
ADFS uses a claims-based identity model to provide single sign-on across organizations, establishing federation trusts and delivering customized tokens (claims) via a security token service.
Explore ADFS deployment models, including farm federation with Windows internal database or SQL, why standalone federation is discontinued, and subject name must match the federation service identifier for service certificates.
Create an SSL certificate from an internal certificate authority, install an ADFS server on a domain-joined machine, and federate Office 365 as a relying party trust.
Learn how ADFs issue security tokens with claims to trusted applications, using the airport boarding pass metaphor to explain token types and federation.
Learn how ADFS endpoints differentiate web-based and rich client requests, manage endpoints from the management console or via PowerShell, and secure https communications with the service certificate and proxy server.
Explore how relying party trust enables ADFS to identify trusted applications and issue tokens. Create claim issuance policy and claim rules to define which attributes are included in the token.
Discover how to use the claims x-ray tool to test the ADFs authentication flow, create a relying party trust, and analyze tokens, cookies, and fiddler logs for troubleshooting.
Explore how federation metadata reveals endpoints and token signing certificates, enabling apps to trust an ADFs server and receive claims such as email address and UPN.
Explain the three ADFS certificates—service communication, token signing, and token decrypting—and how they secure endpoints, sign and decrypt tokens, with auto rollover handling renewals.
Explore how ADFS authentication flows across federated organizations, including home realm discovery, token creation and validation, and the differences between active and passive authentication, with Fiddler analysis.
Unlock the full potential of secure identity management with our comprehensive course on Active Directory Federation Services (ADFS). This course is designed for IT professionals, system administrators, and security specialists who seek to deepen their knowledge and skills in deploying, configuring, and managing ADFS in a variety of environments.
Throughout this course, participants will gain a thorough understanding of ADFS, a key component in Microsoft's identity and access management framework. Starting with the fundamentals, you will explore the architecture and core components of ADFS, you will learn how to Active Directory Federation Services (ADFS) authentication works, you will learn what is Relying Party Trust, what is Claims Provider Trust, what is Identity Provider, what is Secure Token Service (STS), you will learn what are ADFS endpoints, how to create Relying Party Trust, how to create claims and claims rules in ADFS, you will learn about ADFS certificates, how to renew certificates, how to create SSL certificate for ADFS server deployment, what is certificate automatic roll-over, how to set up Azure AD as Relying Party Trust, you will learn what is ADFS Proxy Server, what are the prerequisites for ADFS server deployment, how to deploy ADFS server step-by-step, and how ADFS proxy server works with ADFS server.