<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Token based authentication for entire WAB app? in ArcGIS JavaScript Maps SDK Questions</title>
    <link>https://community.esri.com/t5/arcgis-javascript-maps-sdk-questions/token-based-authentication-for-entire-wab-app/m-p/178966#M16594</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Solution can be found on similar post I have &lt;A _jive_internal="true" href="https://community.esri.com/thread/227974-security-model-approaches"&gt;HERE&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 15 Feb 2019 16:26:57 GMT</pubDate>
    <dc:creator>JamesCrandall</dc:creator>
    <dc:date>2019-02-15T16:26:57Z</dc:date>
    <item>
      <title>Token based authentication for entire WAB app?</title>
      <link>https://community.esri.com/t5/arcgis-javascript-maps-sdk-questions/token-based-authentication-for-entire-wab-app/m-p/178965#M16593</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To clarify, currently we have:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Non-ESRI web application has its own authentication process for users.&lt;/LI&gt;&lt;LI&gt;A public WAB app (Developer edition) consumes secured feature service via proxy.&lt;/LI&gt;&lt;LI&gt;The non-ESRI web application opens the WAB app without authentication challenge.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What is needed/desired:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Secure the WAB app and feature services.&lt;/LI&gt;&lt;LI&gt;Un-share/secure the WAB app.&lt;/LI&gt;&lt;LI&gt;Authenticate WAB app and services&amp;nbsp;from the non-ESRI application (without challenge).&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm attempting to piece together the correct items for securing both a Web AppBuilder App (Developer version) hosted on our domain, and the secured feature services it consumes (currently accessed via proxy page).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've read thru much of the documentation on this and still unclear how to actually secure an entire&amp;nbsp;WAB application (public)&amp;nbsp;that doesn't challenge the user for credentials.&amp;nbsp; In our instance,&amp;nbsp;we want another secured&amp;nbsp;web application (non ESRI) that opens/launches the WAB and I need to find a way for that application to generate a token (or some security model)&amp;nbsp;and provide it to the WAB to then be opened.&amp;nbsp; Any other type of access should be prohibited.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any insight.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 07 Jan 2019 17:24:13 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-javascript-maps-sdk-questions/token-based-authentication-for-entire-wab-app/m-p/178965#M16593</guid>
      <dc:creator>JamesCrandall</dc:creator>
      <dc:date>2019-01-07T17:24:13Z</dc:date>
    </item>
    <item>
      <title>Re: Token based authentication for entire WAB app?</title>
      <link>https://community.esri.com/t5/arcgis-javascript-maps-sdk-questions/token-based-authentication-for-entire-wab-app/m-p/178966#M16594</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Solution can be found on similar post I have &lt;A _jive_internal="true" href="https://community.esri.com/thread/227974-security-model-approaches"&gt;HERE&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Feb 2019 16:26:57 GMT</pubDate>
      <guid>https://community.esri.com/t5/arcgis-javascript-maps-sdk-questions/token-based-authentication-for-entire-wab-app/m-p/178966#M16594</guid>
      <dc:creator>JamesCrandall</dc:creator>
      <dc:date>2019-02-15T16:26:57Z</dc:date>
    </item>
  </channel>
</rss>

