programming4us
 
Applications Server
 

Microsoft Sharepoint 2013 : Federated Authentication (part 2) - Active Directory Federated Services - Preparing for ADFS Installation

12/23/2014 8:16:52 PM

Preparing for ADFS Installation

Before we install ADFS, it is important that we complete a series of pre-installation steps, to establish a new DNS name and certificate with which we shall access ADFS. The following steps assume you completed the steps in the earlier section “Install Certificate Authority.”

  1. Create a new ADFS user account in the domain; do not add the account to any groups. ADFS will assign privileges (Figure 4).

    9781430249412_Fig08-13.jpg

    Figure 4. Create an account for ADFS

  2. Run the Microsoft Management Console (MMC.exe).
  3. Add the following snap-ins:
    • a.  Certificate Templates
    • b.  Certificates (Local Computer)
    • c.  Certification Authority (Local Computer)
    • d.  ADFS 2.0
  4. Expand the Certificate Templates node.
  5. Right-click the Web Server template and select the option to duplicate the template (Figure 5).

    9781430249412_Fig08-14.jpg

    Figure 5. Duplicate the Web Server certificate template

  6. Select the version of template for Windows Server 2008 Enterprise.
  7. Give the template a name and display name of ADFS.
  8. Click the security tab to assign the new ADFS service account, Read and Enroll permissions (Figure 6).

    9781430249412_Fig08-15.jpg

    Figure 6. Read and Enroll permissions for the ADFS service account

  9. Assign authenticated users the Read and Enroll permissions (I had to do this to allow me to create a new certificate later).
  10. Click the Request Handling tab and then check the option to allow the private key to be exported.
  11. Click the OK button on the dialog.
  12. Expand the Certification Authority node.
  13. Expand the Server Name node.
  14. Right-click Certificate Templates.
  15. Select Certificate Template to Issue (Figure 7).

    9781430249412_Fig08-16.jpg

    Figure 7. Create new certificate template for ADFS

  16. Choose the ADFS certificate template (Figure 8), then click the OK button.

    9781430249412_Fig08-17.jpg

    Figure 8. ADFS Certificate Template for new ADFS certificate

  17. Create a new CNAME in your DNS, which resolves the IP of the ADFS server—I use the Windows DNS services on my AD server (Figure 9).

    9781430249412_Fig08-18.jpg

    Figure 9. New CNAME in DNS

  18. Expand the Certificates node in the MMC.
  19. Expand the Personal node, and then expand Certificates.
  20. Right-click the Certificates node and then select the option to request a new certificate, within the All Tasks menu (Figure 10. Request a new certificate for ADFS).

    9781430249412_Fig08-19.jpg

    Figure 10. Request a new certificate for ADFS

  21. Click the Next button on the certificate enrollment dialog.
  22. Choose the Active Directory Enrollment Policy (Figure 11) and click the Next button.

    9781430249412_Fig08-20.jpg

    Figure 11. Active Directory Enrollment Policy

  23. Check the ADFS certificate, shown in Figure 12.

    9781430249412_Fig08-21.jpg

    Figure 12. Select ADFS certificate template

  24. Click the link to configure more settings.
  25. Change the Type drop-down to Common Name in the Subject name section.
  26. Enter the DNS name in the Value field of the Subject name section.
  27. Click the Add button; my dialog now looks like that in Figure 13.

    9781430249412_Fig08-22.jpg

    Figure 13. Configuration settings for ADFS certificate

  28. Click OK to close the configuration settings dialog, then the Enroll button on the enrollment dialog.
  29. Click the Finish button once the enrollment process completes.
  30. Right-click the new certificate you just created.
  31. Select All Tasks, then click the option to manage private keys.
  32. Grant the ADFS service account Full Control and Read permissions.

With the pre-installation configuration steps complete, you are now ready to begin the installation of ADFS.

 
Others
 
- Microsoft Sharepoint 2013 : Federated Authentication (part 1) - Active Directory Federated Services - Install Certificate Authority
- Microsoft Sharepoint 2013 Authentication (part 3) - Configuring a Claims Web Application - Configuring SSL for SharePoint
- Microsoft Sharepoint 2013 Authentication (part 2) - Configuring a Claims Web Application - Creating a New CBA Application, Configuring an Existing CBA Web Application
- Microsoft Sharepoint 2013 Authentication (part 1) - Legacy Approach—Classic Mode Authentication
- Microsoft Sharepoint 2013 : Claims-Based and Federated Authentication - Digital Identity
- Exchange Server 2013 Management and Maintenance Practices (part 7) - Weekly Maintenance, Monthly Maintenance, Quarterly Maintenance
- Exchange Server 2013 Management and Maintenance Practices (part 6) - Prioritizing and Scheduling Maintenance Best Practices
- Exchange Server 2013 Management and Maintenance Practices (part 5) - Message Tracking
- Exchange Server 2013 Management and Maintenance Practices (part 4) - SMTP Logging
- Exchange Server 2013 Management and Maintenance Practices (part 3) - Auditing the Environment
 
 
REVIEW
 
- First look: Apple Watch

- 10 Amazing Tools You Should Be Using with Dropbox

- Sigma 24mm f/1.4 DG HSM Art

- Canon EF11-24mm f/4L USM

- Creative Sound Blaster Roar 2

- Alienware 17 - Dell's Alienware laptops

- Smartwatch : Wellograph

- Xiaomi Redmi 2
 
VIDEO TUTORIAL
 
- How to create your first Swimlane Diagram or Cross-Functional Flowchart Diagram by using Microsoft Visio 2010 (Part 1)

- How to create your first Swimlane Diagram or Cross-Functional Flowchart Diagram by using Microsoft Visio 2010 (Part 2)

- How to create your first Swimlane Diagram or Cross-Functional Flowchart Diagram by using Microsoft Visio 2010 (Part 3)
 
Popular tags
 
Video Tutorail Microsoft Access Microsoft Excel Microsoft OneNote Microsoft PowerPoint Microsoft Project Microsoft Visio Microsoft Word Active Directory Biztalk Exchange Server Microsoft LynC Server Microsoft Dynamic Sharepoint Sql Server Windows Server 2008 Windows Server 2012 Windows 7 Windows 8 Adobe Indesign Adobe Flash Professional Dreamweaver Adobe Illustrator Adobe After Effects Adobe Photoshop Adobe Fireworks Adobe Flash Catalyst Corel Painter X CorelDRAW X5 CorelDraw 10 QuarkXPress 8 windows Phone 7 windows Phone 8 BlackBerry Android Ipad Iphone iOS
 
Top 10
 
- Setup Free Media Server To Stream Videos To DLNA Compatible TV, Xbox 360 & PS3 (Play Station 3)
- How To Install Android Market & Google Apps On Kindle Fire
- How To Make Ubuntu Look Like Windows 7
- How To Add A New Account in MS Outlook 2013
- Get Android & Mac OS X Style Gadgets For Windows 7 & Windows 8 With XWidget
- How To Activate Microsoft Office 2013
- How To Install Actual Facebook App On Kindle Fire
- How To Create, View And Edit Microsoft Office Files On Kindle Fire
- Download Attractive Business PowerPoint Templates For Free At SlideHunter
- How To Use And Enable Hibernate & Sleep Mode In Windows 8