Andrew Connell

Great SharePoint Apps & Security Post Resources

Recently I saw that SharePoint & Microsoft notable Steve Peshka published a series of blog posts on the details of security in SharePoint apps. If you are working with SharePoint apps, make sure you dive in here... there are some fantastic details to learn! Security in SharePoint Apps - Part 1 - Overview Security in SharePoint Apps - Part 2 - Understanding Security Contexts for Requests Security in SharePoint Apps - Part 3 - Setting up Low Trust on Premises Security in SharePoint Apps - Part 4 - Working with Context Tokens Security in SharePoint Apps - Part 5 - Permission On-Demand Apps Security in SharePoint Apps - Part 6 - App Only Permission Apps and Tenant Level Permissions Security in SharePoint Apps - Part 7 - High Trust Apps Security in SharePoint Apps - Part 8 - Writing Apps for SAML Sites In addition, check out these two awesome posts on Kirk Evans' blog. The first one is from a while ago where Kirk explains the details of how everything works with the context token (yes, some is duplicated in the posts above, but it's good to see different explanations). The second post shows how you can build a...

Recently I saw that SharePoint & Microsoft notable Steve Peshka published a series of blog posts on the details of security in SharePoint apps. If you are working with SharePoint apps, make sure you dive in here… there are some fantastic details to learn!

In addition, check out these two awesome posts on Kirk Evans’ blog . The first one is from a while ago where Kirk explains the details of how everything works with the context token (yes, some is duplicated in the posts above, but it’s good to see different explanations). The second post shows how you can build a Fiddler extension to explore the authentication payload in the request headers.

Andrew Connell
Developer & Chief Course Artisan, Voitanos LLC. | Microsoft MVP
Written by Andrew Connell

Andrew Connell is a web developer with a focus on Microsoft Azure & Microsoft 365. He’s received Microsoft’s MVP award every year since 2005 and has helped thousands of developers through the various courses he’s authored & taught. Andrew’s the founder of Voitanos and is dedicated to delivering industry-leading on-demand video training to professional developers. He lives with his wife & two kids in Florida.