We would like to use SSO with CRM using a custom ASP.NET application. We need to consider both the IFRAME use-case and the custom web-page SSO use-case. We are converting from an existing installation which utilises Windows Authentication. All users are internal, so ideally we can move to claims-based authentication without moving to an Internet Facing Deployment to reduce complexity. The following articles imply you need CRM to be in IFD mode to support SSO with external apps:
https://msdn.microsoft.com/library/gg509057(v=crm.5).aspx
https://msdn.microsoft.com/en-us/library/gg509061.aspx
The question is can these features be used with an internal (non IFD) CRM installation? We would prefer not to modify the installation into IFD mode because this looks complex and we are concerned it will create additional effort and risk. The documentation seems to say you need an IFD deployment but I'm not clear why.
We are using On-Prem CRM 2016 and ADFS v2 (Windows Server 2008). The reason for converting to Claims Based Authentication is that we are moving to Azure Web App service for the ASP.NET application, and Windows Authentication is not supported.
Thanks for your help.
*This post is locked for comments
Stay up to date on forum activity by subscribing. You can also customize your in-app and email Notification settings across all subscriptions.
André Arnaud de Cal... 291,240 Super User 2024 Season 2
Martin Dráb 230,149 Most Valuable Professional
nmaenpaa 101,156