Questions tagged [claims-based-identity]

Application model for presenting an identity to a claims aware application. This identity contains claim elements, such as email address or username, in a secure package from a trusted source. This model separates the application from the authentication mechanism.

0
votes
0answers
9 views

Identity Claims showing as null after accessing

Interesting problem I have. My post-authentication ClaimsIdentity becomes null after being accessed. It doesn't seem to matter how it's access, any access at all nulls out the claims. Viewing the ...
1
vote
1answer
47 views

Integration between Two IdentityServer4 (aspnet identity)

I'm trying to do IdentityServer4(A) integration with another IdentityServer4(B) implementation. These two are currently working independently from each other. I already did some progress with this, ...
0
votes
2answers
30 views

Is the name identifier claim of a given ClaimPrincipal provided to an Azure Function the same across different applications?

I have an application built on Azure Functions. My users can use Facebook, Google and Microsoft as a Identity Providers as my application has been registered in each of these providers. My Azure ...
0
votes
1answer
20 views

Getting access to “employeeId” or “jobTitle” Claim via Asp.Net Core 2.2 with AzureAd

I'm trying to extend the claims I get back from AzureAd. I know there's more available, but I have no idea where to start. The documentation is all over the place. I basically have an ASP .Net Core 2....
0
votes
0answers
36 views

Is there a way to use Identity 2.0 AspNetUsers Authentication (Azure SQL) AND OpenIdConnect (to use Azure Active Directory)?

The big idea... A user inputs their email to sign in. We look to see whether their company uses Azure Active Directory (Azure AD) or not. If they do, go to Microsoft to sign in. If not, sign in using ...
1
vote
0answers
138 views

Why is the 'identityProvider' claim missing in the ClaimsPrincipal running in an Azure Function v2?

I have an Azure Function App that is deployed in 2 environments, one for Development and one Production, each with their own URL. In both environments, the functions are configured to enable users to ...
0
votes
1answer
25 views

How to check claim for value in API request (ASP.NET Core 2.2)

I'm using claims-based-identity in ASP.NET Core 2.2 From what I've read, it's possible to make custom claims/policy authorization using the following format (found in this answer) [Authorize(Policy =...
0
votes
0answers
29 views

ASP.NET Core ClaimsPrincipal with multiple ClaimsIdentity

I am quite new to asp.net core (2.1) and trying to build an mvc application with local user accounts. The application uses the Identity framework and a local sql server db with the default schema. ...
1
vote
1answer
32 views

asp.net role based authorization with wildcard names

I am trying to implement the role based authorization in .net core web api. I don't have the fixed role names. I have to validate with the common prefix only. For example, in JWT claim the role will ...
1
vote
1answer
72 views

Adding Redirection immediately after Login in ASP.Net Core 2.1 using Identity Core

Hi guys I am trying to achieve redirections immediately after Login in a .Net Core 2.1 application using Identity Core. The redirections are dependent on roles of the logged in user. I am getting a ...
1
vote
1answer
39 views

Null Reference Exception for ClaimsType in IdentityCore, Getting claims as null

Hi guys I am trying out Identity Core, I need to get the details of the user who has logged in. I am trying the following: var result = await _signInManager.PasswordSignInAsync(Input.Email, Input....
1
vote
0answers
50 views

Problem adding Azure AD user extension to id token claims

I'm attempting to follow the documentation here to add a user extension to my id token's set of claims, but I can't get it to show up in the token I'm getting. I've created a user extension in an on-...
0
votes
1answer
56 views

How Claims are mapped in asp.net core

I am new to asp.net core and I am currently working in the multi-tenant application.I am now stuck because i have no idea of how the claims are mapped in asp.net core I am getting the above error ...
1
vote
2answers
39 views

Store array of int into claims with AddClaims

I want to put an array of int in one of my claims on a web application .net core 2.2. When logging in to create the ticket I use this to add claims, but how to add a complex object. if (ticket....
0
votes
1answer
60 views

Invalidate ClaimsPrincipal after it has been modified

I am using ASP.NET MVC, Identity2. I have added "FirstName" Custom ClaimPrincipal: public async Task<ClaimsIdentity> GenerateUserIdentityAsync(UserManager<ApplicationUser, long> manager) ...
0
votes
1answer
29 views

Is it possible to do Custom Claim Transformations in AzureAD like you can with ADFS?

We are attempting to use AzureAD as a IDP for Amazon Web Services and provide the ability for our users to role switch into other accounts / levels of access based on their AD Group memberships. The ...
0
votes
0answers
89 views

OAuth2 Resource Owner Password Credentials with Dynamic Client registration

I am implementing login within a new native application (iOS and Android) and deciding on the kind of authentication to adopt. There are some quite clear guidelines around OAuth that state that this ...
0
votes
0answers
25 views

Update user claims without updating authentication time

I've seen many posts about updating user claims but finally they all use SignIn method which updates authentication time. There is a core functionality in my web application based on authentication ...
0
votes
2answers
150 views

User.Identity.Name is null after federated Azure AD login with aspnetcore 2.2

I've followed AzureAD aspnetcore sample as closely as possible to try and implement Azure AD authentication in our aspnetcore 2.2 webapp. I am able to login successfully using Azure AD. However, the ...
0
votes
3answers
48 views

How to get user claims by using JWT Bearer token

Am sending Bearer Token in the header from Postman. Now I need to get User Claim in the API using that bearer token. The code which I tried is not working means am not getting user Name/Email. How can ...
-2
votes
1answer
17 views

Question about Regex to edit claim and remove part of email / username

Completely new to regex only read a few guides my problem is as follows. A 3rd party solution is being connected to our Adfs 2016 enviroment. We have run into a problem as the solution cannot handle ...
0
votes
0answers
15 views

Caching claims in custom authorization policy

Can anyone please guide how to cache claims in a custom authorization policy so that I don't have to hit the database to get all rights, each time a new service request comes from the client? ...
0
votes
1answer
44 views

Using .net Core Identity with my business

I have a tree which is in a table named cartable. I want to use .net core Identity to grant some permissions to this tree like these: Each Role has some permissions such as "Read Letter","Create a ...
0
votes
1answer
55 views

Azure AD Authentication for Intranet Web Application

We are developing Intranet web application using NET framework is 4.6.1 (C#). Both UI (MVC) and backend (Web API) would be deployed as separate web apps in IIS. The requirement is to authenticate user ...
4
votes
1answer
155 views

Multiple JWT bearers for authorization and authentication

I have a .NET Core IdentityServer (IS) for SSO, which I want to use for authentication of my .NET Core(backend)-Angular (client) app. I want to have an EF ApplicationUser on the backend and Claim ...
0
votes
1answer
28 views

Azure Active Directory B2C local accounts sign-up with profile picture

Is it possible to upload the profile picture while user signs up with a local account? I've implemented with the built in claims but not sure how i can provide a picture at the time of signing up.
0
votes
1answer
34 views

How to get Email address from the principal in ASP.net?

I am trying to get the Email associated with the current user. The following shows few lines that I add Claims in authentication. public override async Task GrantResourceOwnerCredentials(...
0
votes
0answers
42 views

Azure Claims - Mobile claim not exposed

I'm using custom policy to add Azure AD as an identity provider for my Azure AdB2C instance. I configured output claims to get from Azure AD, but not all claims exposed, After hours of searching why ...
0
votes
1answer
39 views

Claim permission value with context

I'm starting to use claim-based authorization for my asp.net web API project. In my projects users can have permission to edit entities. But user have permission to edit entity1, but not entity2. In ...
1
vote
4answers
145 views

How to make custom user claims be available in API requests

I have a solution consisting of: ASP.NET Core 2.1 running IdentityServer4 on top of ASP.NET Identity Core. ASP.NET Core 2.1 Web API set to use the IdentityServer as the authentication provider. A ...
0
votes
1answer
83 views

Configuration of claims provider for application group or relying party

I have a Windows Server 2016 on which I am using ADFS. I followed the link at https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/operations/configure-ad-fs-to-authenticate-users-stored-in-...
0
votes
1answer
71 views

ASP.NET Identity Core 2: add custom claim based on login URL

I've got an ASP.NET core application which implements a custom UserClaimsPrincipalFactory , including the following method: protected override async Task<ClaimsIdentity> GenerateClaimsAsync(...
0
votes
1answer
37 views

ASP.NET Core Identity Claim inheritance not working

According to the docs, when I add a user to a role, he inherits all of its claims. However, I have hit a roadblock where I know the user has a specific role and I also know that these roles have some ...
0
votes
2answers
39 views

How to get access token for authenticated user to make an authorized resource api call?

I have simple MVC 5 Owin project that uses a Auth server for authentication to request a token. When a user has logged in, how can I get the user's token to make other protected requests on the API? ...
0
votes
0answers
16 views

Access ClaimsIdentity within Login method

I am trying to confirm a user has a given claim before they are logged in to the system. With the following code, the first time I hit the Login submit button, the HasClaim property returns false, and ...
0
votes
0answers
7 views

How do I log a user out when they close the browser or tab in claims-based authentication

I need to sign out a user when the user closed the tab or browser, how do I do that in claims-based authentication ?
0
votes
1answer
21 views

simpleSAMLphp with IIS and different Application Pool identities

I've been struggling since a day now with simpleSAMLphp in IIS and I just managed to understand why. So I have simpleSAMLphp running as IUSR in a separated application https://myserver/simpleSAMLphp. ...
2
votes
1answer
144 views

AspNet Identity Core - Custom Claims on Login

I'm trying to extend my identity user by adding a logical 'deleted' column in the database. I then want to use this value to add a claim to user using a custom UserClaimsPrincipalFactory. I want to ...
0
votes
0answers
34 views

HttpContext.Current.User.Identity.IsAuthenticated is false but ASP.NET_SessionId(cookie) is available

Everything was working but suddenly broke. Sorry for the poor description: will add any details if needed. I am using a ASP.Net MVC SSO which uses Owin(OAuthAuthorizationServerProvider) and ...
0
votes
0answers
12 views

If SharePoint is claims based, how does PowerShell user AD account get authorization to access SharePoint information?

If SharePoint is claims based, how does PowerShell user AD account get authorization to access on-prem SharePoint information? External users are required to use claims-based authorization to access ...
0
votes
1answer
71 views

asp.net core 2.x Policy Claims wrong identity

I'm working on using the Policies featured (in conjunction with Windows Auth). What I want to accomplish is simple, I want the user to be both authorized to access the app via windows auth, but limit ...
0
votes
1answer
64 views

ASP .NET MVC application claims-based with ADFS 2.0 - too many redirects

I am trying to create a ASP .NET MVC web application with .NET 4.5 that uses claims-based authentication with an ADFS 2.0. I am following the tutorial at https://docs.microsoft.com/en-us/dotnet/...
0
votes
0answers
11 views

Where call a Setup Application Roles method using ASP.NET Identity Core

http://benfoster.io/blog/asp-net-identity-role-claims Following the tutorial above I created my own setup method below: public async void Setup() { var companyAdminRole = await ...
0
votes
1answer
149 views

Maximum number of claims

I have an asp.net core web app and I am using the built-in authorization system from Microsoft. I have a number of areas, controllers and actions; every area, controller and action has its own ...
0
votes
0answers
22 views

Claims are empty in case of ADFS identity provider

I need to setup the B2C login in our application. In case of other identity providers I get the token and I get in the backed part the Claims correctly, as you can see in this screenshot but when I ...
2
votes
0answers
54 views

Asp.Net Mvc Identity&Owin true way for Two-Factor authentication

I am new using two-factor authentication and have problems.Error is raising after sms code verify button click.I am registering and then entering the sms code the error is, The provided anti-...
1
vote
2answers
104 views

Proper way to assess Role in Authorization as User.IsInRole() always returns false

A lot has been asked around the User.IsInRole, but I cannot find the right answer. I need to validate a certain role, by using an AuthorizationHandler (through a authorizationrequirement) I have a ...
1
vote
1answer
49 views

.Net Core OAuth Nested Claims are not mapped back to user

I'm trying to gain access to the claims after OAuth: services.AddAuthentication(options => { options.DefaultAuthenticateScheme = CookieAuthenticationDefaults.AuthenticationScheme; options....
2
votes
1answer
108 views

Authorize Tag Helper in Razor Pages for page handler method

i have a Razor Pages application where i use Claim Based Authorization. Inside my code i'm using the [Authorize] tag to identify which methods a user is able to access. It works perfectly fine for my ...
0
votes
1answer
30 views

Include Claim details with user details in Identity

I'm facing issue in accessing the claims part of the user with Identity. We have a scenario which requires collection of users and the claims corresponding to the user. Basically, Identity provides us ...

http://mssss.yulina-kosm.ru