当前位置:首页 > Windows程序 > 正文

this page is no longer surfaced “out-of-the-box”..if you wa

2024-03-31 Windows程序

默认安置完成ADFS 之后,AD FS 2012 R2 and 2016 有the ldpinitiatedsignon.aspx page,

地点:https://sts.focuswincloud.cn/adfs/ls/idpinitiatedsignon.aspx

但是在Windows server 2012 R2 里面是正常的

Windows server 2016 默认打开报错:

技术分享图片

Usually after building an AD FS/WAP farm I test locally from the Internet and the Intranet using (to-date) a fairly reliable source of verification that the service is up and running. I’m referring to, of course, the IdP sign-in page (../adfs/ls/idpinitiatedsignon.aspx). This offers a simple way of validating login via AD FS.

With Windows Server 2016, this page is no longer surfaced “out-of-the-box”.. if you want to do a SAML 2.0  IdP-initiated sign-on, this functionality will need to be enabled. Otherwise, connecting to the obligatory sign-in page, will produce an error similar to the following:

技术分享图片

Testing from the Web Application Proxy itself directly,  pointing to the AD FS farm, we may see an HTTP 503 Service Not Available error.

Via Powershell, it can be switched back on:

set-adfsproperties -EnableIdpInitiatedSignon $True

技术分享图片

温馨提示: 本文由Jm博客推荐,转载请保留链接: https://www.jmwww.net/file/35703.html

Jm-杰米博客Jamie
草根站长的技术交流乐园!IT不会不要紧快来好好学习吧!
  • 20786文章总数
  • 7494590访问次数
  • 建站天数
  • 友情链接