Auto login for domain users single sign on

Auto login for domain users single sign on

   In google applications like Gmail.com , Orkut.com , Blogspot.com or  hotmail.com , asp.net IIS.Net etc
see how they had implemented authentication mechanisum. Where and how they are redirecting the request.

anyway, you can keep authentication cookie at cleint side if you have all your applications under one domain.

Using asp.net and machine key inside web.config, you can use SSO features like
  
http://www.codeproject.com/KB/web-security/aspnetsinglesignon.aspx


you can genrate formsauthentication ticket and pass it to end user browser.

see, how google is storing name of appliation inside url

https://www.google.com/accounts/ServiceLogin?service=orkut&hl=en-US&rm=false&continue=http%3A%2F%2Fwww.orkut.com%2FRedirLogin%3Fmsg%3D0%26page%3Dhttp%253A%252F%252Fwww.orkut.co.in%252FHome&cd=IN&passive=true&skipvpage=true&sendvemail=false

I'm requesting orkut, as soon as I hit signin button the request goes to www.google.co.in/accountsLogin?service=orkut .

here, I get authnticated. You can see they had kept all info in url their application can access it and redirects authenticated users back to requested service. 

There are so many of tricks to implement single sign on feature using ASP.net.

Satalaj

Be the first to rate this post

  • Currently 0/5 Stars.
  • 1
  • 2
  • 3
  • 4
  • 5

Comments