Configuring LiveID authentication with SharePoint2010

Posted by ybbest on YBBest See other posts from YBBest or by ybbest
Published on Sat, 08 Oct 2011 23:48:49 +0000 Indexed on 2011/11/11 18:30 UTC
Read the original article Hit count: 362

Filed under:
|

With the addition of the new claims based authentication framework in SharePoint 2010, SharePoint is now more loosely coupled to the authentication layer than ever. You’ve probably seen presentations or webinars where it was mentioned that you can use claims authentication against authentication providers such as Live ID and OpenID. In this blog I will show you the common problems while you configure you LiveID integration with SharePoint2010.The detailed configuration can be found in the following blogs.

Part 1 – http://www.wictorwilen.se/Post/Visual-guide-to-Windows-Live-ID-authentication-with-SharePoint-2010-part-1.aspx

Part 2 – http://www.wictorwilen.se/Post/Visual-guide-to-Windows-Live-ID-authentication-with-SharePoint-2010-part-2.aspx

Part 3 – http://www.wictorwilen.se/Post/Visual-guide-to-Windows-Live-ID-authentication-with-SharePoint-2010-part-3.aspx

Here are some problems I have following the instructions:

Problem 1: If you had the following exceptions when you run the PowerShell scripts to create the new LiveID authentication provider

New-SPTrustedIdentityTokenIssuer : Exception of type ‘System.ArgumentException’ was thrown.Parameter name: claimType At line:1 char:42 + $authp = New-SPTrustedIdentityTokenIssuer <<<< -Name “LiveID INT” -Description “LiveID INT” -Realm $realm -ImportTrustCertificate $certfile -ClaimsMappings $emailclaim,$upnclaim -SignInUrl “https://login.live-int.com/login.srf” -IdentifierClaim $emailclaim.InputClaimType + CategoryInfo : InvalidData:(Microsoft.Share…dentityProvider:SPCmdletNewSPIdentityProvider) [New-SPTrustedIdentityTokenIssuer], ArgumentException + FullyQualifiedErrorId :Microsoft.SharePoint.PowerShell.SPCmdletNewSPIdentityProvider

Solution: You need to Remove the existing the SPTrustedIdentityTokenIssuer.

    1. You need to first get the existing TokenIssuer name by Get-SPTrustedIdentityTokenIssuer, and then run Remove- SPTrustedIdentityTokenIssuer to remove the existing TokenIssuer.

    2. After that , you can re-run the script , everything should work fine now.

Problem 2: Live INT automatically logs out

Whenever I try to log in (https://login.live-int.com/login.srf), after entering valid email/password I get redirected to the logout page.

Solution: You can find the solution in my previous blog.




© YBBest or respective owner

Related posts about liveid

Related posts about SharePoint 2010