AD FS 3.0/4.0 Overview
Active Directory Federation Services (AD FS) enables a decentralized identity sharing between business partners by implementing the WS-Federation protocol and standards such as WS-Trust and Security Assertion Markup Language (SAML). AD FS is used to generate assertions for users. These assertions are sent back to Talend Administration Center, where the user settings and roles are assigned based on the AD FS configuration.
You can configure AD FS 3.0 on Windows Server 2012 R2, or AD FS 4.0 on Windows Server 2016 to enable secure identity management and single sign-on (SSO) access to Talend Administration Center.
For more information on system requirements and getting started with AD FS, refer to the AD FS documentation.
Installing and Configuring AD FS 3.0/4.0
AD FS 3.0
Installing AD FS 3.0
Before you begin
Talend Administration Center must be configured with HTTPS. For more information, see How to configure a bidirectional secure connection between Talend Studio and Talend Administration Center.
Procedure
Configuring AD FS 3.0
Procedure
AD FS 4.0
AD FS 4.0 runs on Windows Server 2016.
Configuring Active Directory Domain Services
About this task
Procedure
- From the , install Active Directory Domain Services.
-
Go to the notifications displayed on the top-right of the screen and click the
link Promote this server to a domain controller to open
Active Directory Domain Services Configuration wizard:
Configuring Active Directory Certification Service
About this task
Procedure
-
Install Active Directory Certification Service (AD CS):
-
Click Configure Active Directory Certificate Services on the destination server
link to configure AD CS:
Exporting and Configuring the Certificate
About this task
Procedure
-
Request a new certification.