Sign in
Home
Library
Wiki
Learn
Gallery
Downloads
Support
Forums
Blogs
Resources For IT Professionals
United States (English)
Россия (Pусский)
中国(简体中文)
Brasil (Português)
Get this Tag RSS feed
Translate this page
Powered by
Microsoft® Translator
Popular Tags
Active Directory
AD
AD DS
AD FS
adfs
ASP.NET
azure
BizTalk
BizTalk Server
BizTalk Server 2010
C#
Candidate for deletion
certification
cloud
core docs
de-DE
EAA
Ed Price
Ed's Stub Pages
en-US
ESA
es-ES
Excel
Exchange
Exchange 2010
Exchange Server 2010
fa-IR
Fernando Lugao Veltem
FIM
FIM 2010
forefront
forums
fr-FR
Gokan Ozcifci
has code
has comment
has comments
has image
has Images
has Other Languages
has See Also
Has Table
Has TOC
Horizon_Net
How To
Hyper-V
id-ID
IIS
Italian Wiki Articles
it-IT
ja-JP
Jordano Mazzoni
Link Collection
Luciano Lima
Luigi Bruno
Lync Server 2010
MCTS
MIISILMFIM MACAULAY
Multi Language Wiki Articles
needs work
operations manager
Portal
Português Brasil
PowerShell
Private Cloud
pt-BR
security
SharePoint
SharePoint 2010
SharePoint 2013
Small Basic
solucionando problemas
spam
SQL Server
SQL Server 2012
stub
System Center
System Center 2012
TechNet Wiki Featured Article
tonyso
Translated into Japanese
troubleshooting
tr-TR
UAG
vídeo
Video
Virtualization
VMM
Wiki
Windows
Windows 7
Windows 8
Windows Azure
Windows Server
Windows Server 2003
Windows Server 2008
Windows Server 2008 R2
Windows Server 2012
yottun8
اکتیو دایرکتوری
Browse by Tags
>
TechNet Articles
>
All Tags
>
AD FS
Tagged Content List
Wiki Page:
AD FS 2.0: Selectively send group membership(s) as a claim
JaredPoeppelman
You can send group membership as claims by using the built in templates Create a new rule, choose “Send LDAP Attributes as Claims” Choose Active Directory as the Attribute Store, and choose the LDAP Attribute “Token-Groups – Unqualified Names” and the claim type as “Group” This will send...
on
22 May 2013
Wiki Page:
AD FS 2.0: How to Set the Primary Federation Server in a WID Farm
Carsten Siemens
Summary When you deploy an Active Directory Federation Services ( AD FS) 2.0 Federation Server farm, you have the option of choosing Windows Internal Database (WID) or SQL to store the configuration information. When you select WID, which is the default in the Initial Configuration Wizard GUI...
on
15 May 2013
Wiki Page:
AD FS: How to Invoke a WS-Federation Sign-Out
Carsten Siemens
Summary In Active Directory Federation Services (AD FS), we support a WS-Federation passive sign-out request to the relying party security token service ( RP-STS ) which invokes a sign-out from each web application accessed during the current browser session. The identity provider security token...
on
15 May 2013
Wiki Page:
Active Directory Federation Services (AD FS) Overview
Carsten Siemens
Active Directory Federation Services (AD FS) makes it possible for local users and federated users to use claims-based single sign-on (SSO) to Web sites and services. You can use AD FS to enable your organization to collaborate securely across Active Directory domains with other external organizations...
on
15 May 2013
Wiki Page:
AD FS 2.0: Migrate Your AD FS Configuration Database to SQL Server
Jorge de Almeida Pinto [MVP-DS]
The AD FS configuration database stores all the configuration data that represents a single instance of AD FS 2.0 (also known as the Federation Service). You can store this configuration data in either a Microsoft SQL Server® database or using the Windows Internal Database. The Windows Internal Database...
on
15 May 2013
Wiki Page:
AD FS 2.0: How to Replace the SSL, Service Communications, Token-Signing, and Token-Decrypting Certificates
Carsten Siemens
Table of Contents Replacing the SSL and Service Communications certificate Replacing the Token-Signing certificate Replacing the Token-Decrypting certificate More Information Were you looking for AD FS 1.x information regarding certificate replacement? Have you recently enabled AutoCertificateRollover...
on
15 May 2013
Wiki Page:
ASP.NET MVC Web Application With Federated Authentication
Carsten Siemens
Back to Windows Azure Active Directory Solutions For Developers Table of Contents Scenario Solution Approach Analysis How-To's Code Samples Resources See Also Other Languages Deutsch (de-DE) Scenario In this scenario you are developing ASP.NET MVC web application and you need to implement...
on
13 May 2013
Wiki Page:
Microsoft Sharepoint With Claims-Based Authentication Mode
Richard Mueller
See SharePoint 2010: Claims-Based Authentication .
on
13 May 2013
Wiki Page:
Windows Azure Application With LiveID, Google, Facebook, Yahoo!, and OpenID - PaaS
M LaFantano - MSFT
Back to Windows Azure Active Directory Solutions For Developers Table of Contents Scenario Solution Approach Analysis How To's Code Samples Resources Scenario In this scenario, you are developing a web application to be deployed to Windows Azure. It should serve Internet users whose identities...
on
1 May 2013
Wiki Page:
Windows Azure Application With Active Directory - PaaS
Carsten Siemens
Back to Windows Azure Active Directory Solutions For Developers Table of Contents Scenario Solution Approach Analysis How To's Code Samples Resources Scenario In this scenario you are developing a web application to be deployed to Windows Azure. It should serve corporate users whose identities...
on
29 Apr 2013
Wiki Page:
WCF (SOAP) Service With Federated Authentication, Identities In Active Directory
Carsten Siemens
Back to Windows Azure Active Directory Solutions For Developers Table of Contents Scenario Solution Approach Analysis How-To's Code Samples Resources Scenario In this scenario you have WCF service that exposes SOAP endpoint. It needs to authenticate requests based on issued SAML tokens...
on
29 Apr 2013
Wiki Page:
AD FS 2.0: "ID4037: The key needed to verify the signature could not be resolved from the following security key identifier"
Fernando Lugão Veltem
Symptoms During a federation passive sign-in request using SAML 2.0 protocol , the request fails and the user lands on the AD FS 2.0 error page The Verbose AD FS 2.0/Admin log shows Error event 303 : Log Name: AD FS 2.0/Admin Source: AD FS 2.0 Date: 9/17/2010 10:54:19 AM Event...
on
25 Apr 2013
Wiki Page:
AD FS 2.0 Content Map
David Worthington
Subscribe to RSS Feed Share on Facebook Send link to a friend This Active Directory Federation Services (AD FS 2.0) wiki page is intended to act as a content map for all members of the AD FS community . Members of the AD FS product team will occasionally monitor this article...
on
9 Apr 2013
Wiki Page:
AD FS 2.0: How to Utilize a Single Relying Party Trust for Multiple Web Applications that Share the Same Identifier
Richard Mueller
A common request we receive from customers is: "I have multiple environments for the same web application. For example, development (DEV), staging (STAGE), and production (PROD). I want to create one Relying Party (RP) Trust in AD FS 2.0 which utilizes a single set of issuance claim rules,...
on
5 Apr 2013
Wiki Page:
Understanding Claim Rule Language in AD FS 2.0
Richard Mueller
Table of Contents Introduction Understanding Claim Sets General Syntax of the Claim Rule Language Condition Statements Issuance Statements Multiple Conditions Combining Values Aggregate Functions Using Regular Expressions Querying Attribute Stores SQL Attribute Stores LDAP Attribute Stores Links to Additional...
on
4 Apr 2013
Wiki Page:
AD FS 2.0: Guidance for Selecting and Utilizing a Federation Service Name
Matth CH
Prior to deploying AD FS 2.0, it is essential that a Federation Service Name is selected, and there are some important items to consider before selecting the Federation Service Name. Items for Consideration 1. The Federation Service Name must never equal any machine name in the Active...
on
3 Apr 2013
Wiki Page:
AD FS 2.x: When a User is Not Authorized Access to a Relying Party, Redirect the User to a Specific Location
Adam Conkle - MSFT
Overview Consider the following scenario: You have deployed AD FS 2.x, and you wish to provide granular access to specific relying parties by utilizing Issuance Authorization Rules on each Relying Party Trust As an example, you have Contoso SharePoint as a relying party, and you wish to only...
on
27 Mar 2013
Wiki Page:
Quick Start Guide for Integrating a Single Forest On-Premises Active Directory with Windows Azure AD
Kurt L Hudson MSFT
Windows Azure Active Directory (Windows Azure AD) is the fundamental authentication service for Microsoft Online Services such as Office 365 and Windows Intune. It supports both cloud authentication and single sign-on with on-premises Active Directory through Active Directory Federation Services (AD...
on
15 Mar 2013
Wiki Page:
Office 365 - Identity Federation: Email Received Stating: "An important certificate used to sign communications between your on-premises single sign-on deployment and the federated domain(s) that you’ve designated in Office 365, will expire within the
Adam Conkle - MSFT
Overview These proactive emails are geared towards ensuring that you are prepared for certificate replacement, if needed. By default, AD FS 2.0 utilizes self-signed certificates for token-signing and token-decrypting. This feature is called AutoCertificateRollover , and you can ensure that...
on
4 Mar 2013
Wiki Page:
Calling REST Service On Behalf Of End User - OAuth 2.0 Delegation
Richard Mueller
Back to Windows Azure Active Directory Solutions For Developers Table of Contents Scenario Solution Approach Analysis How To's Code Samples Resources Scenario In this scenario you are developing an application where the end user consumes a web site which needs to access services that require...
on
1 Mar 2013
Wiki Page:
AD FS 2.0: Dynamic Claim Types
Joji Oshima
Dynamic Claim Types There is data stored about a user in a SQL database ( or other attribute store ). The data stored about the user in the database needs to be a part of the claim type and not the value of the claim. For example, properties “ Redmond ” and “ Building3 ” stored in a database...
on
28 Feb 2013
Wiki Page:
AD FS 2.0: Using RegEx in the Claims Rule Language
Joji Oshima
An Introduction to Regex The use of RegEx allows us to search or manipulate data in many ways in order to get a desired result. Without RegEx, when we do comparisons or replacements we must look for an exact match. Most of the time this is sufficient but what if you need to search or replace based...
on
28 Feb 2013
Wiki Page:
AD FS 2.0: Asserting the NameID Claim Type with Additional Properties
Adam Conkle - MSFT
Overview The SAML NameID claim type is a special claim type used to identify the principal of the session, and this claim type can be asserted containing only the value data, or you can also choose to assert additional NameID properties. Below, you will find a Claim Rule Language sample, which...
on
27 Feb 2013
Wiki Page:
AD FS 2.0: Understanding AutoCertificateRollover Threshold Properties
Adam Conkle - MSFT
Item Sample Value Description of Item Effect AutoCertificateRollover True Specifies whether the system will manage certificates for the administrator and generate new certificates before the expiration date of current certificates. ...
on
27 Feb 2013
Wiki Page:
Current ADFS Resources
Yagmoth555
Table of content Short URLS Onlne Community RSS Feeds Product Pages Connect Getting Started Technical Library Developer Reference Code & Codeplex Downloads Announcements Blogs Books Courses & Training Hotfixes Magazines Podcasts Powershell...
on
25 Feb 2013
Page 1 of 5 (103 items)
1
2
3
4
5
Can't find it? Write it!
Post an Article