Category Archives: IdentityModel

Integrating Simple Web Tokens (SWT) with WCF REST Services using WIF

The Simple Web Token (SWT) is a new & simple token format that was created by Microsoft, Google and others. See here for specs. The Azure platform App Fabric Access Control service e.g. uses this token type. Why yet another … Continue reading

Posted in IdentityModel | 2 Comments

Using SAML as a Client Credential Type in WCF (updated to WIF RTM)

A reader has asked me to update the Client SAML sample to WIF RTM (for background and motivation please read here first). The main work was in the SAML security token handler Validate method, this looks now like this: public … Continue reading

Posted in IdentityModel | 1 Comment

StarterSTS V1.0 Beta 1

OK – I finally was able to carve out some time…This is the first feature complete release of the StarterSTS! New features include: client certificate support for WS-Fed and WS-Trust endpoints new relying party configuration allows specifying an explicit reply … Continue reading

Posted in IdentityModel | Leave a comment

A Guide to Claims-Based Identity and Access Control

Get it here!!! http://msdn.microsoft.com/en-us/library/ff359115.aspx

Posted in IdentityModel | Leave a comment

Beware of WIF HTTP Modules and Default Configuration

Most samples I know of – as well as FedUtil generated configuration set a preCondition=”managedHandler” for the WIF HTTP modules. This means that the modules (and thus the protection of the requested resource) only kicks in for “managed” content like … Continue reading

Posted in IdentityModel | Leave a comment

WIF Configuration – Part 3: Extensibility

Some of the WIF configuration elements support extensibility. This means that you can attach arbitrary XML child elements to the configuration elements. When this is the case, the WIF configuration system creates the piece of plumbing in question using a … Continue reading

Posted in IdentityModel | Leave a comment

WIF Configuration – Part 2: SecurityTokenHandlerConfiguration

The workhorse of WIF are security token handler. Again token handler can be use independently of the WIF configuration system – or together. The “stand-alone” use caseYou can simply new up a token handler (e.g. the SAML 1.1 handler) in … Continue reading

Posted in IdentityModel | Leave a comment

WIF Configuration – Part 1: ServiceConfiguration

WIF supports a flexible configuration system and various ways to programmatically interact with that configuration. This flexibility comes in two ways: Named configuration elements that you can selectively load (service & token handler configuration) Configuration extensibility (e.g. for token handlers, … Continue reading

Posted in ASP.NET, IdentityModel, WCF | Leave a comment

Baier & Weyer on WIF

We had the pleasure to have a chat with Richard and Carl about what’s nearest and dearest to my heart – WIF ;) Enjoy… http://www.dotnetrocks.com/default.aspx?showNum=503

Posted in IdentityModel | Leave a comment

Thinktecture.IdentityModel v0.6

This version is compiled against WIF RTM. Some stuff is still experimental. But feel free to play around ;)

Posted in IdentityModel | Leave a comment