Public · Protected · Private
Single sign-on
Type: Public  |  Created: 2012-09-26  |  Frozen: Yes
« Previous Public Blog Next Public Blog »
Comments
  • Between multiple applications:

    Modify web.confid as ..

    <authentication mode="Forms"  >
      <forms name="test" loginUrl="/Login.aspx"  timeout="30" path="/" domain="mydomain.com"   />
    </authentication>

    also when the cookie(forms authenticated token) is travelling across subdomains ... make sure we use same encrypyion and decryption keys  .

    <machineKey validationKey="ACF........................."  

    decryptionKey="FCA........................"  />

     

     

    2012-09-26 11:16
  • Between multiple websites:

    Here we have to be able to maintain synchronous cookie data across all the websiteDomain's cookies.

    So for ex: janaganamana1.net    , janaganamana2.net , janaganamana3.net , janaganamana4.net all need to be logged in when user logs in one domain.  So this happens by using redirect URLs with returnURL.

     

    SO 

    if usergoes to janaganamana1.net/securepage.aspx ---

    1) naturally user will be redirected to  janaganamana1.net/securepage.aspx janaganamana1.net/login.aspx

    2) after credebtials are entered, user needs to redirected to securepage.aspx(on having validated credentials to success)

    3) intead of steps2 above redirecting to janaganamana1.net/securepage.aspx , it will redirect (response.redirect) to janaganamana2.net/someotherSecurepage.aspx(posting the credentials) which will fill cokies of that page on ...so on forjanaganamana3.net , janaganamana4.net ... and finally redirected to returnURL.

     

    2012-09-26 11:21
This blog is frozen. No new comments or edits allowed.