Close

Azure AD Tokens and Claims

First let’s take a look at how tokens work in Azure AD. A client wants to call a service with validation taking place via Azure AD. The server redirects me to Azure AD. Here I log in with my username and password. Azure AD returns an access token(AT1) and a refresh token(RT) to the client…

Azure B2B versus Azure B2C

Trying to get your head around Azure B2B versus Azure B2C. I found an excellent YouTube video by John Savill. Check it out: Azure B2B Is used in conjunction with Azure AD, no separate product. Is used to give business partners access to all resources that are linked to Azure Active Directory. This can be…

Azure AD via Logic App and Microsoft Graph

I’ve been playing around a bit with Azure AD. I wanted to able to add a user to Azure AD via a Logic App. I logged in to the Azure Portal with my MSDN account. In the top right corner you can see which directory you’re connected to, which in my case was phvbaars.onmicrosoft.com. I…

Azure Active Directory with federated accounts

As an addition to the previous posts on API Managament, I wanna present an alternative, more desirable solution. Up to now we created the service and the client in ADFS. In the Startup.Auth.cs file (located in the App_Start folder) we used ActiveDirectoryFederationServicesBearerAuthentication. What we can also do, is create the service and client application in…

Azure AD support in browser and Postman

I have been struggling a bit with Azure Active Directory authentication of WebApps. First I tried to access the service via Chrome. The idea was to use the so-called Developer Tools to obtain the security token. I tried the following address: https://archibusgatewayservice.azurewebsites.net/api/serviceorders And I get the error: <Error> <Message>Authorization has been denied for this request.</Message>…