Active Authentication Of Office 365 And Sharepoint Online

This is a responsible method for creating cookie container more on this one later. After having the cookies the next step would be to create a Cookie Container object in which cookies can be added. Then the cookie container should be added to the request done by Client object model and for this an even called Executing web Request can be used. STS returns the security token if authentication is successful and token is then sent to SharePoint. It should also be noted that a User Agent of the request to a new value. While it works fine on P-subscriptions but doesn’t harm if added. The first step would be to request a token from STS which is located at login.microsoftonline in Office 365. Adding cookies and user agent would be just fine.

SharePoint Online active AuthN basics

MsOnlineClaimsHelperclaimsHelper = new MsOnlineClaimsHelper(url, username, password);

You may use the helper class called MsOnlineClaimsHelper. This is not required if you are using SharePoint Online or using the web browser because in this case you are either already authenticated and it is the web browser that handles all the authentication with the use of active authentication.

using (ClientContext context = new ClientContext(url))

Let us get to the core of this article. After the validation the token will return two cookies which must also be passed with all requests to SharePoint.

It is also very important to be aware of which Office 365 subscription that you are targeting. With the use of SAML 1.1 protocol, the password and username would be passed on for the requested token from STS. If the user agent is not set then a 403 forbidden error is thrown by SharePoint Online in the case of an E-subscription. Next step would be to pass along the cookies for each request. When using manually the WebRequest objects then the same procedure is used. How would the code look? There are some helper class originated from Steve “SharePoint Claims” Peschka.

Show me the code to get the cookies!

How to use Client Object Model with Office 365 from a remote client

Let us see and understand how the code works before going deep into the actual code. For accessing sharepoint objects programmatically you need to active authentication by using client object model, web services or WebDAV from outside of Office 365.

This article gives you the details of performing active authentication to SharePoint online in Office 365.

context.ExecuteQuery();. Here is a simple example for it:


HTTP is used by P-subscriptions while communicating and HTTPS must be used by E-subscriptions.

context.ExecutingWebRequest += claimsHelper.clientContext_ExecutingWebRequest;

Console.WriteLine(“Name of the web is: ” + context.Web.Title);

To invoke methods on SharePoint online with the use of Client Object Model (CSOM), web services or WebDAV we need to authenticate first

