: CA SiteMinder 12.0 IBM Tivoli Federated Identity Manager 6.2 Sun OpenSSO 8.0 The general architecture of the lab follows what is described in chapter...
  • Blog Post: Windows Azure Architecture Guide – Part 2 – TailSpin Surveys – AuthN and AuthZ

    Tailspin Surveys is a multitenant, SaaS solution, targeting many different customers. Some of these customers might be “enterprise” with “Big-IT” and are likely to demand advanced integration capabilities for identity (e.g. identity federation). Others, potentially smaller, are likely to not require...
  • Blog Post: Just Released – Claims-Identity Guide online

    The entire book is now available for browsing online on MSDN here: http://msdn.microsoft.com/en-us/library/ff359115%28lightweight%29.aspx Now, to be honest, it doesn’t look as nice as the printed book (small preview here):     But everything is in there! (and doesn’t look that bad at all either...
  • Blog Post: ADFS / WIF on Amazon EC2

    Steve Riley’s post on growing interest from Amazon customers on identity federation is consistent with what I hear from our own customers. As part of our project , we actually tested the two scenarios he describes on EC2: “I imagine most scenarios involve applications on Amazon EC2 instances obtaining...
  • Blog Post: Updated code samples & chapters for Claims Identity Guide – Release Candidate

    In synch with the availability of ADFS V2.0 Release Candidate , I’m very happy to announce that we are posting a new update of the guide. Our own “RC”. You’ll find new samples and new chapters. Both content complete now. We are now covering the following scenarios: Single Sign on for web applications...
  • Blog Post: RIA Services and WIF – Part II

    As promised in my previous post , here’s the second part of my findings playing with WIF and RIA Services beta. This time, I used the HRApp sample available here . The initial steps are essentially the same I described before: 1- Installed the sample and make sure it runs 2- Ran “ FedUtil ” which: a...
  • Blog Post: Updated RIA and WIF samples – Part I

    Some time ago, I put together a simple demo integrating WIF in RIA Services. Now RIA is a Beta and there’s a lot of cool stuff in there. The good news from an identity perspective is that it just works :-). I’ve been playing a little bit with a couple of new samples and with the previous (updated) HRApp...
  • Blog Post: WIF is RTM

    Windows Identity Foundation is here! Congrats to my colleagues shipping great Framework. http://msdn.microsoft.com/en-us/evalcenter/dd440951.aspx
  • Blog Post: Claims based Identity Guide – New release and PDC goodness

    New updated chapters & samples are posted on CodePlex . The samples are all updated for WIF RC and include new scenarios and technologies (e.g. web services with WCF and web sites with MVC). If you are going to PDC , lot’s of interesting things are happening there. Of all things, you will have a...
  • Blog Post: RIA Services and Windows Identity Foundation – Claims enabling a RIA application

    Recently a Customer asked me if an application using RIA Services could use WIF. I’m fairly new to RIA Services so I didn’t know the answer right away, however I suspected the integration should not be too hard, so I spend a couple of days spiking a solution. The good news: it just works!     ...
  • Blog Post: Claims based Identity & Access Control Guide – Early drafts available

    We finally have a CodePlex site for sharing early content with you all. Check the downloads section for: A few intro chapters (some of the “theory”, technologies and protocols behind claims based identity) The first scenario (roughly described in my post here , but better and nicer, and written in English...
  • Blog Post: Announcing new project – patterns & practices - Claims based Authentication & Authorization Guide

    For the next couple of months I’ll be working on a new project here at patterns & practices , developing a new guide for claims based authentication and authorization. I’m personally very happy to be working on this project, for many reasons. I believe frameworks like “Geneva” (previously known as...
Page 1 of 1 (24 items)