WS-Fed Example
Steps
Attribute definition
First of all, will be mandatory to create two new attributesĀ
- User principal name
- AD SID
Bear in mind, that those attributes have to be retrieved from the appropriate system:
And those attributes have to be defined in the object metadata:
Attribute sharing policies
Define the proper attribute policy
Service Provider
Configure Exchange
Finally, you must configure the Exchange.
Set-OrganizationConfig -AdfsIssuer https://gbr.idp.demo.soffid.net/profile/wsfed `
   -AdfsAudienceUris "https://gbr.owa.demo.soffid.net/owa/","https://gbr.owa.demo.soffid.net/ecp/"  `
   -AdfsSignCertificateThumbprint "XXXXXX22B5CFE0B8E409F88D9A687DBXXXXX"Set-OWAVirtualDirectory -Identity "OWA (Default Web Site)" -AdfsAuthentication $true   `
  -BasicAuthentication $false -DigestAuthentication $false -FormsAuthentication $false `
  -WindowsAuthentication $falseSet-ECPVirtualDirectory -Identity "ECP (Default Web Site)" -AdfsAuthentication $true   `
  -BasicAuthentication $false -DigestAuthentication $false -FormsAuthentication $false `
  -WindowsAuthentication $falsenet stop was /ynet start  w3svc 
                



