SharePoint 2010 as an Extranet Platform



Similar documents
SharePoint 2010 as an Extranet Platform

SharePoint Benefits. Engage partners customers and employees across one platform. Internet Extranet Intranet

Extranet Business Goals

SharePoint 2010 Intranet Case Study. Presented by Peter Carson President, Envision IT

Collaborating with External Users

126 SW 148 th Street Suite C-100, #105 Seattle, WA Tel: Fax:

SharePoint 2013 Logical Architecture

10231B: Designing a Microsoft SharePoint 2010 Infrastructure

Data Storage. Deploying Packaged Apps

Office 365 and SharePoint Local File Share Synchronization

Business process efficiency is improved with task management, alerts, notifications and automated process workflows.

SharePoint 2010 Interview Questions-Architect

SHAREPOINT ARCHITECTURE FUNDAMENTALS

SharePoint Extranets. Peter Carson. March 11, 2015

Implementing and Administering an Enterprise SharePoint Environment

Microsoft Corporation. Project Server 2010 Installation Guide

Setup Forms Based Authentication Under SharePoint 2010

Implementing and Administering an Enterprise SharePoint Environment

Layer2 Business Data List Connector for SharePoint

Integration Microsoft Dynamics CRM with SharePoint and Office 365 via OData

Microsoft Office 365 from Vodafone. Administrator s Guide for Midsize Businesses and Enterprises

Mod 2: User Management

USERS, PROFILES, & MYSITES

"Charting the Course to Your Success!" MOC B Configuring and Administering Microsoft SharePoint Course Summary

Microsoft Business Intelligence 2012 Single Server Install Guide

Course: 10174B: Configuring and Administering Microsoft SharePoint 2010

Bill Fiddes Learning and Development Specialist Rob Latino Program Manager in Office 365 Support

Cloud Business Apps. Peter Carson President, Envision IT

Working with Structured Data in Microsoft Office SharePoint Server 2007 (Part1): Configuring Single Sign On Service and Database

Youth Organization Boosts Site Traffic by 20 Percent with Dynamic New Web Presence

RL Soft SharePoint Extranets for the Masses

W7X Cloud Business Apps. Peter Carson

PassTest. Bessere Qualität, bessere Dienstleistungen!

Who is SharePoint Joel?

SumITUp. A Complete Summary for Our Practice Test. TS: Microsoft Windows SharePoint Services 3.0, Configuring

How to move a SharePoint Server bit environment to a 64-bit environment on Windows Server 2008.

Office 365 SharePoint Online

David Chou. Architect Microsoft

Entwickler. SharePoint Foundation. Standard Edition. Enterprise Edition

Myriad Technologies Training 5 Day Level 200 Introduction

R i o L i n x s u p p o r r i o l i n x. c o m 3 / 5 /

How to Secure a Groove Manager Web Site

Alert Notification of Critical Results (ANCR) Public Domain Deployment Instructions

Building Secure Applications. James Tedrick

Top Four Considerations for Securing Microsoft SharePoint

External Authentication with Citrix Secure Gateway - Presentation server Authenticating Users Using SecurAccess Server by SecurEnvoy

The Trusted Technology Partner in Business Innovation PASSION DISCIPLINE INNOVATION TEAMING INTEGRITY

Coveo Platform 7.0. Microsoft SharePoint Connector Guide

Agenda. How to configure

Centrify Cloud Connector Deployment Guide

ITMC 2079 MCTS Configuring and Administering Microsoft SharePoint 2010

WatchDox SharePoint Beta Guide. Application Version 1.0.0

The Business Case For SharePoint Ian Woodgate

Profile synchronization guide for Microsoft SharePoint Server 2010

Tableau Server Security. Version 8.0

Single Sign On. SSO & ID Management for Web and Mobile Applications

SharePoint A practical approach for CPAs

Configuring the Cisco ISA500 for Active Directory/LDAP and RADIUS Authentication

Configuring User Identification via Active Directory

Windows Azure Pack Installation and Initial Configuration

WHITE PAPER. Active Directory and the Cloud

TABLE OF CONTENTS. Features - SharePoint Server idataagent. Page 1 of 72 OVERVIEW SYSTEM REQUIREMENTS - SHAREPOINT SERVER IDATAAGENT INSTALLATION

Employee Active Directory Self-Service Quick Setup Guide

OneLogin Integration User Guide

Step by step guide to implement SMS authentication to Cisco ASA Clientless SSL VPN and Cisco VPN

SharePoint Integration

Microsoft SharePoint 2010 Administration

JapanCert 専 門 IT 認 証 試 験 問 題 集 提 供 者

Microsoft Project Server Integration with SharePoint 2010

Installation Guide. Tech Excel January 2009

DEPLOYMENT GUIDE Version 2.1. Deploying F5 with Microsoft SharePoint 2010

Configuring Global Protect SSL VPN with a user-defined port

WirelessOffice Administrator LDAP/Active Directory Support

Lab Answer Key for Module 6: Configuring and Managing Windows SharePoint Services 3.0. Table of Contents Lab 1: Configuring and Managing WSS 3.

Planning guide for Microsoft SharePoint Foundation 2010

Get started with cloud hybrid search for SharePoint

Step-by-Step Guide to Setup Instant Messaging (IM) Workspace Datasheet

Course 10174B: Configuring and Administering Microsoft SharePoint 2010

SHAREPOINT 2013 TO EMPOWER END USERS

Protected Trust Directory Sync Guide

An IT Pro Guide for Managing SharePoint s BI Infrastructure. Randy Williams

PowerSearch for MS CRM 2011

Configuring and Administering Microsoft SharePoint 2010

SharePoint 2013 Web Sites

Virto Password Reset Web Part for SharePoint. Release Installation and User Guide

Advanced Solutions of Microsoft SharePoint Server 2013 Course 20332A; 5 Days, Instructor-led

SHAREPOINT 2010 DEVELOPMENT : IN THE CLOUD. Faraz Khan Senior Consultant RBA Consulting

Project Server 2003 Install on SBS 2003 Courtesy of Chris Jones All rights reserved by the Author

Single Sign-on (SSO) technologies for the Domino Web Server

Access By Federation for Client Collaboration INFO 1

SharePoint 2010

Strong Authentication for Microsoft SharePoint

Configuring and Administering Microsoft SharePoint 2010 Course 10174B; 5 Days, Instructor-led

Cloud Services ADM. Agent Deployment Guide

Single sign-on for ASP.Net and SharePoint

Configuring and Administering Microsoft SharePoint 2013 Curso Personalizado en

How to Configure Captive Portal

Microsoft SharePoint 2010 Overview

SharePoint 2010 Developer Track

Acunetix Web Vulnerability Scanner. Getting Started. By Acunetix Ltd.

Transcription:

SharePoint 2010 as an Extranet Platform Peter Carson President Envision IT www.envisionit.com blog.petercarson.ca peter@envisionit.com

SPONSORS

Agenda SharePoint versions and licensing Extranet scenarios AD vs. SQL FBA Envision IT Extranet User Manager Boys and Girls Clubs of Canada Under the hood Wrap-up and Q&A

Extranet Investment Extranet technology solutions with SharePoint for Internet Sites Extranet Technologies Core Technologies Enabling Technologies Enterprise Content Management Web Publishing Out-of-the-box Workflows Social Networking (for authenticated users) Search InfoPath Services SharePoint Business Intelligence (Excel Services and PerformancePoint) Access Services Visio Services Rights for FAST Search for SharePoint (for use outside the firewall)*** Blogs Business Data Connectivity Service Claims-Based Authentication Discussions Mobile Connectivity Multilingual User Interface Permissions Management Ribbon and Dialog Framework SharePoint Workspace Streamlined Central Administration Wikis Workflow Virus protection Block inappropriate content Multiple Antivirus engines keyword filtering Configurable alerts Single point security controls for access policies Access control based on user identity, role and device Inactivity timeouts and re-authentication Clean up cache\temp files at session termination 4

SharePoint Server 2010 for Internet Sites Product Details The ideal solution for small to mediumsized businesses to reach their customers on the internet with easy-to-use Web Content Management and compliance for single domains*. Features SharePoint Standard CAL Features Licensing Enterprise Content Management Web Publishing Out-of-the-box Workflows Social Networking (for authenticated users) Search Single Domain License for Internet or Extranet Use A license is required for every server (WFE, SSA, Index) providing standard capabilities Step-up SKU to Enterprise is available to customers with active SA** Product Details The ideal solution for enterprise customers with multiple domains, across many geographies who want to provide high availability to their site visitors combined with a powerful search experience. Features SharePoint Standard CAL Features + Enterprise CAL Features Enterprise Content Management Web Publishing Out-of-the-box Workflows Social Networking (for authenticated users) Search InfoPath Services SharePoint Business Intelligence (Excel Services and PerformancePoint) Access Services Visio Services Rights for FAST Search for SharePoint (for use outside the firewall)*** Licensing Multiple Domain License for Internet or Extranet Use A license is required for every server (WFE, SSA, Index) providing enterprise capabilities Customers will require a completely new license of FIS Enterprise if a customer only purchased the license to FIS Standard Product Details FAST provides the platform for driving high-volume commerce and content experiences uniquely personalized to the individual. For highly tailored search solutions or highly personalized experiences for top tier websites, FAST Search for Internet Sites provides the industry leading solution. Features FAST ESP 5.3 FAST Search Designer Interaction Management Services (IMS) Content Transformation Services (CTS) Languages (all) Connectors (all)

Extranet Scenarios SharePoint Foundations Collaboration Portal Internet Web Site Members Only Area Board of Directors Portal CRM Integrated Customer Care Portal

SharePoint Foundations Collaboration Portal Simple team sites for collaboration Uses Windows Authentication to provide the full Office integration with SharePoint Separate AD installed directly on the WSS server Internal SQL farm used for content databases, but SQL Express is installed with WSS to bootstrap SharePoint from the config database One-way trust allows internal users to use their corporate accounts to access the Extranet Capacity Building Initiative Collaboration Portal Constellation HomeBuilders Customer Service Portal SickKids Hospital SharePoint Portal

SharePoint Foundations Collaboration Portal

Internet Web Site Members Only Area Public web site with a private members area Typically SQL authentication, but could be AD as well Forms-based authentication typically used to provide a rich login experience Self-registration with approvals typically provided Cadillac Fairview Retail Web Sites Centre for Addiction and Mental Health Problem Gambling Portal

Internet Web Site Members Only Area

Board of Directors Portal Corporate or public sector board of directors portal Small set of users that are typically already part of the internal corporate domain SSL publishing of portal externally Halton Healthcare Services Board of Directors' Portal William Osler Board of Directors' Portal

Board of Directors Portal

CRM Integrated Customer Care Portal Customer care portal Accounts are provisioned through the CRM system Microsoft CRM, Sales Logix, etc. Welcome emails are sent automatically when contacts are setup in CRM Groups are automatically setup when accounts are setup Contacts are made members of security groups based on their account relationship in CRM Citi Client Extranet Constellation HomeBuilders Customer Service Portal

CRM Integrated Customer Care Portal

Windows Authentication Pros Single URL for all users, inside and outside Works best when user credentials are stored in AD Maximum integration of Office applications with SharePoint document libraries and web sites Works well with Microsoft ISA Server 2006 and Forefront Unified Access Gateway Cons AD protocol generally not firewall friendly (mitigated by use of ISA server) Requires a second domain to keep Extranet users out of corporate domain

Forms-based Authentication Pros Can use the user s email address as the username Works best for user credentials stored outside AD (e.g. SQL Server) Works best for extranet user credentials you don t want to store in your corporate AD Ability to manage users without granting admin access to AD No additional DCs needed Cons User has No Windows Identity Reduced Office Application Integration Need Office 2010 client for integration to work Need BCS to import Profiles LDAP vs. Active Directory Logins Uses Cookies

Envision IT Extranet User Manager Self-service and business user web interfaces for setup of Extranet users Welcome email with account validation and secure password setup Password change and self-serve retrieval of lost usernames and password resets Display of sites each user or group has access to across SharePoint servers Active Directory or SQL Server forms-based authentication

Mission: To provide a safe, supportive place where children and youth can experience new opportunities, overcome barriers, build positive relationships and develop confidence and skills for life.

104 clubs across the country Serving 200,000 children and youth Over 700 service locations Federated model of governance, not franchise Grass roots response to local needs is key 2007 Operating Standards 2009 integration of national regional offices/staff/budgets

Redevelop the members only website as a knowledge sharing portal and a primary tool for cultivating donors Integration with MS Dynamics CRM Transactional portal as well as document management solution purchasing, donations, grant submissions

Demo

SharePoint SQLFBA Steps Ensure that the site is using Claims based security If the site is Classic, there is a PowerShell script that will do a one-time conversion from Classic to Claims > $webapp = Get-SPWebApplication( http://urltowebapplication:port ) > $webapp.useclaimsauthentication = True ; > $webapp.update() > $webapp.provisionglobally() You need to have a WA zone for the search crawler to work Extend the WA site to a new site using FBA Name the membership and role manager names Set your login form URL

SharePoint SQLFBA Steps Create the ASPNETDB database C:\Windows\Microsoft.NET\Framework64\v2.0.50727\asp net_regsql.exe -E -S ServerName d DatabaseName A all You need to have the A all option to have Role support setup

SharePoint SQLFBA Steps Setup IIS for the extended site Set the connection string to point to the ASPNETDB database Set the providers for Roles, Users, and Profiles for the web app, Central Admin, and Security Token Service Ensure the Names, Application Names, and Connection String Names are all consistent

SharePoint SQLFBA Steps Create your initial SQLFBA user Set the default user and role providers to your SQLFBA providers Add a new SQLFBA user Set the default providers back to c and i so SharePoint claims based security still works Go into Central Admin and grant site collection administrator rights to your new user Confirm that you can log into the SQLFBA site using the new credentials Grant any additional user or group rights as needed

Agenda SharePoint versions and licensing Extranet scenarios AD vs. SQL FBA Envision IT Extranet User Manager Boys and Girls Clubs of Canada Under the hood Wrap-up and Q&A

Fill out your Evaluations for a chance to win an Xbox 360 and Kinect, courtesy of Envision IT.

SharePoint 2010 as an Extranet Platform Peter Carson President Envision IT www.envisionit.com blog.petercarson.ca peter@envisionit.com