Building Secure Applications

—Gregory Ponto and Tom Brenneman

This session will begin with a discussion of the common security deployments (internal vs. external). We will discuss the ArcGIS Server security model and the use case scenarios for choosing a user and role storage. Next we will discuss setup and configuration of the token service and implementing SSL with ArcGIS Server. Then we will focus on accessing tokens from Web and mobile applications. Topics will include embedding tokens in the application, dynamically requesting tokens, and the proper use of a proxy page for Web applications. Throughout the session we'll be discussing tips and tricks for troubleshooting and best practices related to ArcGIS Server security.