SlideShare a Scribd company logo
1 of 48
Jorgen Thelin
Senior Program Manager
Microsoft Corporation
Session Code: SIA303
Web                ISVs            Organizations
   Developers      • Federation for     • Turnkey
• Customizable       selling their        federation for
  identity UX        applications to      adopting services
• Single Sign On     organizations        (Online, Live, ISVs
• Access to        • Easy on-boarding     )
  user data          of new customers   • Works with
                                          existing identity
                                          infrastructure
Agenda
Baseline understanding of Identity Services & Windows
Live ™ ID
Identity challenges from Cloud Services

      Organizations
      • Consuming federated identities -- Microsoft ® Federation Gateway
      • Rapid on-boarding for organizations – Codename “Geneva” Server +
        one-click federation

             ISVs
             • Become part of the federation ecosystem
             • Consuming federated identities
             • Rapid on-boarding for your customers and suppliers


                    Web Developers
                    • Consuming Windows Live IDs on your site
                    • Accessing user data on your site
Windows Live Identity Services
Core principles
                                  Ease of use




                                                        Open and
               Rich
                                                        Standards-
           functionality
                                                          based
                                   Security
                                  is our top
                                   priority!



                   Personal and                 Federation
                     Business                     ready
Identity Services - Many components
       Identities        • Authentication: users, applications, devices


 Strong Authentication   • Investing in 2FA such as Smartcard, StartKey


  Attacker Resistant     • User / IP reputation, Account abuse prevention


   UI Customization      • Windows Live ™ ID is fully customizable


    Data Portability     • Delegated auth: user permission to access data


   Open Standards        • SAML 2.0 / OpenID / OAuth

      Federated
                         • Compatible with Microsoft ® Federation Gateway
    Authentication
Software and Service Topology
                             Cloud
  Enterprise                                       Windows        Microsoft®
                 ISV Apps
    Apps                                             Live          Online

                                                                   Microsoft
                                                     Live
  Azure™ Services Platform     Online                             Dynamics®
                                                     Mesh         CRM Online
                              Identity
                               Service




    Browser
                                               Org On-Premises
                                    Active
     Office
                                  Directory®
                   Desktop
     Apps                                       Exchange ISV Apps SharePoint
Federated Ecosystem
Benefits of federated identity
  Open participation based on industry standards
  Linking service providers and service consumers
  Access to more services and applications:
       Microsoft cloud applications
       Developers using Azure ™ Services Platform
       Developers using other hosting platforms
  Access to more customers:
       500m+ Windows Live ID users
       Other organizations using federated identity


  Microsoft is offering solutions that greatly simplify the federation
  scenarios
Software and Service Challenges
Security Challenges                 Adoption Challenges
 Identity islands:                   IT Admin
   User identity in AD on premise       Re-work security practices
   Software service                     and tools?
   (Exchange Labs) is in cloud          Re-train to manage identity
   Partners & Customers                 federation?
 Security zones:                     Users
   Physical isolation for               Re-train on a new user
   on-premise software                  experience?
   Service in cloud                  Developers
   Data transport across                Re-write existing applications?
   security zones
Federation               Rapid on-
  Infrastructure          boarding / tools
• Microsoft Federation   • Codename “Geneva”
  Gateway                  Server
• Standards-based        • One-click federation
• Service adoption
  scenarios
Scenario - Switching to Cloud Services
                              Cloud
    Enterprise                                     Windows      Microsoft®
                 ISV App
      Apps                                           Live        Online
                                                                 Microsoft
                                                    Live
                                                                Dynamics®
   Azure™ Services Platform                         Mesh        CRM Online



                                             Challenge: How to switch to cloud
Typical IT Requests:                          services without scrapping your
1) Outsource service to                       existing identity infrastructure?
  cloud-based delivery
  (e.g. Exchange)
2) Move application to                Enterprise On-Premises
  cloud hosting                   Active
                                Directory®
3) Use a new cloud-service
                                               Exchange ISV App SharePoint
Software and Service Topology – Federated Identity

                                   Cloud
   Enterprise                                              Windows      Microsoft®
                ISV Apps
     Apps                                                    Live        Online
                                                                         Microsoft
                                                            Live
                                Live       Microsoft                    Dynamics®
  Azure™ Services Platform                                  Mesh        CRM Online
                              Identity    Federation
                               Service     Gateway




                                          “Geneva”
                                           Server       Enterprise On-Premises
                    Browser
                                            Active
                     Office               Directory®
                               Employee                Exchange ISV AppsSharePoint
                     Apps
Scenario - Collaborating with Other Organizations
                                     Cloud
    Enterprise                                               Windows      Microsoft®
                    ISV Apps
      Apps                                                     Live        Online

                                                                           Microsoft
                                                              Live
   Azure™ Services Platform       Live       Microsoft                    Dynamics®
                                                              Mesh        CRM Online
                                Identity    Federation
                                 Service     Gateway




  “Geneva”                                 “Geneva”
   Server          University               Server
                                                             Org On-Premises

    Active                                   Active
  Directory®                               Directory®
                 Exchange                                Exchange ISV AppsSharePoint
Scenario - Outreach to End User Customers
                                   Cloud
   Enterprise                                            Windows         Microsoft
                 ISV Apps
     Apps                                                  Live           Online

                                                                         Microsoft
                                                           Live
   Azure Services Platform      Live      Microsoft                      Dynamics
                                                           Mesh         CRM Online
                              Identity   Federation
                               Service    Gateway




                                         “Geneva”
                                          Server          Org On-Premises
    Browser

     Office                               Active
                   End User              Directory
      Apps
                                                      Exchange ISV Apps SharePoint
Solution: Microsoft Federation Gateway
   Federation hub service enables
   access to:
      Microsoft services             Service     Service     Service
                                                             Provider
                                     Provider    Provider
      ISVs on Azure Platform
      Other businesses
      500+ million Live IDs
                                                Federation
                                                   Hub
   Manage one relationship to
   connect to any combination

   Hub and spoke model               Customer    Customer    Customer
   handles endpoint changes,
   key rollovers, protocol changes
Federation               Rapid on-
  Infrastructure          boarding / tools
• Microsoft Federation   • Codename “Geneva”
  Gateway                  Server
• Standards-based        • One-click federation
• Service adoption
  scenarios
Solution: Live Federation Tool for quot;Genevaquot; Server

    Codename “Geneva” Server connects Active
    Directory® to:
       Microsoft Federation Gateway
       Online/Live services, Windows Live ID & ISV services
       Other standards-based federation hubs

    Supports range of AD and network topologies:
       Single server, Server farm, Proxy server, DMZ
       Active Directory:
       Single domain, Single forest, Multiple forests

    Download tool for quick and easy connection setup to
    Microsoft Federation Gateway

    http://www.microsoft.com/Geneva
Federation Gateway + quot;Genevaquot; Server
Installation and Setup
Connecting to Federation Gateway
One-click federation tool for quot;Genevaquot;
   Connects Active Directory® to Federation Gateway
   and Cloud services / applications
   One-time federation setup – Trust-Provisioning
     Assert domain ownership via SSL cert issued by a trusted Cert Authority
     Registers organization's domain, sign-in endpoint, and token signing key
     http://msdn.microsoft.com/en-us/library/dd164396.aspx

                                         Microsoft   Microsoft Cloud
   Organization    “Geneva”             Federation
                    Server                               Applications
                                         Gateway
                                                         Developer
                    Active
                                                          Services
                   Directory
    Server Apps
Federation Gateway and quot;Genevaquot; Server
Accessing federated resources
from inside corporate network
Using Federation Gateway and
quot;Genevaquot; – Accessing Services
1. User clicks link -- taken to Codename        3. “Geneva” Server issues login token and
   “Geneva” Server for authentication              redirects to Federation Gateway
2. “Geneva” Server validates credentials with   4. Federation Gateway validates token
   Active Directory                                and transforms claims
                                                5. Federation Gateway issues service
                                                   token and redirects to service
                      Browser
                                                6. User accesses service
                      Office
      Desktop          Apps


                                                  Microsoft                Cloud
          Enterprise            “Geneva”
                                                 Federation
                                 Server                            Applications
                                                  Gateway
                                                                   Developer
                                 Active
                                                                    Services
                                Directory
Federation Gateway and quot;Genevaquot; Server
Accessing federated resources
from outside corporate network
Using Federation Gateway and
quot;Genevaquot; – Deployment Options

           Active
          Directory


                      “Geneva”
         “Geneva”
                       Server
          Server
                        Proxy

                                 External
                                   user
  Internal
    user
         Enterprise    DMZ
Benefit: Reduced Federation Costs
 Federated Identity makes switching to Cloud Services easier:

     Microsoft Federation Gateway for federation of both
     enterprises and services

     Codename “Geneva” Server extends AD into the Cloud –
     a simple on-boarding process

 Federation Gateway and “Geneva” Server provides:
     Fewer federation relationships to configure
     Helps protect corporate account security
     No new user accounts needed
     No extra passwords for users to forget!
Connections - Federation Ecosystem
User Applications        Relying Party (RP)       Identity Providers (IdP)
            Client SDK
              Live ID

 Windows
   App
                                                          Microsoft
                          Web Site /
                          Online App
                                                         Federation
                                                          Gateway
   Browser




                                               Live ID             Other federated
                                              Identity                 Identity
                                              Provider                Providers
Federation Gateway: Integration Options

    For businesses and universities:
       Microsoft Services Connector, “Geneva” Server
       Works for businesses without Active Directory too
       Protocols: WS-* (WS-Trust, WS-Federation)
       Tokens: SAML

    For web applications / relying services:
       Frameworks: .NET, “Geneva”, Live Framework
       Protocols:
Consume              Accessing user
identities and SSO           data
• Web Authentication   • Delegated
• Client SDK             Authentication SDK
Windows Live Web Authentication
How Web Authentication Works
        Live ID Web Authentication SDK Docs http://go.microsoft.com/fwlink/?LinkID=91762




                                                             Relying Party Web Site
                               1                              AdventureWorks.com

 End User
 with web                      5
 browser
                                                                   4           2



                               3




                                                            Live ID WebAuth service
Customizing the Identity Experience


Recognizable and not jarring


 Sign-in     Sign-up Consent
Sign-in Screen                                     Customizable Theme
                                                   Elements cannot change.
                                                   Customize look and feel.
                                                    Font color
                                                    Background color
                                                    Button color
                      Task integration statement
                                                    User tile color
                                                    Live ID description color

                                                   Customizable Contents
                                                   Elements that can
    Sign-up section
                                                   be customized.
                                                    Partner Logo
                                                    Task statement
                                                    Product description
                                                    Sign up section
                                                    Header background
Customizing Windows Live ID
Customizing Windows Live ID
 The top request from partners and the field!
Customizable Sign-in Screen
                         What was changed?

                         Partner Logo
                         Task statement
                         Product description
                         Sign up section
                         Header background
                         Font color
                         Background color
                         Button color
                         User tile color
                         Live ID
                          description color
Another Example – LiveWIM.com
Consume                 Accessing
identities and SSO          user data
• Web Authentication   • Delegated
• Client SDK             Authentication SDK
Windows Live Delegated Authentication
Enabling data portability
Delegated Auth Protocol Overview
End User                 “Granting Consent” phase
  with
browser
                                                          Consent UI
                                                        consent.live.com




           Application
             Provider    “Using Consent” Phase (user can be offline)
            (web site)
                                                            Resource
                                                          Provider (ex:
                                                            Windows
                                                         Live Contacts)


                                                       Live ID Delegation
                                                             Service
Web                ISVs            Organizations
   Developers      • Federation for     • Turnkey
• Customizable       selling their        federation for
  identity UX        applications to      adopting services
• Single sign On     organizations        (Online, Live, ISVs
• Access to user   • Easy on-boarding     )
  data               of new customers   • Works with
                                          existing identity
                                          infrastructure
Resources

  www.microsoft.com/teched            www.microsoft.com/learning

  Sessions On-Demand & Community      Microsoft Certification & Training Resources




  http://microsoft.com/technet                http://microsoft.com/msdn

  Resources for IT Professionals              Resources for Developers

    www.microsoft.com/learning
    Microsoft Certification and Training Resources
Complete an
evaluation on
CommNet and
enter to win!
Federation Resources and Links
 Microsoft Federation Gateway
    Released in 2006, available today
    Whitepaper: http://msdn.microsoft.com/en-us/library/cc287610.aspx
    On-boarding documentation:
    http://msdn.microsoft.com/en-us/library/dd164396.aspx


 Codename “Geneva” Server
    Beta 2 available today
    http://www.microsoft.com/Geneva


 Live Federation tool for Codename “Geneva” Server
    http://www.microsoft.com/Geneva
Live ID Resources & Links
Windows Live ID Developer Center - http://dev.live.com/liveid
  Windows Live ID Articles on MSDN - http://go.microsoft.com/fwlink/?LinkId=111111
  Windows Live ID Documentation on MSDN - http://msdn2.microsoft.com/en-us/library/bb404787.aspx
  Windows Live ID Developer Forum - http://go.microsoft.com/fwlink/?LinkID=78146
  Windows Live ID Team Blog - http://winliveid.spaces.live.com
Windows Live ID Whitepapers
  Introduction to Windows Live ID - http://msdn2.microsoft.com/en-us/library/bb288408.aspx
  Understanding Windows Live Delegated Authentication - http://msdn2.microsoft.com/en-
  us/library/cc287613.aspx
  Windows Live ID Federation - http://msdn2.microsoft.com/en-us/library/cc287610.aspx
Windows Live ID Documentation and SDKs
  Windows Live ID Web Authentication SDK Docs http://go.microsoft.com/fwlink/?LinkID=91762
  Web Authentication SDK Samples http://go.microsoft.com/fwlink/?LinkID=91761
  Windows Live ID Delegated Authentication SDK Docs http://go.microsoft.com/fwlink/?LinkID=107420
  Delegated Authentication SDK Samples http://go.microsoft.com/fwlink/?LinkId=107419
  Windows Live ID Client SDK download - http://go.microsoft.com/fwlink/?LinkId=86974
Delegated Authentication Resource Providers List -
http://go.microsoft.com/fwlink/?LinkID=108535
Windows Live ID Web Authentication app registration page http://lx.azure.microsoft.com
Windows Live Tools for Visual Studio - http://dev.live.com/tools/
© 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries.
The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should
 not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS,
                                                                           IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

More Related Content

What's hot

MMS 2015: What is ems and how to configure it
MMS 2015: What is ems and how to configure itMMS 2015: What is ems and how to configure it
MMS 2015: What is ems and how to configure itPeter Daalmans
 
Cloud computing bpos & windows azure oss
Cloud computing   bpos & windows azure ossCloud computing   bpos & windows azure oss
Cloud computing bpos & windows azure ossAvni Gupta
 
Tutorial: (Additional Slides) Business Intelligence: Making the Right Choices...
Tutorial: (Additional Slides) Business Intelligence: Making the Right Choices...Tutorial: (Additional Slides) Business Intelligence: Making the Right Choices...
Tutorial: (Additional Slides) Business Intelligence: Making the Right Choices...SPTechCon
 
Compliance and Governance Through Complex Entitlement Management
Compliance and Governance Through Complex Entitlement ManagementCompliance and Governance Through Complex Entitlement Management
Compliance and Governance Through Complex Entitlement ManagementNoam Bunder
 
Enterprise mobility management customer presentation december scripted
Enterprise mobility management customer presentation december scriptedEnterprise mobility management customer presentation december scripted
Enterprise mobility management customer presentation december scriptedNuno Alves
 
Open day competenze digitali boverino v-mware intro
Open day competenze digitali   boverino v-mware introOpen day competenze digitali   boverino v-mware intro
Open day competenze digitali boverino v-mware introRedazione InnovaPuglia
 
OreDev 2008: Software + Services
OreDev 2008: Software + ServicesOreDev 2008: Software + Services
OreDev 2008: Software + Servicesukdpe
 
Cloud 101 & BPOS - Microsoft Webinar
Cloud 101 & BPOS - Microsoft WebinarCloud 101 & BPOS - Microsoft Webinar
Cloud 101 & BPOS - Microsoft WebinarPiyush Saggi
 
Cloud Computing For Enterprises
Cloud Computing For EnterprisesCloud Computing For Enterprises
Cloud Computing For EnterprisesOne App Cloud
 
okta | Top 8 Identity and Access Management Challenges with Your SaaS Applica...
okta | Top 8 Identity and Access Management Challenges with Your SaaS Applica...okta | Top 8 Identity and Access Management Challenges with Your SaaS Applica...
okta | Top 8 Identity and Access Management Challenges with Your SaaS Applica...Abhishek Sood
 
XenMobile Datasheet
XenMobile DatasheetXenMobile Datasheet
XenMobile DatasheetNuno Alves
 
CIS14: Creating a Federated Identity Service for Better SSO
CIS14: Creating a Federated Identity Service for Better SSOCIS14: Creating a Federated Identity Service for Better SSO
CIS14: Creating a Federated Identity Service for Better SSOCloudIDSummit
 
"Oracle Insight for Investors" Educational Webcast - Oracle Fusion Middleware
"Oracle Insight for Investors" Educational Webcast - Oracle Fusion Middleware"Oracle Insight for Investors" Educational Webcast - Oracle Fusion Middleware
"Oracle Insight for Investors" Educational Webcast - Oracle Fusion Middlewareinvestorrelation
 
TechEd Preconference
TechEd PreconferenceTechEd Preconference
TechEd PreconferenceSimon Guest
 
ALM Integration in a Web 2.0 World
ALM Integration in a Web 2.0 WorldALM Integration in a Web 2.0 World
ALM Integration in a Web 2.0 Worldoslc
 
Ajax World Oct2008 Jrd
Ajax World Oct2008 JrdAjax World Oct2008 Jrd
Ajax World Oct2008 Jrdrajivmordani
 
Thinkfree Office Live Introduction Material En
Thinkfree Office Live   Introduction Material EnThinkfree Office Live   Introduction Material En
Thinkfree Office Live Introduction Material EnBenedict Ji
 

What's hot (20)

Luis Martins
Luis MartinsLuis Martins
Luis Martins
 
MMS 2015: What is ems and how to configure it
MMS 2015: What is ems and how to configure itMMS 2015: What is ems and how to configure it
MMS 2015: What is ems and how to configure it
 
Cloud computing bpos & windows azure oss
Cloud computing   bpos & windows azure ossCloud computing   bpos & windows azure oss
Cloud computing bpos & windows azure oss
 
Tutorial: (Additional Slides) Business Intelligence: Making the Right Choices...
Tutorial: (Additional Slides) Business Intelligence: Making the Right Choices...Tutorial: (Additional Slides) Business Intelligence: Making the Right Choices...
Tutorial: (Additional Slides) Business Intelligence: Making the Right Choices...
 
Compliance and Governance Through Complex Entitlement Management
Compliance and Governance Through Complex Entitlement ManagementCompliance and Governance Through Complex Entitlement Management
Compliance and Governance Through Complex Entitlement Management
 
Enterprise mobility management customer presentation december scripted
Enterprise mobility management customer presentation december scriptedEnterprise mobility management customer presentation december scripted
Enterprise mobility management customer presentation december scripted
 
Open day competenze digitali boverino v-mware intro
Open day competenze digitali   boverino v-mware introOpen day competenze digitali   boverino v-mware intro
Open day competenze digitali boverino v-mware intro
 
OreDev 2008: Software + Services
OreDev 2008: Software + ServicesOreDev 2008: Software + Services
OreDev 2008: Software + Services
 
Cloud 101 & BPOS - Microsoft Webinar
Cloud 101 & BPOS - Microsoft WebinarCloud 101 & BPOS - Microsoft Webinar
Cloud 101 & BPOS - Microsoft Webinar
 
Cloud Computing For Enterprises
Cloud Computing For EnterprisesCloud Computing For Enterprises
Cloud Computing For Enterprises
 
Configuring and deploying a private cloud with system center 2012
Configuring and deploying a private cloud with system center 2012Configuring and deploying a private cloud with system center 2012
Configuring and deploying a private cloud with system center 2012
 
okta | Top 8 Identity and Access Management Challenges with Your SaaS Applica...
okta | Top 8 Identity and Access Management Challenges with Your SaaS Applica...okta | Top 8 Identity and Access Management Challenges with Your SaaS Applica...
okta | Top 8 Identity and Access Management Challenges with Your SaaS Applica...
 
XenMobile Datasheet
XenMobile DatasheetXenMobile Datasheet
XenMobile Datasheet
 
Troubleshooting Federation, ADFS, and More
Troubleshooting Federation, ADFS, and More Troubleshooting Federation, ADFS, and More
Troubleshooting Federation, ADFS, and More
 
CIS14: Creating a Federated Identity Service for Better SSO
CIS14: Creating a Federated Identity Service for Better SSOCIS14: Creating a Federated Identity Service for Better SSO
CIS14: Creating a Federated Identity Service for Better SSO
 
"Oracle Insight for Investors" Educational Webcast - Oracle Fusion Middleware
"Oracle Insight for Investors" Educational Webcast - Oracle Fusion Middleware"Oracle Insight for Investors" Educational Webcast - Oracle Fusion Middleware
"Oracle Insight for Investors" Educational Webcast - Oracle Fusion Middleware
 
TechEd Preconference
TechEd PreconferenceTechEd Preconference
TechEd Preconference
 
ALM Integration in a Web 2.0 World
ALM Integration in a Web 2.0 WorldALM Integration in a Web 2.0 World
ALM Integration in a Web 2.0 World
 
Ajax World Oct2008 Jrd
Ajax World Oct2008 JrdAjax World Oct2008 Jrd
Ajax World Oct2008 Jrd
 
Thinkfree Office Live Introduction Material En
Thinkfree Office Live   Introduction Material EnThinkfree Office Live   Introduction Material En
Thinkfree Office Live Introduction Material En
 

Similar to Identity Services Drilldown - TechEd NA 2009

Development Model for The Cloud
Development Model for The CloudDevelopment Model for The Cloud
Development Model for The Cloudumityalcinalp
 
Cloud Intelligence - Get Your Head Out of the Clouds
Cloud Intelligence - Get Your Head Out of the CloudsCloud Intelligence - Get Your Head Out of the Clouds
Cloud Intelligence - Get Your Head Out of the CloudsHarold Wong
 
DDHS 2009 Microsoft Heads In The Cloud Feet On The Ground Peter de Haas...
DDHS 2009   Microsoft   Heads In The Cloud Feet On The Ground   Peter de Haas...DDHS 2009   Microsoft   Heads In The Cloud Feet On The Ground   Peter de Haas...
DDHS 2009 Microsoft Heads In The Cloud Feet On The Ground Peter de Haas...Peter de Haas
 
Soa204 Kawasaki Final
Soa204 Kawasaki FinalSoa204 Kawasaki Final
Soa204 Kawasaki FinalAnush Kumar
 
Cloudforce Essentials 2012 - Understanding Force.com in 60 Minutes or Less
Cloudforce Essentials 2012 - Understanding Force.com  in 60 Minutes or LessCloudforce Essentials 2012 - Understanding Force.com  in 60 Minutes or Less
Cloudforce Essentials 2012 - Understanding Force.com in 60 Minutes or LessSalesforce_APAC
 
SPEC INDIA Microsoft Technology Case Study
SPEC INDIA Microsoft Technology Case StudySPEC INDIA Microsoft Technology Case Study
SPEC INDIA Microsoft Technology Case StudySPEC INDIA
 
Microsoft Azure : Microsoft Strategy for Cloud Computing
Microsoft Azure : Microsoft Strategy for Cloud Computing Microsoft Azure : Microsoft Strategy for Cloud Computing
Microsoft Azure : Microsoft Strategy for Cloud Computing NstdaAcademy Nstda
 
AP086_ISV_Why_Microsoft_makes_the_cloud_shine.pptx
AP086_ISV_Why_Microsoft_makes_the_cloud_shine.pptxAP086_ISV_Why_Microsoft_makes_the_cloud_shine.pptx
AP086_ISV_Why_Microsoft_makes_the_cloud_shine.pptxmohaaalsa
 
Get ready to deliver Windows desktops and apps like a cloud provider with Pro...
Get ready to deliver Windows desktops and apps like a cloud provider with Pro...Get ready to deliver Windows desktops and apps like a cloud provider with Pro...
Get ready to deliver Windows desktops and apps like a cloud provider with Pro...Citrix
 
Patterns of Cloud Applications Using Microsoft Azure Services Platform
Patterns of Cloud Applications Using Microsoft Azure Services PlatformPatterns of Cloud Applications Using Microsoft Azure Services Platform
Patterns of Cloud Applications Using Microsoft Azure Services PlatformDavid Chou
 
Arc Ready Fy09 Q3 Live Mesh
Arc Ready Fy09 Q3   Live MeshArc Ready Fy09 Q3   Live Mesh
Arc Ready Fy09 Q3 Live MeshDavid Giard
 
Windows Azure For Architects
Windows Azure For ArchitectsWindows Azure For Architects
Windows Azure For ArchitectsAnko Duizer
 
Windows Azure: Is Azure right for you?
Windows Azure: Is Azure right for you?Windows Azure: Is Azure right for you?
Windows Azure: Is Azure right for you?Intergen
 
WebFest 2011 Hosting Applications CR by David Tang
WebFest 2011 Hosting Applications CR by David TangWebFest 2011 Hosting Applications CR by David Tang
WebFest 2011 Hosting Applications CR by David TangSpiffy
 

Similar to Identity Services Drilldown - TechEd NA 2009 (20)

ad.ppt
ad.pptad.ppt
ad.ppt
 
Ad.Ppt
Ad.PptAd.Ppt
Ad.Ppt
 
Development Model for The Cloud
Development Model for The CloudDevelopment Model for The Cloud
Development Model for The Cloud
 
.NET Development
.NET Development.NET Development
.NET Development
 
Cloud Intelligence - Get Your Head Out of the Clouds
Cloud Intelligence - Get Your Head Out of the CloudsCloud Intelligence - Get Your Head Out of the Clouds
Cloud Intelligence - Get Your Head Out of the Clouds
 
DDHS 2009 Microsoft Heads In The Cloud Feet On The Ground Peter de Haas...
DDHS 2009   Microsoft   Heads In The Cloud Feet On The Ground   Peter de Haas...DDHS 2009   Microsoft   Heads In The Cloud Feet On The Ground   Peter de Haas...
DDHS 2009 Microsoft Heads In The Cloud Feet On The Ground Peter de Haas...
 
Soa204 Kawasaki Final
Soa204 Kawasaki FinalSoa204 Kawasaki Final
Soa204 Kawasaki Final
 
Cloudforce Essentials 2012 - Understanding Force.com in 60 Minutes or Less
Cloudforce Essentials 2012 - Understanding Force.com  in 60 Minutes or LessCloudforce Essentials 2012 - Understanding Force.com  in 60 Minutes or Less
Cloudforce Essentials 2012 - Understanding Force.com in 60 Minutes or Less
 
Microsoft Hyper-v launce Virtual Interop
Microsoft Hyper-v launce Virtual InteropMicrosoft Hyper-v launce Virtual Interop
Microsoft Hyper-v launce Virtual Interop
 
SPEC INDIA Microsoft Technology Case Study
SPEC INDIA Microsoft Technology Case StudySPEC INDIA Microsoft Technology Case Study
SPEC INDIA Microsoft Technology Case Study
 
Microsoft Azure : Microsoft Strategy for Cloud Computing
Microsoft Azure : Microsoft Strategy for Cloud Computing Microsoft Azure : Microsoft Strategy for Cloud Computing
Microsoft Azure : Microsoft Strategy for Cloud Computing
 
AP086_ISV_Why_Microsoft_makes_the_cloud_shine.pptx
AP086_ISV_Why_Microsoft_makes_the_cloud_shine.pptxAP086_ISV_Why_Microsoft_makes_the_cloud_shine.pptx
AP086_ISV_Why_Microsoft_makes_the_cloud_shine.pptx
 
Get ready to deliver Windows desktops and apps like a cloud provider with Pro...
Get ready to deliver Windows desktops and apps like a cloud provider with Pro...Get ready to deliver Windows desktops and apps like a cloud provider with Pro...
Get ready to deliver Windows desktops and apps like a cloud provider with Pro...
 
Patterns of Cloud Applications Using Microsoft Azure Services Platform
Patterns of Cloud Applications Using Microsoft Azure Services PlatformPatterns of Cloud Applications Using Microsoft Azure Services Platform
Patterns of Cloud Applications Using Microsoft Azure Services Platform
 
Arc Ready Fy09 Q3 Live Mesh
Arc Ready Fy09 Q3   Live MeshArc Ready Fy09 Q3   Live Mesh
Arc Ready Fy09 Q3 Live Mesh
 
20071204 Arc Ready Software + Services
20071204   Arc Ready   Software + Services20071204   Arc Ready   Software + Services
20071204 Arc Ready Software + Services
 
Windows Azure For Architects
Windows Azure For ArchitectsWindows Azure For Architects
Windows Azure For Architects
 
Windows Azure: Is Azure right for you?
Windows Azure: Is Azure right for you?Windows Azure: Is Azure right for you?
Windows Azure: Is Azure right for you?
 
I Phone Dev
I Phone DevI Phone Dev
I Phone Dev
 
WebFest 2011 Hosting Applications CR by David Tang
WebFest 2011 Hosting Applications CR by David TangWebFest 2011 Hosting Applications CR by David Tang
WebFest 2011 Hosting Applications CR by David Tang
 

More from Jorgen Thelin

The Internet of Cars - Towards the Future of the Connected Car
The Internet of Cars - Towards the Future of the Connected CarThe Internet of Cars - Towards the Future of the Connected Car
The Internet of Cars - Towards the Future of the Connected CarJorgen Thelin
 
Orleans: Cloud Computing for Everyone - SOCC 2011
Orleans: Cloud Computing for Everyone - SOCC 2011Orleans: Cloud Computing for Everyone - SOCC 2011
Orleans: Cloud Computing for Everyone - SOCC 2011Jorgen Thelin
 
Protecting Online Identities - MIX09
Protecting Online Identities - MIX09Protecting Online Identities - MIX09
Protecting Online Identities - MIX09Jorgen Thelin
 
Live Identity Services Drilldown - PDC 2008
Live Identity Services Drilldown - PDC 2008Live Identity Services Drilldown - PDC 2008
Live Identity Services Drilldown - PDC 2008Jorgen Thelin
 
The New Enterprise Alphabet - .Net, XML And XBRL
The New Enterprise Alphabet - .Net, XML And XBRLThe New Enterprise Alphabet - .Net, XML And XBRL
The New Enterprise Alphabet - .Net, XML And XBRLJorgen Thelin
 
WS-* Specifications Update 2007
WS-* Specifications Update 2007WS-* Specifications Update 2007
WS-* Specifications Update 2007Jorgen Thelin
 
WS-* Protocol Workshop Process Overview
WS-* Protocol Workshop Process OverviewWS-* Protocol Workshop Process Overview
WS-* Protocol Workshop Process OverviewJorgen Thelin
 
Web Services and Devices Profile for Web Services (DPWS)
Web Services and Devices Profile for Web Services (DPWS)Web Services and Devices Profile for Web Services (DPWS)
Web Services and Devices Profile for Web Services (DPWS)Jorgen Thelin
 
Web Services Discovery for Devices
Web Services Discovery for DevicesWeb Services Discovery for Devices
Web Services Discovery for DevicesJorgen Thelin
 
Overview of Windows Vista Devices and Windows Communication Foundation (WCF)
Overview of Windows Vista Devices and Windows Communication Foundation (WCF)Overview of Windows Vista Devices and Windows Communication Foundation (WCF)
Overview of Windows Vista Devices and Windows Communication Foundation (WCF)Jorgen Thelin
 
Making Sense Of Web Services
Making Sense Of Web ServicesMaking Sense Of Web Services
Making Sense Of Web ServicesJorgen Thelin
 
Interoperability and Windows Communication Foundation (WCF) Overview
Interoperability and Windows Communication Foundation (WCF) OverviewInteroperability and Windows Communication Foundation (WCF) Overview
Interoperability and Windows Communication Foundation (WCF) OverviewJorgen Thelin
 
Real World Business Interoperability
Real World Business InteroperabilityReal World Business Interoperability
Real World Business InteroperabilityJorgen Thelin
 
Achieving Interoperability Through Web Services
Achieving Interoperability Through Web ServicesAchieving Interoperability Through Web Services
Achieving Interoperability Through Web ServicesJorgen Thelin
 
Zero-Defects Plug and Play -- General Quality Frameworks and Processes for Ac...
Zero-Defects Plug and Play -- General Quality Frameworks and Processes for Ac...Zero-Defects Plug and Play -- General Quality Frameworks and Processes for Ac...
Zero-Defects Plug and Play -- General Quality Frameworks and Processes for Ac...Jorgen Thelin
 
Identity, Security, and XML Web Services -- The Importance of Interoperable S...
Identity, Security, and XML Web Services -- The Importance of Interoperable S...Identity, Security, and XML Web Services -- The Importance of Interoperable S...
Identity, Security, and XML Web Services -- The Importance of Interoperable S...Jorgen Thelin
 
Web Services Security Tutorial
Web Services Security TutorialWeb Services Security Tutorial
Web Services Security TutorialJorgen Thelin
 
Web Service Oriented Architecture
Web Service Oriented ArchitectureWeb Service Oriented Architecture
Web Service Oriented ArchitectureJorgen Thelin
 
Identity, Security and XML Web Services
Identity, Security and XML Web ServicesIdentity, Security and XML Web Services
Identity, Security and XML Web ServicesJorgen Thelin
 
Web Services Container
Web Services ContainerWeb Services Container
Web Services ContainerJorgen Thelin
 

More from Jorgen Thelin (20)

The Internet of Cars - Towards the Future of the Connected Car
The Internet of Cars - Towards the Future of the Connected CarThe Internet of Cars - Towards the Future of the Connected Car
The Internet of Cars - Towards the Future of the Connected Car
 
Orleans: Cloud Computing for Everyone - SOCC 2011
Orleans: Cloud Computing for Everyone - SOCC 2011Orleans: Cloud Computing for Everyone - SOCC 2011
Orleans: Cloud Computing for Everyone - SOCC 2011
 
Protecting Online Identities - MIX09
Protecting Online Identities - MIX09Protecting Online Identities - MIX09
Protecting Online Identities - MIX09
 
Live Identity Services Drilldown - PDC 2008
Live Identity Services Drilldown - PDC 2008Live Identity Services Drilldown - PDC 2008
Live Identity Services Drilldown - PDC 2008
 
The New Enterprise Alphabet - .Net, XML And XBRL
The New Enterprise Alphabet - .Net, XML And XBRLThe New Enterprise Alphabet - .Net, XML And XBRL
The New Enterprise Alphabet - .Net, XML And XBRL
 
WS-* Specifications Update 2007
WS-* Specifications Update 2007WS-* Specifications Update 2007
WS-* Specifications Update 2007
 
WS-* Protocol Workshop Process Overview
WS-* Protocol Workshop Process OverviewWS-* Protocol Workshop Process Overview
WS-* Protocol Workshop Process Overview
 
Web Services and Devices Profile for Web Services (DPWS)
Web Services and Devices Profile for Web Services (DPWS)Web Services and Devices Profile for Web Services (DPWS)
Web Services and Devices Profile for Web Services (DPWS)
 
Web Services Discovery for Devices
Web Services Discovery for DevicesWeb Services Discovery for Devices
Web Services Discovery for Devices
 
Overview of Windows Vista Devices and Windows Communication Foundation (WCF)
Overview of Windows Vista Devices and Windows Communication Foundation (WCF)Overview of Windows Vista Devices and Windows Communication Foundation (WCF)
Overview of Windows Vista Devices and Windows Communication Foundation (WCF)
 
Making Sense Of Web Services
Making Sense Of Web ServicesMaking Sense Of Web Services
Making Sense Of Web Services
 
Interoperability and Windows Communication Foundation (WCF) Overview
Interoperability and Windows Communication Foundation (WCF) OverviewInteroperability and Windows Communication Foundation (WCF) Overview
Interoperability and Windows Communication Foundation (WCF) Overview
 
Real World Business Interoperability
Real World Business InteroperabilityReal World Business Interoperability
Real World Business Interoperability
 
Achieving Interoperability Through Web Services
Achieving Interoperability Through Web ServicesAchieving Interoperability Through Web Services
Achieving Interoperability Through Web Services
 
Zero-Defects Plug and Play -- General Quality Frameworks and Processes for Ac...
Zero-Defects Plug and Play -- General Quality Frameworks and Processes for Ac...Zero-Defects Plug and Play -- General Quality Frameworks and Processes for Ac...
Zero-Defects Plug and Play -- General Quality Frameworks and Processes for Ac...
 
Identity, Security, and XML Web Services -- The Importance of Interoperable S...
Identity, Security, and XML Web Services -- The Importance of Interoperable S...Identity, Security, and XML Web Services -- The Importance of Interoperable S...
Identity, Security, and XML Web Services -- The Importance of Interoperable S...
 
Web Services Security Tutorial
Web Services Security TutorialWeb Services Security Tutorial
Web Services Security Tutorial
 
Web Service Oriented Architecture
Web Service Oriented ArchitectureWeb Service Oriented Architecture
Web Service Oriented Architecture
 
Identity, Security and XML Web Services
Identity, Security and XML Web ServicesIdentity, Security and XML Web Services
Identity, Security and XML Web Services
 
Web Services Container
Web Services ContainerWeb Services Container
Web Services Container
 

Recently uploaded

Generative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfGenerative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfIngrid Airi González
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxLoriGlavin3
 
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Alkin Tezuysal
 
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxLoriGlavin3
 
Infrared simulation and processing on Nvidia platforms
Infrared simulation and processing on Nvidia platformsInfrared simulation and processing on Nvidia platforms
Infrared simulation and processing on Nvidia platformsYoss Cohen
 
Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024TopCSSGallery
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityIES VE
 
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...Nikki Chapple
 
QCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesQCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesBernd Ruecker
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxLoriGlavin3
 
Zeshan Sattar- Assessing the skill requirements and industry expectations for...
Zeshan Sattar- Assessing the skill requirements and industry expectations for...Zeshan Sattar- Assessing the skill requirements and industry expectations for...
Zeshan Sattar- Assessing the skill requirements and industry expectations for...itnewsafrica
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersNicole Novielli
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentPim van der Noll
 
Modern Roaming for Notes and Nomad – Cheaper Faster Better Stronger
Modern Roaming for Notes and Nomad – Cheaper Faster Better StrongerModern Roaming for Notes and Nomad – Cheaper Faster Better Stronger
Modern Roaming for Notes and Nomad – Cheaper Faster Better Strongerpanagenda
 
Data governance with Unity Catalog Presentation
Data governance with Unity Catalog PresentationData governance with Unity Catalog Presentation
Data governance with Unity Catalog PresentationKnoldus Inc.
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Hiroshi SHIBATA
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPathCommunity
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxLoriGlavin3
 
Scale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterScale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterMydbops
 

Recently uploaded (20)

Generative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfGenerative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdf
 
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptxThe Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
The Role of FIDO in a Cyber Secure Netherlands: FIDO Paris Seminar.pptx
 
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
Unleashing Real-time Insights with ClickHouse_ Navigating the Landscape in 20...
 
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
 
Infrared simulation and processing on Nvidia platforms
Infrared simulation and processing on Nvidia platformsInfrared simulation and processing on Nvidia platforms
Infrared simulation and processing on Nvidia platforms
 
Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024
 
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a reality
 
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
Microsoft 365 Copilot: How to boost your productivity with AI – Part one: Ado...
 
QCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesQCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architectures
 
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptxUse of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
Use of FIDO in the Payments and Identity Landscape: FIDO Paris Seminar.pptx
 
Zeshan Sattar- Assessing the skill requirements and industry expectations for...
Zeshan Sattar- Assessing the skill requirements and industry expectations for...Zeshan Sattar- Assessing the skill requirements and industry expectations for...
Zeshan Sattar- Assessing the skill requirements and industry expectations for...
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software Developers
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
 
Modern Roaming for Notes and Nomad – Cheaper Faster Better Stronger
Modern Roaming for Notes and Nomad – Cheaper Faster Better StrongerModern Roaming for Notes and Nomad – Cheaper Faster Better Stronger
Modern Roaming for Notes and Nomad – Cheaper Faster Better Stronger
 
Data governance with Unity Catalog Presentation
Data governance with Unity Catalog PresentationData governance with Unity Catalog Presentation
Data governance with Unity Catalog Presentation
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to Hero
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptx
 
Scale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL RouterScale your database traffic with Read & Write split using MySQL Router
Scale your database traffic with Read & Write split using MySQL Router
 

Identity Services Drilldown - TechEd NA 2009

  • 1.
  • 2. Jorgen Thelin Senior Program Manager Microsoft Corporation Session Code: SIA303
  • 3. Web ISVs Organizations Developers • Federation for • Turnkey • Customizable selling their federation for identity UX applications to adopting services • Single Sign On organizations (Online, Live, ISVs • Access to • Easy on-boarding ) user data of new customers • Works with existing identity infrastructure
  • 4. Agenda Baseline understanding of Identity Services & Windows Live ™ ID Identity challenges from Cloud Services Organizations • Consuming federated identities -- Microsoft ® Federation Gateway • Rapid on-boarding for organizations – Codename “Geneva” Server + one-click federation ISVs • Become part of the federation ecosystem • Consuming federated identities • Rapid on-boarding for your customers and suppliers Web Developers • Consuming Windows Live IDs on your site • Accessing user data on your site
  • 5. Windows Live Identity Services Core principles Ease of use Open and Rich Standards- functionality based Security is our top priority! Personal and Federation Business ready
  • 6. Identity Services - Many components Identities • Authentication: users, applications, devices Strong Authentication • Investing in 2FA such as Smartcard, StartKey Attacker Resistant • User / IP reputation, Account abuse prevention UI Customization • Windows Live ™ ID is fully customizable Data Portability • Delegated auth: user permission to access data Open Standards • SAML 2.0 / OpenID / OAuth Federated • Compatible with Microsoft ® Federation Gateway Authentication
  • 7.
  • 8. Software and Service Topology Cloud Enterprise Windows Microsoft® ISV Apps Apps Live Online Microsoft Live Azure™ Services Platform Online Dynamics® Mesh CRM Online Identity Service Browser Org On-Premises Active Office Directory® Desktop Apps Exchange ISV Apps SharePoint
  • 9. Federated Ecosystem Benefits of federated identity Open participation based on industry standards Linking service providers and service consumers Access to more services and applications: Microsoft cloud applications Developers using Azure ™ Services Platform Developers using other hosting platforms Access to more customers: 500m+ Windows Live ID users Other organizations using federated identity Microsoft is offering solutions that greatly simplify the federation scenarios
  • 10. Software and Service Challenges Security Challenges Adoption Challenges Identity islands: IT Admin User identity in AD on premise Re-work security practices Software service and tools? (Exchange Labs) is in cloud Re-train to manage identity Partners & Customers federation? Security zones: Users Physical isolation for Re-train on a new user on-premise software experience? Service in cloud Developers Data transport across Re-write existing applications? security zones
  • 11. Federation Rapid on- Infrastructure boarding / tools • Microsoft Federation • Codename “Geneva” Gateway Server • Standards-based • One-click federation • Service adoption scenarios
  • 12. Scenario - Switching to Cloud Services Cloud Enterprise Windows Microsoft® ISV App Apps Live Online Microsoft Live Dynamics® Azure™ Services Platform Mesh CRM Online Challenge: How to switch to cloud Typical IT Requests: services without scrapping your 1) Outsource service to existing identity infrastructure? cloud-based delivery (e.g. Exchange) 2) Move application to Enterprise On-Premises cloud hosting Active Directory® 3) Use a new cloud-service Exchange ISV App SharePoint
  • 13. Software and Service Topology – Federated Identity Cloud Enterprise Windows Microsoft® ISV Apps Apps Live Online Microsoft Live Live Microsoft Dynamics® Azure™ Services Platform Mesh CRM Online Identity Federation Service Gateway “Geneva” Server Enterprise On-Premises Browser Active Office Directory® Employee Exchange ISV AppsSharePoint Apps
  • 14. Scenario - Collaborating with Other Organizations Cloud Enterprise Windows Microsoft® ISV Apps Apps Live Online Microsoft Live Azure™ Services Platform Live Microsoft Dynamics® Mesh CRM Online Identity Federation Service Gateway “Geneva” “Geneva” Server University Server Org On-Premises Active Active Directory® Directory® Exchange Exchange ISV AppsSharePoint
  • 15. Scenario - Outreach to End User Customers Cloud Enterprise Windows Microsoft ISV Apps Apps Live Online Microsoft Live Azure Services Platform Live Microsoft Dynamics Mesh CRM Online Identity Federation Service Gateway “Geneva” Server Org On-Premises Browser Office Active End User Directory Apps Exchange ISV Apps SharePoint
  • 16. Solution: Microsoft Federation Gateway Federation hub service enables access to: Microsoft services Service Service Service Provider Provider Provider ISVs on Azure Platform Other businesses 500+ million Live IDs Federation Hub Manage one relationship to connect to any combination Hub and spoke model Customer Customer Customer handles endpoint changes, key rollovers, protocol changes
  • 17. Federation Rapid on- Infrastructure boarding / tools • Microsoft Federation • Codename “Geneva” Gateway Server • Standards-based • One-click federation • Service adoption scenarios
  • 18. Solution: Live Federation Tool for quot;Genevaquot; Server Codename “Geneva” Server connects Active Directory® to: Microsoft Federation Gateway Online/Live services, Windows Live ID & ISV services Other standards-based federation hubs Supports range of AD and network topologies: Single server, Server farm, Proxy server, DMZ Active Directory: Single domain, Single forest, Multiple forests Download tool for quick and easy connection setup to Microsoft Federation Gateway http://www.microsoft.com/Geneva
  • 19. Federation Gateway + quot;Genevaquot; Server Installation and Setup
  • 20. Connecting to Federation Gateway One-click federation tool for quot;Genevaquot; Connects Active Directory® to Federation Gateway and Cloud services / applications One-time federation setup – Trust-Provisioning Assert domain ownership via SSL cert issued by a trusted Cert Authority Registers organization's domain, sign-in endpoint, and token signing key http://msdn.microsoft.com/en-us/library/dd164396.aspx Microsoft Microsoft Cloud Organization “Geneva” Federation Server Applications Gateway Developer Active Services Directory Server Apps
  • 21. Federation Gateway and quot;Genevaquot; Server Accessing federated resources from inside corporate network
  • 22. Using Federation Gateway and quot;Genevaquot; – Accessing Services 1. User clicks link -- taken to Codename 3. “Geneva” Server issues login token and “Geneva” Server for authentication redirects to Federation Gateway 2. “Geneva” Server validates credentials with 4. Federation Gateway validates token Active Directory and transforms claims 5. Federation Gateway issues service token and redirects to service Browser 6. User accesses service Office Desktop Apps Microsoft Cloud Enterprise “Geneva” Federation Server Applications Gateway Developer Active Services Directory
  • 23. Federation Gateway and quot;Genevaquot; Server Accessing federated resources from outside corporate network
  • 24. Using Federation Gateway and quot;Genevaquot; – Deployment Options Active Directory “Geneva” “Geneva” Server Server Proxy External user Internal user Enterprise DMZ
  • 25. Benefit: Reduced Federation Costs Federated Identity makes switching to Cloud Services easier: Microsoft Federation Gateway for federation of both enterprises and services Codename “Geneva” Server extends AD into the Cloud – a simple on-boarding process Federation Gateway and “Geneva” Server provides: Fewer federation relationships to configure Helps protect corporate account security No new user accounts needed No extra passwords for users to forget!
  • 26.
  • 27. Connections - Federation Ecosystem User Applications Relying Party (RP) Identity Providers (IdP) Client SDK Live ID Windows App Microsoft Web Site / Online App Federation Gateway Browser Live ID Other federated Identity Identity Provider Providers
  • 28. Federation Gateway: Integration Options For businesses and universities: Microsoft Services Connector, “Geneva” Server Works for businesses without Active Directory too Protocols: WS-* (WS-Trust, WS-Federation) Tokens: SAML For web applications / relying services: Frameworks: .NET, “Geneva”, Live Framework Protocols:
  • 29. Consume Accessing user identities and SSO data • Web Authentication • Delegated • Client SDK Authentication SDK
  • 30. Windows Live Web Authentication
  • 31. How Web Authentication Works Live ID Web Authentication SDK Docs http://go.microsoft.com/fwlink/?LinkID=91762 Relying Party Web Site 1 AdventureWorks.com End User with web 5 browser 4 2 3 Live ID WebAuth service
  • 32.
  • 33. Customizing the Identity Experience Recognizable and not jarring Sign-in Sign-up Consent
  • 34. Sign-in Screen Customizable Theme Elements cannot change. Customize look and feel. Font color Background color Button color Task integration statement User tile color Live ID description color Customizable Contents Elements that can Sign-up section be customized. Partner Logo Task statement Product description Sign up section Header background
  • 36. Customizing Windows Live ID The top request from partners and the field!
  • 37. Customizable Sign-in Screen What was changed? Partner Logo Task statement Product description Sign up section Header background Font color Background color Button color User tile color Live ID description color
  • 38. Another Example – LiveWIM.com
  • 39. Consume Accessing identities and SSO user data • Web Authentication • Delegated • Client SDK Authentication SDK
  • 40. Windows Live Delegated Authentication Enabling data portability
  • 41. Delegated Auth Protocol Overview End User “Granting Consent” phase with browser Consent UI consent.live.com Application Provider “Using Consent” Phase (user can be offline) (web site) Resource Provider (ex: Windows Live Contacts) Live ID Delegation Service
  • 42. Web ISVs Organizations Developers • Federation for • Turnkey • Customizable selling their federation for identity UX applications to adopting services • Single sign On organizations (Online, Live, ISVs • Access to user • Easy on-boarding ) data of new customers • Works with existing identity infrastructure
  • 43.
  • 44. Resources www.microsoft.com/teched www.microsoft.com/learning Sessions On-Demand & Community Microsoft Certification & Training Resources http://microsoft.com/technet http://microsoft.com/msdn Resources for IT Professionals Resources for Developers www.microsoft.com/learning Microsoft Certification and Training Resources
  • 46. Federation Resources and Links Microsoft Federation Gateway Released in 2006, available today Whitepaper: http://msdn.microsoft.com/en-us/library/cc287610.aspx On-boarding documentation: http://msdn.microsoft.com/en-us/library/dd164396.aspx Codename “Geneva” Server Beta 2 available today http://www.microsoft.com/Geneva Live Federation tool for Codename “Geneva” Server http://www.microsoft.com/Geneva
  • 47. Live ID Resources & Links Windows Live ID Developer Center - http://dev.live.com/liveid Windows Live ID Articles on MSDN - http://go.microsoft.com/fwlink/?LinkId=111111 Windows Live ID Documentation on MSDN - http://msdn2.microsoft.com/en-us/library/bb404787.aspx Windows Live ID Developer Forum - http://go.microsoft.com/fwlink/?LinkID=78146 Windows Live ID Team Blog - http://winliveid.spaces.live.com Windows Live ID Whitepapers Introduction to Windows Live ID - http://msdn2.microsoft.com/en-us/library/bb288408.aspx Understanding Windows Live Delegated Authentication - http://msdn2.microsoft.com/en- us/library/cc287613.aspx Windows Live ID Federation - http://msdn2.microsoft.com/en-us/library/cc287610.aspx Windows Live ID Documentation and SDKs Windows Live ID Web Authentication SDK Docs http://go.microsoft.com/fwlink/?LinkID=91762 Web Authentication SDK Samples http://go.microsoft.com/fwlink/?LinkID=91761 Windows Live ID Delegated Authentication SDK Docs http://go.microsoft.com/fwlink/?LinkID=107420 Delegated Authentication SDK Samples http://go.microsoft.com/fwlink/?LinkId=107419 Windows Live ID Client SDK download - http://go.microsoft.com/fwlink/?LinkId=86974 Delegated Authentication Resource Providers List - http://go.microsoft.com/fwlink/?LinkID=108535 Windows Live ID Web Authentication app registration page http://lx.azure.microsoft.com Windows Live Tools for Visual Studio - http://dev.live.com/tools/
  • 48. © 2009 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.