Solved

Unable to read the AD FS configuration data from the database

Posted on 2013-01-16
4
1,823 Views
Last Modified: 2013-05-12
I've followed the Microsoft Office 365 documentation exactly for Single Sign On and I've setup two ADFS servers with a certificate from GoDaddy. I've setup the first server as the primary server in the farm. Both are configured with Network Load balancing on a single IP that's name is in DNS.

When I try to join the second server to the farm in the AD FS 2.0 Federation Server Configuration Wizard I get the error:

Unable to read the AD FS configuration data from the database. Error: An error occurred while receiving the HTTP response to http://mtsadfs1/adfs/services/policystoretransfer. This could be due to the service endpoint binding not using the HTTP protocol. This could also be due to an HTTP request context being aborted by the server (possibly due to the service shutting down). See server logs for more details.

Any ideas? I've logged this with Microsoft but it would be interesting to see if anybody else has experienced this problem?
0
Comment
Question by:itmtsn
  • 2
4 Comments
 
LVL 19

Expert Comment

by:compdigit44
ID: 38799222
Is the time correct on all servers? http://community.dynamics.com/product/crm/f/117/p/77503/143263.aspx

Is there a firewall in-between the servers? If so, have you check the firewall logs?

What errors are listed in the server event logs?
0
 
LVL 7

Expert Comment

by:ms-pro
ID: 38901378
Is you ADFS web service configured by HTTP or HTTPS? If HTTPS is used (which I think it is) then change the url from http://mtsadfs1/adfs/services/policystoretransfer to https://mtsadfs1/adfs/services/policystoretransfer

If you have followed the documentation then you should have changed you Site Binding from HTTP to HTTPs.
0
 

Accepted Solution

by:
itmtsn earned 0 total points
ID: 39144100
Thanks for the suggestions. Eventually called Microsoft who helped me with the issue. It was partly to do with it being hosted on two Citrix VMs and the servers sharing a virtual network bond which ADFS didn't like and partly a bug with the ADFS install.
0
 

Author Closing Comment

by:itmtsn
ID: 39159238
Had to call MS for support who offered a reason but not really a solution.
0

Featured Post

Are your AD admin tools letting you down?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Destination host unreachable 12 63
Group policy update error 8 25
Office 2016 Excel Issue 4 25
I Turned Off Shadow Copy & Need to Get Prevois File Versions? 1 55
Microsoft Office Picture Manager was included in Office 2003, 2007, and 2010, but not in Office 2013. Users had hopes that it would be in Office 2016/Office 365, but it is not. Fortunately, the same zero-cost technique that works to install it with …
If you don't know how to downgrade, my instructions below should be helpful.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

932 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now