Domain joining an Azure VDI to a corporate Windows Server AD
Can you domain join an Azure VDI to a corporate Windows AD? Yes. Windows Server Active Directory Domain Services (ADDS) which is synchronized with Azure Active Directory (AAD) using Azure…
Can you SSO into an API?
Yes - SSO to an API is possible using one of the following tools API Manager Supports SAML-based SSO, which allows users to log in to API Manager and other…
API authentication and OAuth
OAuth for API Authentication - Some Security Checks Limit SCOPE of OAuth token to READONLY Limit The duration - expiration of the Token to a short lived token Restrict the…
Azure AD – How many tenants?
Azure AD - How many tenants? A common question is - should we have a single tenant or more than one? The answer is straightforward Mandatory: There is always one directory…
Privileged Identities in Azure AD – Above Global administrators
Privileged Identities in Azure AD With this option, you can build up an Role-based Access Control (RBAC) solution on top of Azure AD roles, as well as other Microsoft online services,…
OAuth 2.0 Basics – Client Credentials Flow
What are client credentials in OAuth ? It is a string value that contains a token. The token is sufficient for a resource to allow access to. What is it…
JWT vs SSL
The purpose of a JWT is NOT to encrypt data during transport (that’s SSL). JWT, using hashes, allows the receiving party to trust that the received data was not modified…
B2C Portal Login, B2C Guest Users
Some Key Points about the AAD B2C Tenant (Also read B2B Partner Identities in AAD ) B2c Is designed for EXTERNALLY facing apps that have their own app specific logins…
Infor SSO using STS
For cloud SaaS apps, SSO is trivial - simply configure the corresponding Enteprise App in AAD - and configure SSO in there. What if you have Infor Web Apps hosted…
B2B Partner Identities in Azure AD
xAlso Read B2C Portal Login and B2C Guest Users Overview of Partner Users in Azure AD Partners are treated a little differently from Vendors (and other external users). Typically, a…