Hello,

If you're looking to use Azure Application Proxy to authenticate to
VisualSVN Server with Azure AD credentials, there is another option you
might find helpful: *Microsoft Entra Kerberos* authentication. This option
doesn't depend on Azure Application Proxy.

This method should allow Azure AD (Entra ID) users to automatically
authenticate with VisualSVN Server using a Kerberos Ticket-Granting Ticket
(TGT) they get during logon.

Here's a video that explains how to set it up:

Intune Training - S04E03 - Configuring Hybrid Cloud Trust - (I.T)
<https://www.youtube.com/watch?v=q0Y4g0dcOY4>

And here are some MS documentation links for more details:

   - Enable Microsoft Entra Kerberos authentication for hybrid identities
   on Azure Files
   
<https://learn.microsoft.com/en-us/azure/storage/files/storage-files-identity-auth-hybrid-identities-enable>
   - Enable passwordless security key sign-in to on-premises resources by
   using Microsoft Entra ID
   
<https://learn.microsoft.com/en-us/entra/identity/authentication/howto-authentication-passwordless-security-key-on-premises>
   - How SSO to on-premises resources works on Microsoft Entra joined
   devices
   
<https://learn.microsoft.com/en-us/entra/identity/devices/device-sso-to-on-premises-resources>

AFAIK, this Entra Kerberos technology is still quite new. Right now, it
only works for hybrid identities (synchronized with Microsoft Entra Cloud
Sync), although support for cloud-only identities seems to be on the roadmap
<https://techcommunity.microsoft.com/t5/itops-talk-blog/deep-dive-how-azure-ad-kerberos-works/ba-p/3070889>
.

Hope this helps!

On Wed, 20 Mar 2024 at 10:11, Jon Martin via TortoiseSVN-dev <
tortoisesvn-dev@googlegroups.com> wrote:

> We have run into a problem trying to implement SVN on our secure cloud
> platform.  Is it possible to pay someone to add modern authentication to
> TortoiseSVN?
>
>  Specifically we wish to use TortoiseSVN client to access VisualSVN Server
> via Microsoft Azure Application Proxy.  This requires TSVN to be conversant
> in "OAuth 2.0 with OpenID Connect (OIDC)".  See
> https://auth0.com/docs/authenticate/protocols/openid-connect-protocol
>
> You can see the error we get by using TortoiseSVN to open this test
> repository https://visualsvn.parabilis-space.com/svn/test/
> Error: Repository moved temporarily to ...Oath2/authorize...
>
> Thank You,
>
> --Jon
>
> --
> You received this message because you are subscribed to the Google Groups
> "TortoiseSVN-dev" group.
> To unsubscribe from this group and stop receiving emails from it, send an
> email to tortoisesvn-dev+unsubscr...@googlegroups.com.
> To view this discussion on the web visit
> https://groups.google.com/d/msgid/tortoisesvn-dev/c1e45328-6ecf-45bc-8065-139668619d31n%40googlegroups.com
> <https://groups.google.com/d/msgid/tortoisesvn-dev/c1e45328-6ecf-45bc-8065-139668619d31n%40googlegroups.com?utm_medium=email&utm_source=footer>
> .
>


-- 
With best regards,
Pavel Lyalyakin
VisualSVN Team

-- 
You received this message because you are subscribed to the Google Groups 
"TortoiseSVN-dev" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to tortoisesvn-dev+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/tortoisesvn-dev/CAEyhmwY16s2mmB2KL0n5XHvsmoNHEQHkiykjgw-%2BfuF%3DEaE--w%40mail.gmail.com.

Reply via email to