Scenario 6: Federated authentication: TotalAgility Azure with Azure AD and on-premise AD

The following diagram describes claims-based authentication where TotalAgility Azure uses federated security to authenticate with Azure AD which itself synchronizes with an on-premise installation of Windows Server AD FS 2.0.

Claims-based authentication - TotalAgility Azure with Azure AD and on-premise AD

One

The Client logs in to the domain (Windows Server AD).

Two

The Client accesses TotalAgility.

Three

Azure AD provides STS that authenticates the Client and returns a claims token for TotalAgility.

Four

Azure AD submits the claims token to TotalAgility (relying party) via the Client.

Five

TotalAgility uses claims in the token.

uses the token issued by STS and extracts the claims from the token.