Claims-based identity
Each organization is part of an ecosystem that includes customers, suppliers, partners, and more. They need to collaborate with other companies. After successfully implementing local networks and Active Directory (and other equivalent tools and products) to centralize identities, access, and security, the need arose for organizations to connect with the networks of other organizations.
Local networks and intranets were not suitable for these needs. Organizations could have well-implemented and managed intranets, but the domain controllers were unable to connect to each other. Besides that, a new trend appeared where applications were hosted off-premises by hosting providers and, later, cloud providers. This further exposed the limits of an approach based entirely on local networks.
In scenarios where apps were hosted at different places, such as external data centers and cloud providers, business apps still needed to have access to the full identity of...