Course : Active Directory Federation Services (ADFS 4.0)

Practical course - 4d - 28h00 - Ref. ADL
Price : 2630 € E.T.

Active Directory Federation Services (ADFS 4.0)




Single sign-on (SSO) allows users to authenticate only once and access multiple distributed resources. This course presents Active Directory Federation Services (AD FS), a Microsoft solution for implementing SSO.


INTER
IN-HOUSE
CUSTOM

Practical course in person or remote class
Disponible en anglais, à la demande

Ref. ADL
  4d - 28h00
2630 € E.T.




Single sign-on (SSO) allows users to authenticate only once and access multiple distributed resources. This course presents Active Directory Federation Services (AD FS), a Microsoft solution for implementing SSO.


Teaching objectives
At the end of the training, the participant will be able to:
Install and configure a public key infrastructure for ADFS
Deploy ADFS to provide claims-based authentication in a single organization
Deploying ADFS to provide authentication in a business-to-business federation
Design and deploy advanced scenarios, including high availability and SAML interoperability
Use the claims rules language to create custom rules
Troubleshooting ADFS

Intended audience
System administrator.

Prerequisites
Basic knowledge of network and operating systems. Knowledge of backup and restore principles in a Windows Server environment. Experience of Active Directory.

Practical details
Hands-on work
Training alternating theory and practice.

Course schedule

1
Introduction to Active Directory Federation Service

  • Understand claim-based authentication.
  • Overview of ADFS components and deployment scenarios.
  • Understand ADFS protocols (SAML, WS-Federation, WS-Trust, OAuth).
  • Understanding the AD FS WID and SQL database.
  • Understanding ADFS FARM with WID.
  • Understanding ADSF FARM with SQL.

2
Implementing an ADFS cluster

  • Requirements for deploying ADFS services.
  • Understand and implement a public key infrastructure for an ADFS cluster.
  • Request a server communication certificate for ADFS.
  • Install and configure the ADFS cluster with WID as resource provider.
  • Check ADFS cluster configuration.
  • Understanding ADFS endpoints.
  • Install and configure a secondary ADFS server in the cluster - modify the server role.
  • Understand failover to the secondary server.

3
Understanding and implementing the ADFS attribute store, approvals and claims

  • Understand the different types of attribute store - AD, LDAP and SQL.
  • Understanding the claim provider trust.
  • Understanding relying party trust.
  • Understanding claim rules: emission transformation rule.
  • Understand claim rules: authorization rule, delegation authorization rule.

4
Configuring an application based on SAML claims

  • Installation and configuration of a web server in an organization integrating a resource provider.
  • Installation and configuration of the Windows Identity Foundation SDK.
  • Conversion of a web application into a claim-based application using the Windows identity base.

5
Implementing claim-based authentication

  • Create a relying party trust for a claims-based application.
  • Integrate an "issuance transform rule" into the relying party trust.
  • Integrate an "Issuance acceptance rule" in the claims producer.

6
Additional ADFS configuration scenarios

  • Understanding Azure Active Directory.
  • Claim-providing organization versus resource-providing organization.
  • Create a "Relying Party Trust" between two organizations.
  • Custom domain configuration.
  • Create a relying party trust.
  • Create a "claim provider trust" between two organizations.
  • Create an emission transformation rule in the relying party trust.
  • Create an ADFS backup.
  • Configuration of rapid restore tool.
  • Create an emission acceptance rule in the claim provider trust.

7
WAP service implementation

  • What is a WAP (Web Application Proxy)?
  • How does WAP work?
  • Configure a WAP server.
  • Publish a relying party on a WAP server.

8
Implementing ADFS authentication for an on-cloud application

  • Understanding Azure Active Directory.
  • Custom domain configuration.
  • Create a relying party trust.

9
ADFS backup

  • Create an ADFS backup.
  • Configuration of rapid restore tool.


Customer reviews
5 / 5
Customer reviews are based on end-of-course evaluations. The score is calculated from all evaluations within the past year. Only reviews with a textual comment are displayed.
PHILIPPE H.
23/06/26
3 / 5

The trainer is a very good technician because he knows the subject inside out. I have no complaints about his technical knowledge. He gave me a lot of support as my working environment was made difficult by the infrastructure provided. However, he is a bit disorganised in his approach, jumps quickly to other topics and speaks very fast.
JEAN-DOMINQUE B.
23/06/26
4 / 5

The advantage is that you get to see all the components required to set up ADFS servers and farms. The trainer took plenty of time to help everyone.
MICKAËL I.
23/06/26
4 / 5

flat



Publication date : 06/03/2024



This programme is an original creation, developed by the teaching teams at ORSYS Formation. Any reproduction, representation, adaptation or use, in whole or in part, without the prior written authorisation of ORSYS, is strictly prohibited. ORSYS reserves the right to take any action necessary to protect its intellectual property rights.

Dates and locations
Select your location or opt for the remote class then choose your date.
Remote class

Dernières places
Date garantie en présentiel ou à distance
Session garantie

REMOTE CLASS
2027 : 1 June, 1 June, 2 Nov., 2 Nov.

PARIS LA DÉFENSE
2027 : 1 June, 2 Nov.

LUXEMBOURG
2026 : 16 Nov.



This programme is an original creation, developed by the teaching teams at ORSYS Formation. Any reproduction, representation, adaptation or use, in whole or in part, without the prior written authorisation of ORSYS, is strictly prohibited. ORSYS reserves the right to take any action necessary to protect its intellectual property rights.