Integrate Active Directory Federation Service (AD FS)

Learn more about integrating Active Directory Federation Service (AD FS) with EAA.

Active Directory Federation Services (AD FS) is a software installed on a Microsoft Windows Server operating system. It provides single sign-on (SSO) and identity management, allowing authorized users to access multiple applications located on-premise or in the cloud.

Integrating AD FS with EAA allows users to create applications inside EAA which are authenticated with AD FS. You can deploy an EAA application which uses your newly created AD FS identity provider (IdP). When you access this application, you are redirected to your AD FS server to complete authentication.

Prerequisites:

  1. Select a fully qualified domain name (FQDN) for your AD FS portal, for example, https://<federation-service-name>/adfs/ls where <federation-service-name> is of the form adfs.yourdomain.com

  2. Install and configure AD FS in Microsoft Windows operating system (2016 version).

Follow these steps to integrate AD FS with EAA depending on the type of LDAP attributes you need to send between AD FS and EAA.