locked
ADFS Proxy Configuration Errors RRS feed

  • Question

  • Hi,

    We have setup 2 ADFS servers with WNLB and 2 Web Application Proxy Servers with WNLB. The Web Application Proxy Servers are in DMZ.

    Unable to configure ADFS Proxy and found following errors at Web Application Proxy Servers.

    Please advise.

    -------------------------------------------------------------------------------------------------------------------------------------------------------

    Log Name:      AD FS/Admin
    Source:        AD FS
    Date:          1/10/2016 10:01:02 AM
    Event ID:      393
    Task Category: None
    Level:         Error
    Keywords:      AD FS
    User:          WAP1\Administrator
    Computer:      WAP1
    Description:
    The federation server proxy could not establish a trust with the Federation Service.

    Additional Data
    Exception details:
    The remote server returned an error: (401) Unauthorized.

    User Action
    Ensure that the credentials being used to establish a trust between the federation server proxy and the Federation Service are valid and that the Federation Service can be reached.
    Event Xml:
    <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
      <System>
        <Provider Name="AD FS" Guid="{2FFB687A-1571-4ACE-8550-47AB5CCAE2BC}" />
        <EventID>393</EventID>
        <Version>0</Version>
        <Level>2</Level>
        <Task>0</Task>
        <Opcode>0</Opcode>
        <Keywords>0x8000000000000001</Keywords>
        <TimeCreated SystemTime="2016-01-10T07:01:02.100722600Z" />
        <EventRecordID>44</EventRecordID>
        <Correlation ActivityID="{46004C0F-4B6B-0002-FB4C-00466B4BD101}" />
        <Execution ProcessID="2000" ThreadID="3284" />
        <Channel>AD FS/Admin</Channel>
        <Computer>WAP1</Computer>
        <Security UserID="S-1-5-21-3213969361-2520318933-4242169767-500" />
      </System>
      <UserData>
        <Event xmlns="http://schemas.microsoft.com/ActiveDirectoryFederationServices/2.0/Events">
          <EventData>
            <Data>The remote server returned an error: (401) Unauthorized.</Data>
          </EventData>
        </Event>
      </UserData>
    </Event>
    ---------------------------
    Log Name:      AD FS/Admin
    Source:        AD FS
    Date:          1/9/2016 12:32:58 PM
    Event ID:      393
    Task Category: None
    Level:         Error
    Keywords:      AD FS
    User:          WAP1\Administrator
    Computer:      WAP1
    Description:
    The federation server proxy could not establish a trust with the Federation Service.

    Additional Data
    Exception details:
    The remote server returned an error: (503) Server Unavailable.

    User Action
    Ensure that the credentials being used to establish a trust between the federation server proxy and the Federation Service are valid and that the Federation Service can be reached.
    Event Xml:
    <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
      <System>
        <Provider Name="AD FS" Guid="{2FFB687A-1571-4ACE-8550-47AB5CCAE2BC}" />
        <EventID>393</EventID>
        <Version>0</Version>
        <Level>2</Level>
        <Task>0</Task>
        <Opcode>0</Opcode>
        <Keywords>0x8000000000000001</Keywords>
        <TimeCreated SystemTime="2016-01-09T09:32:58.816528500Z" />
        <EventRecordID>34</EventRecordID>
        <Correlation ActivityID="{A6460DB4-4ABB-000D-F90D-46A6BB4AD101}" />
        <Execution ProcessID="1920" ThreadID="2152" />
        <Channel>AD FS/Admin</Channel>
        <Computer>WAP1</Computer>
        <Security UserID="S-1-5-21-3213969361-2520318933-4242169767-500" />
      </System>
      <UserData>
        <Event xmlns="http://schemas.microsoft.com/ActiveDirectoryFederationServices/2.0/Events">
          <EventData>
            <Data>The remote server returned an error: (503) Server Unavailable.</Data>
          </EventData>
        </Event>
      </UserData>
    </Event>
    ------------------------------------------------
    Log Name:      AD FS/Admin
    Source:        AD FS
    Date:          1/8/2016 11:09:34 AM
    Event ID:      393
    Task Category: None
    Level:         Error
    Keywords:      AD FS
    User:          WAP1\Administrator
    Computer:      WAP1
    Description:
    The federation server proxy could not establish a trust with the Federation Service.

    Additional Data
    Exception details:
    The underlying connection was closed: An unexpected error occurred on a send.

    User Action
    Ensure that the credentials being used to establish a trust between the federation server proxy and the Federation Service are valid and that the Federation Service can be reached.
    Event Xml:
    <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
      <System>
        <Provider Name="AD FS" Guid="{2FFB687A-1571-4ACE-8550-47AB5CCAE2BC}" />
        <EventID>393</EventID>
        <Version>0</Version>
        <Level>2</Level>
        <Task>0</Task>
        <Opcode>0</Opcode>
        <Keywords>0x8000000000000001</Keywords>
        <TimeCreated SystemTime="2016-01-08T08:09:34.008269700Z" />
        <EventRecordID>17</EventRecordID>
        <Correlation ActivityID="{5DFA43BE-49EA-000C-8244-FA5DEA49D101}" />
        <Execution ProcessID="2160" ThreadID="3716" />
        <Channel>AD FS/Admin</Channel>
        <Computer>WAP1</Computer>
        <Security UserID="S-1-5-21-3213969361-2520318933-4242169767-500" />
      </System>
      <UserData>
        <Event xmlns="http://schemas.microsoft.com/ActiveDirectoryFederationServices/2.0/Events">
          <EventData>
            <Data>The underlying connection was closed: An unexpected error occurred on a send.</Data>
          </EventData>
        </Event>
      </UserData>
    </Event>
    -------------------------------------------------------------------------------------------
    Log Name:      AD FS/Admin
    Source:        AD FS
    Date:          1/8/2016 9:34:01 AM
    Event ID:      393
    Task Category: None
    Level:         Error
    Keywords:      AD FS
    User:          WAP1\Administrator
    Computer:      WAP1
    Description:
    The federation server proxy could not establish a trust with the Federation Service.

    Additional Data
    Exception details:
    The remote server returned an error: (400) Bad Request.

    User Action
    Ensure that the credentials being used to establish a trust between the federation server proxy and the Federation Service are valid and that the Federation Service can be reached.
    Event Xml:
    <Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
      <System>
        <Provider Name="AD FS" Guid="{2FFB687A-1571-4ACE-8550-47AB5CCAE2BC}" />
        <EventID>393</EventID>
        <Version>0</Version>
        <Level>2</Level>
        <Task>0</Task>
        <Opcode>0</Opcode>
        <Keywords>0x8000000000000001</Keywords>
        <TimeCreated SystemTime="2016-01-08T06:34:01.641753700Z" />
        <EventRecordID>11</EventRecordID>
        <Correlation ActivityID="{7E7C1EEB-49D9-0001-0E1F-7C7ED949D101}" />
        <Execution ProcessID="3216" ThreadID="3092" />
        <Channel>AD FS/Admin</Channel>
        <Computer>WAP1</Computer>
        <Security UserID="S-1-5-21-3213969361-2520318933-4242169767-500" />
      </System>
      <UserData>
        <Event xmlns="http://schemas.microsoft.com/ActiveDirectoryFederationServices/2.0/Events">
          <EventData>
            <Data>The remote server returned an error: (400) Bad Request.</Data>
          </EventData>
        </Event>
      </UserData>
    </Event>
    --------------------------------------------------------------------------------------


    Regards,Ali

    Sunday, January 10, 2016 8:17 AM