Sign Up

Sign Up to our social questions and Answers Engine to ask questions, answer people’s questions, and connect with other people.

Have an account? Sign In

Have an account? Sign In Now

Sign In

Login to our social questions & Answers Engine to ask questions answer people’s questions & connect with other people.

Sign Up Here

Forgot Password?

Don't have account, Sign Up Here

Forgot Password

Lost your password? Please enter your email address. You will receive a link and will create a new password via email.

Have an account? Sign In Now

You must login to ask a question.

Forgot Password?

Need An Account, Sign Up Here

Please briefly explain why you feel this question should be reported.

Please briefly explain why you feel this answer should be reported.

Please briefly explain why you feel this user should be reported.

Sign InSign Up

The Archive Base

The Archive Base Logo The Archive Base Logo

The Archive Base Navigation

  • SEARCH
  • Home
  • About Us
  • Blog
  • Contact Us
Search
Ask A Question

Mobile menu

Close
Ask a Question
  • Home
  • Add group
  • Groups page
  • Feed
  • User Profile
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Buy Points
  • Users
  • Help
  • Buy Theme
  • SEARCH
Home/ Questions/Q 8622533
In Process

The Archive Base Latest Questions

Editorial Team
  • 0
Editorial Team
Asked: June 12, 20262026-06-12T07:04:46+00:00 2026-06-12T07:04:46+00:00

So here is the setup. I have a STS Provider and 2 ASP.NET MVC

  • 0

So here is the setup. I have a STS Provider and 2 ASP.NET MVC sites both trusting the same STS provider. User comes to Site A and is redirected to the STS Provider passive login, authenticates properly, and is redirected back to site ‘A’ as expected. This all works great. I can see the token and identity in code in site ‘A’ using the following:

IClaimsPrincipal claimsPrincipal = Thread.CurrentPrincipal as IClaimsPrincipal;
IClaimsIdentity claimsIdentity = (IClaimsIdentity)claimsPrincipal.Identity;

Now there is a link on site ‘A’ to site ‘B’ that truts the same STS provder. The issue is when I navigate to site ‘B’, the claim information is not present and the user is not automatically authenticated. According to the STS and WIF documentation the following should occur:

“The flow starts as usual, the user requests a page from B on site A and gets redirected to the STS to obtain a token. However, this time the user is already authenticated with
the STS site because there is an active session represented by the STS
cookie. This means the request for the STS page leads straight to execution of
the SecurityTokenService issuing sequence without showing to the user
any UI for credential gathering. The token is issued silently
and forwarded to B
according to the usual sequence. From the
moment the user clicks on the link to B and the browser displays the
requested page from B, only some flickering of the address bar in the
browser will give away the fact that some authentication took place
under the hood. That’s pretty much what Single Sign-on (SSO) means:
the user went through the experience of signing in only once, and from
that moment on the system is able to gain access to further Reliable Parties
without prompting the user for credentials again.”

Does anyone know what needs to occur in either the STS Provider, Site A, or Site B explicitly to make this work correctly? Remember the STS and site ‘A’ are working perfectly; it’s just site ‘B’ is not getting the SSO ability.

Thanks!

  • 1 1 Answer
  • 0 Views
  • 0 Followers
  • 0
Share
  • Facebook
  • Report

Leave an answer
Cancel reply

You must login to add an answer.

Forgot Password?

Need An Account, Sign Up Here

1 Answer

  • Voted
  • Oldest
  • Recent
  • Random
  1. Editorial Team
    Editorial Team
    2026-06-12T07:04:47+00:00Added an answer on June 12, 2026 at 7:04 am

    Yes – you should get SSO.

    Using ADFS terms, I assume you FedUtil’d both A and B with the STS and configured both A and B on the STS as Relying Parties with essentially the same configuration? I assume you’ve compared both A and B web.config?

    Clear out all your cookies – I find FireFox does this best.

    Navigate directly to B. What happens?

    • STS login screen?
    • FBA login screen?
    • Nothing – just goes straight to B?

    If STS login screen, what happens when you authenticate and then navigate to A?

    If nothing, is the landing page on B protected?

    • 0
    • Reply
    • Share
      Share
      • Share on Facebook
      • Share on Twitter
      • Share on LinkedIn
      • Share on WhatsApp
      • Report

Sidebar

Related Questions

Here is my setup: I have an asp.net button on a page -- <asp:Button
Here's the setup. I have web site which is essentially a simple CMS. Here
Here's the setup - I have a view that lists products. On that same
here's my setup: I have an MVC3 site hosted with a www subdomain (e.g.,
Here's my setup: I have a modular site which uses dynamic inclusion. The header
I have setup AzMan and have a few classic ASP sites that I would
Here's the setup: I have some MVC Controllers that are intended to be consumed
Here is my setup: I have modeled my application after the SportsStore in Pro
I have a weird issue. Here is the setup: I have a NSOperationQueue which
I have a Ruby application, and here is my setup: I have this HAML

Explore

  • Home
  • Add group
  • Groups page
  • Communities
  • Questions
    • New Questions
    • Trending Questions
    • Must read Questions
    • Hot Questions
  • Polls
  • Tags
  • Badges
  • Users
  • Help
  • SEARCH

Footer

© 2021 The Archive Base. All Rights Reserved
With Love by The Archive Base

Insert/edit link

Enter the destination URL

Or link to existing content

    No search term specified. Showing recent items. Search or use up and down arrow keys to select an item.