Solved

ADFS (Active Directory Federation Service) Advice

Posted on 2013-05-12
3
629 Views
Last Modified: 2014-04-25
Hi guys,

I hope you are all well and can assist.
We are investigating solutions for federated single sign-on.
One of these solutions we are researching is ADFS.
We are very shallow in terms of knowledge on what is required from an ADFS point of view.

One question I have is this.

I am not sure at present, if both the Identity Provider and the Service Provider, need to have the same federated SSO implementations in order for them to have federated SSO capability.

For example, if Company A were to use ADFS with SAML 2.0, and Company B used F5, would they still be able practise federated SSO, or do both ends need to be for example, ADFS?

Are you guys able to shed some light on this?

Any help greatly appreciated.
0
Comment
Question by:Simon336697
  • 2
3 Comments
 
LVL 33

Accepted Solution

by:
Busbar earned 500 total points
ID: 39161310
the F5 side must be able to redirect the users and consume the ADFS claims, if it can then it will work.
0
 
LVL 1

Author Comment

by:Simon336697
ID: 39163294
Hi busbar.
Thanks so much for your kind response.

When you say it must be able to consume and redirect the users, does that meand that Company B would still have to have an ADFS Server, so that the F5 could redirect the users to this ADFS server?
0
 
LVL 33

Expert Comment

by:Busbar
ID: 39213898
yes
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
cannot unmapped a network drive 10 78
RSOP Red "X" 7 30
Unable to add an AD Group to a an Computer Account as local system 2 24
Identify disabled AD users with PowerShell 6 39
Disabling the Directory Sync Service Account in Office 365 will stop directory synchronization from working.
In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

867 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

24 Experts available now in Live!

Get 1:1 Help Now