{"id":1329,"date":"2014-01-30T23:36:49","date_gmt":"2014-01-30T22:36:49","guid":{"rendered":"http:\/\/sccmfaq.wordpress.com\/?p=1329"},"modified":"2014-01-30T23:36:49","modified_gmt":"2014-01-30T22:36:49","slug":"windows-azure-directory-signle-sign-on-at-its-best","status":"publish","type":"post","link":"https:\/\/blog.hosebei.ch\/?p=1329","title":{"rendered":"Windows Azure Directory &#8211; Single Sign-On at its best"},"content":{"rendered":"<p>Hey there, here&#8217;s Martin again.<\/p>\n<p>Inspired from the SCU Show (http:\/\/www.systemcenteruniverse.com\/) in Houston, I liked to write a blogpost about the Single Sign-On Feature of Windows Azure Directory. Assuming that you already using Directory Synchronization and ADFS or Password sync, this Blog goes further, by showing, how to use SSO for Facebook or Twitter.<!--more--><\/p>\n<p>First you have to Login to your Windows Azure Portal, then click on &#8220;Active Directory&#8221; and then click on your Domain:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso01.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso01.png?w=187\" alt=\"Open Active Directory Domain\" width=\"187\" height=\"300\" class=\"aligncenter size-medium wp-image-1330\" \/><\/a><br \/>\nThen click on Applications in the upper area and click on &#8220;Add&#8221; at the bottom of the page:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso02.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso02.png?w=300\" alt=\"Add Application for SSO in Azure\" width=\"300\" height=\"237\" class=\"aligncenter size-medium wp-image-1334\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso02.png 750w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso02-300x238.png 300w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nThe next wizard asks you, if you would like an already existing app, or if you would like an own created application. In this case I choose &#8220;Add an application for my organization to use&#8221;, and in the next wizard we can search for already existing site which are supported for Single Sign-On like Facebook, Twitter, WordPress, Yammer, Xing, etc&#8230;:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso03.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso03.png?w=300\" alt=\"Add Application\" width=\"300\" height=\"209\" class=\"aligncenter size-medium wp-image-1335\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso03.png 922w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso03-300x210.png 300w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso03-768x536.png 768w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nIf you have selected your application, it will be added to your application list and automatically asks you to assign users:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso04.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso04.png?w=300\" alt=\"Assign Users\" width=\"300\" height=\"247\" class=\"aligncenter size-medium wp-image-1337\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso04.png 858w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso04-300x247.png 300w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso04-768x633.png 768w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nClick on &#8220;Assign users&#8221; and in the user List afterwards mark the selected user and click on assign on the bottom of the page:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso05.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso05.png?w=257\" alt=\"Assign a User\" width=\"257\" height=\"300\" class=\"aligncenter size-medium wp-image-1339\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso05.png 650w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso05-257x300.png 257w\" sizes=\"auto, (max-width: 257px) 100vw, 257px\" \/><\/a><br \/>\nThen Azure asks you if you already know the Login credentials, usually not, and then you can confirm the assignment:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso06.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso06.png?w=300\" alt=\"Confirm assignment\" width=\"300\" height=\"225\" class=\"aligncenter size-medium wp-image-1341\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso06.png 601w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso06-300x225.png 300w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nIf the assignment is finished without any error Messages, you can now Login to the application page https:\/\/myapps.microsoft.com with your Domain Credentials. Then when you have added multiple Apps, it could Looks like this:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso07.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso07.png?w=300\" alt=\"Azure Applicaion Portal\" width=\"300\" height=\"192\" class=\"aligncenter size-medium wp-image-1343\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso07.png 971w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso07-300x192.png 300w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso07-768x493.png 768w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nWhen the user now clicks on an application for the first time on a machine, it Needs to install an Add-On on the specific machine, local administrator rights are needed:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso08.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso08.png?w=300\" alt=\"Install Add-On\" width=\"300\" height=\"210\" class=\"aligncenter size-medium wp-image-1345\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso08.png 511w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso08-300x210.png 300w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nMind to enable the Add-On after the Installation:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso09.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso09.png?w=300\" alt=\"Enable Add-On\" width=\"300\" height=\"15\" class=\"aligncenter size-medium wp-image-1347\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso09.png 963w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso09-300x16.png 300w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso09-768x41.png 768w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nWhen you click on your application again after installing and enabling the Add-On you will be asked for the logon credentials for the specific application:<br \/>\n<a href=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso10.png\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/hosebei.wordpress.com\/wp-content\/uploads\/2014\/01\/azure_sso10.png?w=300\" alt=\"Add credentials\" width=\"300\" height=\"273\" class=\"aligncenter size-medium wp-image-1350\" srcset=\"https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso10.png 516w, https:\/\/blog.hosebei.ch\/wp-content\/uploads\/2014\/01\/azure_sso10-300x273.png 300w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><br \/>\nWhen you have entered your Information, you will be logged on automatically to your application.<\/p>\n<p>So this gives an easy opportunity to add SSO for multiple applications and also Line Of Business Apps.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Hey there, here&#8217;s Martin again. Inspired from the SCU Show (http:\/\/www.systemcenteruniverse.com\/) in Houston, I liked to write a blogpost about the Single Sign-On Feature of Windows Azure Directory. Assuming that you already using Directory Synchronization and ADFS or Password sync, this Blog goes further, by showing, how to use SSO for Facebook or Twitter.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[],"class_list":["post-1329","post","type-post","status-publish","format-standard","hentry","category-general"],"_links":{"self":[{"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/posts\/1329","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1329"}],"version-history":[{"count":0,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=\/wp\/v2\/posts\/1329\/revisions"}],"wp:attachment":[{"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1329"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1329"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.hosebei.ch\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1329"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}