SharePoint 2010 as an Extranet Platform



Similar documents
SharePoint 2010 as an Extranet Platform

SharePoint Benefits. Engage partners customers and employees across one platform. Internet Extranet Intranet

SharePoint 2010 Intranet Case Study. Presented by Peter Carson President, Envision IT

Collaborating with External Users

126 SW 148 th Street Suite C-100, #105 Seattle, WA Tel: Fax:

SharePoint 2013 Logical Architecture

10231B: Designing a Microsoft SharePoint 2010 Infrastructure

Setup Forms Based Authentication Under SharePoint 2010

Business process efficiency is improved with task management, alerts, notifications and automated process workflows.

SHAREPOINT ARCHITECTURE FUNDAMENTALS

Implementing and Administering an Enterprise SharePoint Environment

SharePoint 2010 Interview Questions-Architect

Microsoft Corporation. Project Server 2010 Installation Guide

Microsoft Office 365 from Vodafone. Administrator s Guide for Midsize Businesses and Enterprises

External Authentication with Citrix Secure Gateway - Presentation server Authenticating Users Using SecurAccess Server by SecurEnvoy

Implementing and Administering an Enterprise SharePoint Environment

SharePoint Extranets. Peter Carson. March 11, 2015

Office 365 and SharePoint Local File Share Synchronization

Who is SharePoint Joel?

How to move a SharePoint Server bit environment to a 64-bit environment on Windows Server 2008.

Mod 2: User Management

David Chou. Architect Microsoft

"Charting the Course to Your Success!" MOC B Configuring and Administering Microsoft SharePoint Course Summary

Microsoft Business Intelligence 2012 Single Server Install Guide

Course: 10174B: Configuring and Administering Microsoft SharePoint 2010

Bill Fiddes Learning and Development Specialist Rob Latino Program Manager in Office 365 Support

WatchDox SharePoint Beta Guide. Application Version 1.0.0

Acunetix Web Vulnerability Scanner. Getting Started. By Acunetix Ltd.

Enterprise Self Service Quick start Guide

USERS, PROFILES, & MYSITES

Layer2 Business Data List Connector for SharePoint

Entwickler. SharePoint Foundation. Standard Edition. Enterprise Edition

Working with Structured Data in Microsoft Office SharePoint Server 2007 (Part1): Configuring Single Sign On Service and Database

JapanCert 専 門 IT 認 証 試 験 問 題 集 提 供 者

Centrify Cloud Connector Deployment Guide

ITMC 2079 MCTS Configuring and Administering Microsoft SharePoint 2010

Cloud Services ADM. Agent Deployment Guide

Integration Microsoft Dynamics CRM with SharePoint and Office 365 via OData

Single Sign On. SSO & ID Management for Web and Mobile Applications

Tableau Server Security. Version 8.0

Windows Azure Pack Installation and Initial Configuration

Planning guide for Microsoft SharePoint Foundation 2010

Office 365 SharePoint Online

Metalogix SharePoint Backup. Advanced Installation Guide. Publication Date: August 24, 2015

Configuring User Identification via Active Directory

OneLogin Integration User Guide

Configuring the Cisco ISA500 for Active Directory/LDAP and RADIUS Authentication

Configuring SSL VPN on the Cisco ISA500 Security Appliance

How to Secure a Groove Manager Web Site

DEPLOYMENT GUIDE Version 2.1. Deploying F5 with Microsoft SharePoint 2010

Dell SonicWALL and SecurEnvoy Integration Guide. Authenticating Users Using SecurAccess Server by SecurEnvoy

Cloud Business Apps. Peter Carson President, Envision IT

External Authentication with CiscoSecure ACS. Authenticating Users Using. SecurAccess Server. by SecurEnvoy

User's Guide. ControlPoint. Change Manager (Advanced Copy) SharePoint Migration. v. 4.0

R i o L i n x s u p p o r r i o l i n x. c o m 3 / 5 /

Microsoft SharePoint 2010 Administration

Employee Active Directory Self-Service Quick Setup Guide

DocumentsCorePack Client

Step-by-Step Guide to Setup Instant Messaging (IM) Workspace Datasheet

NSi Mobile Installation Guide. Version 6.2

AGILEXRM REFERENCE ARCHITECTURE

Feature Integration Across Microsoft Office Server Products SharePoint Server, Exchange Server, Lync Server, and Office Web Apps

Lab Answer Key for Module 6: Configuring and Managing Windows SharePoint Services 3.0. Table of Contents Lab 1: Configuring and Managing WSS 3.

Course MS55077A Project Server 2013 Development. Length: 5 Days

Profile synchronization guide for Microsoft SharePoint Server 2010

Configuring Global Protect SSL VPN with a user-defined port

Coveo Platform 7.0. Microsoft SharePoint Connector Guide

Summary This article contains information about an installation of EdgeSight 5.4 Web Server using SQL 2008 R2 (DB and RS) in a lab environment.

Get started with cloud hybrid search for SharePoint

ipad or iphone with Junos Pulse and Juniper SSL VPN appliance Authenticating Users Using SecurAccess Server by SecurEnvoy

Alert Notification of Critical Results (ANCR) Public Domain Deployment Instructions

Configuring and Administering Microsoft SharePoint 2010

Step by step guide to implement SMS authentication to Cisco ASA Clientless SSL VPN and Cisco VPN

Virto Password Reset Web Part for SharePoint. Release Installation and User Guide

Advanced Solutions of Microsoft SharePoint Server 2013 Course 20332A; 5 Days, Instructor-led

TABLE OF CONTENTS. Features - SharePoint Server idataagent. Page 1 of 72 OVERVIEW SYSTEM REQUIREMENTS - SHAREPOINT SERVER IDATAAGENT INSTALLATION

Single Sign-on (SSO) technologies for the Domino Web Server

Agenda. How to configure

Access By Federation for Client Collaboration INFO 1

Active Directory Management. Agent Deployment Guide

Interwise Connect. Working with Reverse Proxy Version 7.x

SharePoint 2010

Microsoft Outlook Web Access 2013 Authenticating Users Using SecurAccess Server by SecurEnvoy

Single sign-on for ASP.Net and SharePoint

SalesForce SSO with Active Directory Federated Services (ADFS) v2.0 Authenticating Users Using SecurAccess Server by SecurEnvoy

Configuring and Administering Microsoft SharePoint 2013 Curso Personalizado en

SharePoint Integration

How to Configure Captive Portal

WHITE PAPER. Active Directory and the Cloud

MCTS SharePoint 2010, Configuring

Transcription:

SharePoint 2010 as an Extranet Platform

Agenda SharePoint versions and licensing Extranet scenarios AD vs. SQL FBA Under the Hood Envision IT Extranet User Manager Wrap-up and Q&A

Extranet technology solutions with SharePoint for Internet Sites Extranet Technologies Core Technologies Enabling Technologies Enterprise Content Management Web Publishing Out-of-the-box Workflows Social Networking (for authenticated users) Search InfoPath Services SharePoint Business Intelligence (Excel Services and PerformancePoint) Access Services Visio Services Rights for FAST Search for SharePoint (for use outside the firewall)*** Blogs Business Data Connectivity Service Claims-Based Authentication Discussions Mobile Connectivity Multilingual User Interface Permissions Management Ribbon and Dialog Framework SharePoint Workspace Streamlined Central Administration Wikis Workflow Virus protection Block inappropriate content Multiple Antivirus engines keyword filtering Configurable alerts Single point security controls for access policies Access control based on user identity, role and device Inactivity timeouts and re-authentication Clean up cache\temp files at session termination

Product Details The ideal solution for small to mediumsized businesses to reach their customers on the internet with easy-to-use Web Content Management and compliance for single domains*. Features SharePoint Standard CAL Features Licensing Enterprise Content Management Web Publishing Out-of-the-box Workflows Social Networking (for authenticated users) Search Single Domain License for Internet or Extranet Use A license is required for every server (WFE, SSA, Index) providing standard capabilities Step-up SKU to Enterprise is available to customers with active SA** Product Details The ideal solution for enterprise customers with multiple domains, across many geographies who want to provide high availability to their site visitors combined with a powerful search experience. Features SharePoint Standard CAL Features + Enterprise CAL Features Enterprise Content Management Web Publishing Out-of-the-box Workflows Social Networking (for authenticated users) Search InfoPath Services SharePoint Business Intelligence (Excel Services and PerformancePoint) Access Services Visio Services Rights for FAST Search for SharePoint (for use outside the firewall)*** Licensing Multiple Domain License for Internet or Extranet Use A license is required for every server (WFE, SSA, Index) providing enterprise capabilities Customers will require a completely new license of FIS Enterprise if a customer only purchased the license to FIS Standard Product Details FAST provides the platform for driving high-volume commerce and content experiences uniquely personalized to the individual. For highly tailored search solutions or highly personalized experiences for top tier websites, FAST Search for Internet Sites provides the industry leading solution. Features FAST ESP 5.3 FAST Search Designer Interaction Management Services (IMS) Content Transformation Services (CTS) Languages (all) Connectors (all)

Extranet Scenarios SharePoint Foundations Collaboration Portal Internet Web Site Members Only Area Board of Directors Portal CRM Integrated Customer Care Portal

SharePoint Foundations Collaboration Portal Simple team sites for collaboration Uses Windows Authentication to provide the full Office integration with SharePoint Separate AD installed directly on the WSS server Internal SQL farm used for content databases, but SQL Express is installed with WSS to bootstrap SharePoint from the config database One-way trust allows internal users to use their corporate accounts to access the Extranet Capacity Building Initiative Collaboration Portal Constellation HomeBuilders Customer Service Portal SickKids Hospital SharePoint Portal

SharePoint Foundations Collaboration Portal

Internet Web Site Members Only Area Public web site with a private members area Typically SQL authentication, but could be AD as well Forms-based authentication typically used to provide a rich login experience Self-registration with approvals typically provided Cadillac Fairview Retail Web Sites Centre for Addiction and Mental Health Problem Gambling Portal

Internet Web Site Members Only Area

Board of Directors Portal Corporate or public sector board of directors portal Small set of users that are typically already part of the internal corporate domain SSL publishing of portal externally Halton Healthcare Services Board of Directors' Portal William Osler Board of Directors' Portal

Board of Directors Portal

CRM Integrated Customer Care Portal Customer care portal Accounts are provisioned through the CRM system Microsoft CRM, Sales Logix, etc. Welcome emails are sent automatically when contacts are setup in CRM Groups are automatically setup when accounts are setup Contacts are made members of security groups based on their account relationship in CRM Citi Client Extranet Constellation HomeBuilders Customer Service Portal

CRM Integrated Customer Care Portal

Windows Authentication Pros Single URL for all users, inside and outside Works best when user credentials are stored in AD Maximum integration of Office applications with SharePoint document libraries and web sites Works well with Microsoft ISA Server 2006 and Forefront Unified Access Gateway Cons AD protocol generally not firewall friendly (mitigated by use of ISA server) Requires a second domain to keep Extranet users out of corporate domain

Forms-based Authentication Pros Can use the user s email address as the username Works best for user credentials stored outside AD (e.g. SQL Server) Works best for extranet user credentials you don t want to store in your corporate AD Ability to manage users without granting admin access to AD No additional DCs needed Cons User has No Windows Identity Reduced Office Application Integration No SharePoint context available in Task pane Unable to launch Office applications My Site Link disappears Need BCS to import Profiles LDAP vs. Active Directory Logins Uses Cookies

Agenda SharePoint versions and licensing Extranet scenarios AD vs. SQL FBA Under the Hood Envision IT Extranet User Manager Wrap-up and Q&A

SharePoint SQLFBA Steps Ensure that the site is using Claims based security If the site is Classic, there is a PowerShell script that will do a one-time conversion from Classic to Claims > $webapp = Get-SPWebApplication( http://urltowebapplication:port ) > $webapp.useclaimsauthentication = True ; > $webapp.update() > $webapp.provisionglobally() You need to have a WA zone for the search crawler to work Extend the WA site to a new site using FBA Name the membership and role manager names Set your login form URL

SharePoint SQLFBA Steps Create the ASPNETDB database C:\Windows\Microsoft.NET\Framework64\v2.0.50727\asp net_regsql.exe -E -S ServerName -d DatabaseName -A all You need to have the -A all option to have Role support setup

SharePoint SQLFBA Steps Setup IIS for the extended site Set the connection string to point to the ASPNETDB database Set the providers for Roles, Users, and Profiles for the web app, Central Admin, and Security Token Service Ensure the Names, Application Names, and Connection String Names are all consistent

FBA Configuration Manager Tool for configuring the providers for Roles, Users, and Profiles for the web app, Central Admin, and Security Token Service http://blogs.technet.com/b/speschka/archive/2010/07/28/sharepoint -2010-forms-based-authentication-configuration-manager.aspx Ensures the Names, Application Names, and Connection String Names are all consistent

SharePoint SQLFBA Steps Create your initial SQLFBA user Set the default user and role providers to your SQLFBA providers Add a new SQLFBA user Set the default providers back to c and i so SharePoint claims based security still works Go into Central Admin and grant site collection administrator rights to your new user Confirm that you can log into the SQLFBA site using the new credentials Grant any additional user or group rights as needed

Envision IT Extranet User Manager Self-service and business user web interfaces for setup of Extranet users Welcome email with account validation and secure password setup Password change and self-serve retrieval of lost usernames and password resets Display of sites each user or group has access to across SharePoint servers Active Directory or SQL Server forms-based authentication

Contact Information Peter Carson President Envision IT www.envisionit.com blog.petercarson.ca peter@envisionit.com

Drop by our booth in the Exhibit hall for a chance to win an Xbox 360 and Kinect, courtesy of Envision IT.