<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" media="screen" href="/styles/xslt/rss.xslt"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:c9="http://channel9.msdn.com">
<channel>
	<title>Comment Feed for Channel 9 - How ADFS v2 Helps Microsoft IT to Manage Application Access</title>
	<atom:link rel="self" type="application/rss+xml" href="http://channel9.msdn.com/Shows/Identity/How-ADFS-v2-Helps-Microsoft-IT-to-Manage-Application-Access/RSS"></atom:link>
	<image>
		<url>http://ecn.channel9.msdn.com/o9/previewImages/100/546722_100x75.jpg</url>
		<title>Channel 9 - How ADFS v2 Helps Microsoft IT to Manage Application Access</title>
		<link></link>
	</image>
	<description>ADFS 2.0 is being released today, but there is a group that has been using it for almost two years: Microsoft&#39;s IT department, which dogfooded ADFS 2.0 from the very first pre-release.Brian Puhl, Principal System Architect, and Femi Aladesulu, Service Engineer, share their vast experience&amp;nbsp;in using ADFS 2.0, which they earned handling access to the Microsoft IT&amp;nbsp;application portfolio on premises and in the cloud.
From the&amp;nbsp;topology of Microsoft&#39;s internal ADFS 2.0 deployment to the description of how day-to-day operations (such as a new application&#39;s onboarding) are handled, Brian and Femi will take you on a whirlwind tour. Today, Microsoft IT is able to offer identity
 as a reliable, self-provisioned&amp;nbsp;service. Tune in to get tips that will help you to achieve the same results!</description>
	<link></link>
	<language>en</language>
	<pubDate>Wed, 19 Jun 2013 03:27:46 GMT</pubDate>
	<lastBuildDate>Wed, 19 Jun 2013 03:27:46 GMT</lastBuildDate>
	<generator>Rev9</generator>
	<item>
		<title>Re: How ADFS v2 Helps Microsoft IT to Manage Application Access</title>
		<description>
			<![CDATA[
<p>Wonderful Episode! &nbsp;Thank you for sharing. </p>
<p>&nbsp;</p>
<p>In the last minutes of the show, you identified a complex application having their own STS federated with the main Identity Provider STS.&nbsp; Is the &quot;private&quot; STS a private instance of ADFS2.0 or is it a custom implementation?
</p>
<p>&nbsp;</p>
<p>This question is coming from an ISV perspective. &nbsp;We want to embrace the claims model and “outsource” identity to an STS. But 1) the client may need us to provide the STS because they don’t have one, 2) they may want us to use an existing STS (political
 struggle ensues to get our required claims from their IT), 3) they may want us to federate our STS with their IP-STS.&nbsp;Can ADFS2.0 be used as a private STS for an ISV application simliar to the scenerio you described?&nbsp; It seems SharePoint 2010 took this approach
 with their own SharePoint STS.</p>
<p>&nbsp;</p>
<p>Can you provide some insight into how an ISV installing software into the clients environment should approach this problem? &nbsp;(or suggest another place to post this question.)&nbsp;&nbsp;Thanks for your consideration.</p>
<p>posted by RainwaterEyes</p>]]>
		</description>
		<link>http://channel9.msdn.com/Shows/Identity/How-ADFS-v2-Helps-Microsoft-IT-to-Manage-Application-Access#c634088572340000000</link>
		<pubDate>Fri, 07 May 2010 19:27:14 GMT</pubDate>
		<guid isPermaLink="true">http://channel9.msdn.com/Shows/Identity/How-ADFS-v2-Helps-Microsoft-IT-to-Manage-Application-Access#c634088572340000000</guid>
		<dc:creator>RainwaterEyes</dc:creator>
	</item>
</channel>
</rss>