Skip Ribbon Commands
Skip to main content

Ondrej Sevecek's English Pages

:

Comments: Re: Behavior or ADFS sign-out redirection specified in wreply parameter

Engineering and troubleshooting by Directory Master!
MCM: Directory

Sorry comments are disable due to the constant load of spam

5

Title

Re: Behavior or ADFS sign-out redirection specified in wreply parameter

Author

ondass

Body

yes, the name in ADFS cert can and definitely should be on a public suffic, because you may want to access the ADFS server from outside (probably through the ADFS Proxy called WAP), but still from outside. So you need a publicly fourtable name for the ADFS machine. You must only make sure that the name is accessible both from inside and outside and you are ok. For this purpose, I use internal AD integrated DNS with separate DNS zones with just a single A record - in your case, it would be two zones:
adfs.name3.net
entepriseregistration.name3.net

with the three records in the form of A record.

Attachments

Created at 22/11/2018 15:06 by Ondřej Ševeček
Last modified at 22/11/2018 15:06 by Ondřej Ševeček