Monthly Archives: February 2013

Federating IdentityServer with Windows Azure Active Directory

Vittorio describes here in great detail how to provision a WAAD tenant as an identity provider in an ACS namespace. Since we are all using the same technology under the bonnet, this should also work with IdentityServer – and it … Continue reading

Posted in Azure, IdentityServer | 12 Comments

More Information on the Google Security System

Adding to my post from yesterday: http://googleblog.blogspot.no/2013/02/an-update-on-our-war-against-account.html  

Posted in OAuth | Leave a comment

Kudos to the Google Security System

While others are still dabbling with OAuth2 – Google does some really sensible stuff! “Dominick, Someone recently tried to use an application to sign in to your Google Account. We prevented the sign-in attempt in case this was a hijacker … Continue reading

Posted in OAuth | Leave a comment

Claims-based Identity & Access Control Pre-Conference Workshop at NDC 2013

This is great news! If you are going to NDC, you can take my identity & access control training as a pre-conference workshop. I have divided the content in a “web apps” day and a “services & the cloud” day. This … Continue reading

Posted in .NET Security, ASP.NET, Azure, Conferences & Training, IdentityModel, IdentityServer, OAuth, WCF, WebAPI | Leave a comment

ASP.NET Web API Authentication using the Microsoft Account

The last days I’ve been researching some of the new security features in Windows 8. One of the biggest changes in Windows is definitely the fact that you can now login using your Microsoft Account. I will describe the details … Continue reading

Posted in ASP.NET, IdentityModel, OAuth, WebAPI | 8 Comments