SSO advice

M

michaelr

We are looking to implement Single Sign On (SSO) for our intranet and other
internal applications.

Our plan is to have an ASP.NET “portal page†which will examine the
WindowsIndentity of the IIS-authenticated user, and present links for the
applications that the user has authorization.

In order to minimize custom programming efforts, we would like to leverage
built in Windows functionality for authorization and authentication as much
as possible for both the portal and downstream components and applications.

Our research has led us to the conclusion that using Windows Integrated
Authentication on IIS is the most effective way to authenticate the user. For
application authorization, we may use Active Directory Application Mode
(ADAM) or a custom SQL database.

However, it would be desirable to force the user to enter their credentials
upon initial logon, rather than automatically picking up the network logon.
We are concerned that Basic authentication (with HTTPS) may present
difficulties if our applications are spread across several machines.

Anyone have experience/advice on this?
 
D

Daniel Fisher\(lennybacon\)

If the Apps all run in a Domain or same machine just turn off anonymous
access in IIS.
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Members online

No members online now.

Forum statistics

Threads
473,982
Messages
2,570,190
Members
46,740
Latest member
AdolphBig6

Latest Threads

Top