Link to home
Start Free TrialLog in
Avatar of Antzs
AntzsFlag for Malaysia

asked on

ADFS Setup

Need some pointing in the correct direction so that I can setup ADFS correctly.

I have Company A which is hosting a bunch of applications which are using SSO for authentication.  Now comes the new Company B, which needs access to these same application which are hosted in Company A.  

Questions.
- Is it correct for me to implement ADFS instead of AD trust?
- Is it a best practice to install ADFS on a Domain Controller?  Can I install ADFS on a member server?
- If all the applications are hosted in Company A and only Company B need to access these applications do I still need ADFS running in Company A?  Or ADFS is only required in Company B?
Avatar of Cliff Galiher
Cliff Galiher
Flag of United States of America image

ADFS is needed in Company B. The applications in Company A must have a credential store of some sort and the application must support an authentication protocol that ADFS supports such as SAML. There are definitely a few moving pieces.
SOLUTION
Avatar of Mahesh
Mahesh
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Antzs

ASKER

Does that mean if both forests are reachable I should be using trust instead of ADFS?

Also, does the ADFS server suppose to be in the internal or DMZ network?
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial