Solved

ADFS (Active Directory Federation Service) Advice

Posted on 2013-05-12
3
636 Views
Last Modified: 2014-04-25
Hi guys,

I hope you are all well and can assist.
We are investigating solutions for federated single sign-on.
One of these solutions we are researching is ADFS.
We are very shallow in terms of knowledge on what is required from an ADFS point of view.

One question I have is this.

I am not sure at present, if both the Identity Provider and the Service Provider, need to have the same federated SSO implementations in order for them to have federated SSO capability.

For example, if Company A were to use ADFS with SAML 2.0, and Company B used F5, would they still be able practise federated SSO, or do both ends need to be for example, ADFS?

Are you guys able to shed some light on this?

Any help greatly appreciated.
0
Comment
Question by:Simon336697
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 33

Accepted Solution

by:
Busbar earned 500 total points
ID: 39161310
the F5 side must be able to redirect the users and consume the ADFS claims, if it can then it will work.
0
 
LVL 1

Author Comment

by:Simon336697
ID: 39163294
Hi busbar.
Thanks so much for your kind response.

When you say it must be able to consume and redirect the users, does that meand that Company B would still have to have an ADFS Server, so that the F5 could redirect the users to this ADFS server?
0
 
LVL 33

Expert Comment

by:Busbar
ID: 39213898
yes
0

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In-place Upgrading Dirsync to Azure AD Connect
This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

732 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question