英語 での The federation service の使用例とその 日本語 への翻訳
{-}
-
Colloquial
-
Ecclesiastic
-
Computer
-
Programming
The Federation Service publishes all the information that is necessary to validate its tokens.
When the federation server proxy is protecting a resource partner, it relays requests by and for Web applications to the Federation Service.
I have enabled an AD LDS account store, but the Federation Service is not able to retrieve any claims.
For AD FS to function, TCP/IP network connectivity must exist between the client; a domain controller; and the computers that host the Federation Service, the Federation Service Proxy(when it is used), and the AD FS Web Agent.
First, the Federation Service account finds the user object through a search for the object whose configured attribute is equal to the supplied user name.
The Federation Service at the resource partner uses the security tokens that are produced by the account partner to make authorization decisions for AD FS-enabled Web servers that are located in the resource partner.
The Federation Service in the account partner organization authenticates local users and creates security tokens that are used by the resource partner in making authorization decisions.
Both the Windows token-based agent and the Federation Service Proxy role services require a Uniform Resource Locator(URL) that specifies the location of a valid federation server.
A computer running Windows Server 2003 R2, Windows Server 2008, or Windows Server 2008 R2 that has been configured to host the Federation Service component of AD FS.
If the user object resides in a domain different from the domain where the Federation Service account resides, the former domain must have in place an AD DS domain trust to the latter domain.
When it is installed, the Federation Service Proxy role service uses WS-F PRP protocols to collect user credential information from browser clients and Web applications and send the information to the Federation Service on their behalf.
The Federation Service also provides a Web page that prompts for the user's credentials, such as a user name and password for forms-based authentication.
If the Federation Service is running as Local System, you must add the machine account of the computer hosting the Federation Service to the Readers group in the AD LDS store.
When a relying party is identified in a request to the Federation Service, AD FS uses prefix matching logic to determine if there is a matching party trust in the AD FS configuration database.
To set up this environment, you perform administrative tasks for installing a federation server and configuring the Federation Service in the account partner organization.
To set up this environment, you perform administrative tasks for installing a federation server, configuring the Federation Service, and installing an AD FS-enabled Web server.
To set up this environment, you perform administrative tasks for installing a federation server and configuring the Federation Service in the resource partner organization.
Search timeout(in seconds)- Indicates the maximum time that the Federation Service waits for a response from the AD LDS server before timing out the connection.
However, if the account store Uniform Resource Identifier(URI) is not specified, the Federation Service tries each store in priority order to log on the user.