Professional Documents
Culture Documents
Overview ....................................................................................................................................................... 2
Setup ADFS Server ........................................................................................................................................ 3
Join ADFS server to domain ...................................................................................................................... 3
Create ADFS Service Account .................................................................................................................... 3
Install ADFS Role ....................................................................................................................................... 3
Generate CSR from ADFS server ............................................................................................................... 6
Request Cert from your CA. ...................................................................................................................... 8
Run ADFS Configuration Wizard ............................................................................................................... 8
Check SPN of the Service Account .......................................................................................................... 13
Update Internal DNS record........................................................................................................................ 13
Verify ADFS URL from Client Machine ........................................................................................................ 13
O365 Tenant Preparation ........................................................................................................................... 14
Install Azure AD Connect for Identity Sync ............................................................................................. 14
Configure Azure AD Connect for ADFS ................................................................................................... 17
Verify Identify sync ................................................................................................................................. 26
Verify SSO from Client Machine.................................................................................................................. 26
Reference .................................................................................................................................................... 28
The Azure AD Connect available from the O365 portal makes the whole SSO setup easier, the Azure AD
Connect Configuration Wizard helps to verify the ADFS server farm configuration and performs the
necessary configuration on the O365 tenant such as setting up tenant for federated identity.
radiancecommslab.com
Office 365
Services
AD + Azure AD
Connect ADFS
Auth
User attempts
mylab.local to login to O365
& gets re-directed to ADFS
User1
The above setup does not include an ADFS proxy server, an ADFS proxy is needed for the above setup if
we have client outside the customer network that are trying to access O365 services.
1 x Windows 10 VM (Client)
Free SSL certificate can be obtained from https://startssl.com/OTPLogin for LAB environment.
The latest version of the software can be downloaded from the O365 Portal.
Configure Azure AD Connect for ADFS
Verify Identify sync
Login to O365 portal and verify if On-Prem users are synchronized to cloud.