locked
Windows server 2016 - web application proxy issue (IdpInitiatedSignon.aspx) not opening RRS feed

Answers

  • you cannot access the endpoint with the FQDN of your proxy server. The FQDN has to be the same for the proxies and on the ADFS servers. The clients will know which one to use thanks to a split brain DNS. So when client are connected internally they will resolve adfs.domain.com to the local IP address of the ADFS server (or the VIP of the internal load balancer if you are using any). And when internet clients are using a public DNS server and try to resolve adfs.domain.com they will end up on the public IP address of the proxy servers (or again the VIP of a load balancer dedicated for the proxies - aka WAP servers).

    Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.

    • Marked as answer by B_C_R Tuesday, November 8, 2016 6:08 AM
    Monday, November 7, 2016 3:51 PM

All replies

  • you cannot access the endpoint with the FQDN of your proxy server. The FQDN has to be the same for the proxies and on the ADFS servers. The clients will know which one to use thanks to a split brain DNS. So when client are connected internally they will resolve adfs.domain.com to the local IP address of the ADFS server (or the VIP of the internal load balancer if you are using any). And when internet clients are using a public DNS server and try to resolve adfs.domain.com they will end up on the public IP address of the proxy servers (or again the VIP of a load balancer dedicated for the proxies - aka WAP servers).

    Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.

    • Marked as answer by B_C_R Tuesday, November 8, 2016 6:08 AM
    Monday, November 7, 2016 3:51 PM
  • Pierre thank you very much for clarification.
    After we have reconfigured as you have suggested, it went ok!

    bostjanc

    Tuesday, November 8, 2016 6:08 AM