Identity Federation
There have been several kinds of user directories and protocols to access these directories, the most common ones are however, Microsoft Active Directory and the LDAP (Lightweight Directory Access Protocol) to access it. Since these directories are a single source of truth in most enterprises, we can't risk them by having them in a single deployment, so they support the distributed architecture by default.
In traditional systems, the applications directly query one of the directory servers, and pull the data they need (member groups, tags, and so on). However, as more and more applications try to authenticate with the central directory, especially applications coming from beyond the controlled network, it becomes difficult ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access