Set up ADFS for SAML. This procedure uses ADFS 2.0 and shows samportal.example.com as the ADFS website. Replace this with your ADFS website address.
Avant de commencer
Role required: sso_config_admin, business_rule_admin, script_include_admin
Procédure
-
Log into the ADFS 3.0 server and open the management console.
-
Right-click Service and select Edit Federation Service Properties.
-
Confirm that the General settings match your DNS entries and certificate names.
-
Browse to the certificates and export the Token-Signing certificate.
-
Right-click the certificate and select View Certificate.
-
Select the Details tab.
-
Click Copy to File.
The Certificate Export Wizard opens.
-
Select Next.
-
Ensure that the No, do not export the private key option is selected, and then click Next.
-
Select DER encoded binary X.509 (.cer), and then click Next.
-
Select where you want to save the file and give it a name and click Next.
-
Select Finish.
The instance requires that this certificate be in PEM format. You can convert this certificate using client tools or online tools such as SSL Shopper.
-
Use the DER/Binary certificate that you just created, and export it in Standard PEM format.