Understanding the Flow of Identity

In Microsoft Commerce Server 2009 R2, claims-based security involves controlling access to services, operations, and data based on the identity of the shopper, business user, or application making the request.

Identities flow across commerce tiers and services. The identities that flow depend on many factors: the physical deployment topology (two-tier or three-tier deployment); the type of deployment (SharePoint 2010 or ASP.NET); the zone (internal or external); the context of the request (rich Internet application (RIA) or browser); the type of identity (Windows, forms, or claims); and the identity of the caller (anonymous, recognized, or authenticated/registered user).

The following topics contain diagrams and descriptions to explain the flow of identity for two-tier and three-tier SharePoint 2010 or ASP.NET commerce deployments in the internal (business user facing) and external (shopper facing) zones.

In This Section

Three-Tier | SharePoint 2010 | External Zone Flow of Identity

Three-Tier | SharePoint 2010 | Internal Zone Flow of Identity

Two-Tier | SharePoint 2010 | External Zone Flow of Identity

Two-Tier | SharePoint 2010 | Internal Zone Flow of Identity

Three-Tier | ASP.NET | External Zone Flow of Identity

Three-Tier | ASP.NET | Internal Zone Flow of Identity

Two-Tier | ASP.NET | External Zone Flow of Identity

Two-Tier | ASP.NET| Internal Zone Flow of Identity

-

See Also

Other Resources

Understanding Claims-Based Identity

Managing Authentication

Managing Authorization