does item level security trimming work for FAST search for SharePoint 2010 with classic authentication? RRS feed

  • Question

  • This article describes how to enable queries from Microsoft SharePoint Server 2010 on the FAST Search Server 2010 for SharePoint. You must configure claims authentication, which means that you export a certificate from SharePoint Server 2010 and import it on all query servers in FAST Search Server 2010 for SharePoint.


    does this mean that I need to convert the sharepoint web application that host fast search center to claim based authentication to enable item level security trimming? 

    or I can still use the sharepoint web application with classic authentication, when user submit search query, it will call sharepoint STS internally to convert windows token to claim and send the claim to FAST search?  

    Wednesday, May 31, 2017 5:59 AM

All replies

  • For example, a user who belongs to sites that are configured to use a mix of authentication modes may receive search results that include results from all the sites that the user has access to, regardless of the authentication mode that is configured for Web applications. In this scenario, the user is not interpreted as multiple user accounts. This is because services and service applications use claims identities for inter-farm communication regardless of the mode that is selected for Web applications and users.


    Claims certificate: to enable queries from the SharePoint Server search application to FAST Search Server 2010 for SharePoint


    Since the claims certificate is only used between search service application and FAST search, and service applications always use claims identity for inter-farm communication, I can infer that I don't need to convert search center web application to claim mode

    Wednesday, May 31, 2017 6:23 AM