Managing AD FS for Multiple Organizations (ADS) (ADS)

Seminar-ID:
ADS

Seminar content

Multi organization ADFS is a perfect course if you need to implement ADFS across different organizations! Federated Identity is the most discussed topic in terms of organization cooperation right now, and with this course you will get all the knowledge youwill need when you are planning to host services that will connect users across different organizations.As an add-on course, we will extend previous labs with multi organizations trust, discover problems arising from connecting remote parties and find an automated way to make sure that everything is working smoothly. Using ADFS on Windows 2019, we will connect parties using various active directory topologies and versions, to simulate all the problems that you will be facing in real world deployment. As a CQURE course, we will focus on security of ADFS, and show a way to solve common access problems –from hacking the user identity, to solving permission problems.A good enterprise implementation is not complete if we do not think about backup and scripting –so after implementing business partner connectivity, we will focus on scripting the implementation,which will not only allow us to quickly backup and restore our servers, but also allow us to prepare automatic configuration scripts for remote party. The last part of this course is focused on large ADFS implementations, where load-balancing client traffic is a must. You will not only learn how to load balance ADFS farm, but also get to known Microsoft load balancer included in IIS.

At the end of the course you will be able to:
  • Deploy AD Federation Services to provide claims-aware authentication for multiple organizations
  • Implement AD Federation Services high availability and load balancing
  • Implement Claims filtering and processing, to secure multi-organization enabled application
  • Script and backup ADFS environment
  • Automate business partner setup procedure for ADFS
  • Configure Active Directory for ADFS.

Target audience

  • enterprise administrators
  • infrastructure architects
  • security professionals
  • systems engineers
  • network administrators
  • IT professionals
  • security consultants
  • other people responsible for implementing network and perimeter security

Prior knowledge

  • have a medium level knowledge about Active Directory Domain Services, basic knowledge of Windows PowerShell and DNS.
  • to attend this training, you should have good hands-on experience in administering Windows infrastructure

Detailed content

Module 1
  • Working with external parties
  • ADFS in Forest/Domain trust environment
  • Federating with different ADFS versions
Module 2
  • Home Realm Discovery
  • Hacking ADFS Claims
  • Additional user authorization
  • Claim pipeline for multiple IdP
  • MFA in multi IdP environment

Module 3
  • PowerShell Scripting for ADFS
  • Backup and Restore ADFS Config
  • Exporting and Importing RP and IdP

Module 4
  • Working with clients
  • Creating automated Claim Provided Trust configuration for clients
  • Working with third party IdP

Module 5
  • Load Balancing ADFS
  • Using IIS ARR to load-balance ADFS
  • Advance Clustering and load balancing

Downloads

Book online now

  • 05.09.-06.09.2024 05.09.2024 2T 2 days
    Seminarort wird noch bekannt gegeben. Uhrzeiten
    • Preis 2.160,-
      • Online

Subtotal excl. VAT

Do you have questions?

More trainings for you to consider

Lernformen im Überblick