The reason for this process is because every one can claim a certain identity, but how do businesses validate millions of identity claims each day?

Such information needed for identity validation is not only unique to the person claiming ownership of the identity but is also defined differently by each business.

I have also read that WEP needs to be switched to WPA.

This can be entered as 5 or 13 as I characters or 10 or 26 hexadecimal characters.

I believe Custom Request Validator is good only if you need to control user access to the app at identity Server level. kkkkkk It seems you already get authenticated via identity server.

But most of the time it is the app that decides whom to let in. How you authorize users to your application depend on application type you are developing. I can validate if an user can access my Asp, Net Mvc app. To restrict access based on users and roles you need to look into 'authorize attribute'.

Q&A with Merritt Maxim of Forrester Anyone who knows me, knows that I’m extremely passionate about opportunities involving Internet of Things (Io T) – or should I call it Identity of Things – and what it will bring to end-consumers and businesses alike!