weixin_33688840 2015-06-04 20:40 采纳率: 0%
浏览 74

相同域SAML请求

I have some web application in my server which use ADFS for authentication let's say this is their URLs :

http://myServer/ManyWebApps/WebApp1
http://myServer/ManyWebApps/WebApp2
http://myServer/ManyWebApps/WebApp3

When the user access any URL under "ManyWebApps" hierarchy he can freely use the server function they provide through javascript and through the browser without further authentication:

http://myServer/ManyWebApps/Server/Function

Now, I need to detach one of my web apps to a new URL like so :

http://myServer/WebApp1

Will the user still be able to free access server functions under the "ManyWebApps" hierarchy :

access http://myServer/ManyWebApps/Server/Function from http://myServer/WebApp1

Note : both web applications are still on the same server and work with the same ADFS server, when the user enters http://myServer/WebApp1 he is authenticated, but will he be able to access functions on diffirent web apps on the server without further authentication?

P.S : I need to access a function without further authentication because making an AJAX request to the function while unauthenticated will cause the AJAX request to be redirected to the ADFS which it can't handle

  • 写回答

1条回答 默认 最新

  • weixin_33691700 2015-06-05 16:22
    关注

    CONFIRMED : The authentication is saved in http://myServer so no further authentication need to take place if both apps are on the same domain

    When sending a request to the server, all of the user's cookies are sent including the authentication token. If the user's doesn't have the token in his cookies, the server will direct him to the ADFS. But since both web applications are under the same server, they share the same cookies which means once the user entered any address in MyServer hierarchy, he can free enter any in that hierarchy without further authentication

    评论

报告相同问题?

悬赏问题

  • ¥15 素材场景中光线烘焙后灯光失效
  • ¥15 请教一下各位,为什么我这个没有实现模拟点击
  • ¥15 执行 virtuoso 命令后,界面没有,cadence 启动不起来
  • ¥50 comfyui下连接animatediff节点生成视频质量非常差的原因
  • ¥20 有关区间dp的问题求解
  • ¥15 多电路系统共用电源的串扰问题
  • ¥15 slam rangenet++配置
  • ¥15 有没有研究水声通信方面的帮我改俩matlab代码
  • ¥15 ubuntu子系统密码忘记
  • ¥15 保护模式-系统加载-段寄存器