{"id":13043,"date":"2015-06-15T10:00:00","date_gmt":"2015-06-15T08:00:00","guid":{"rendered":"http:\/\/nolabnoparty.com\/?p=13043"},"modified":"2018-12-21T07:56:39","modified_gmt":"2018-12-21T06:56:39","slug":"adfs-3-0-federating-office-365-pt-5","status":"publish","type":"post","link":"https:\/\/nolabnoparty.com\/en\/adfs-3-0-federating-office-365-pt-5\/","title":{"rendered":"ADFS 3.0 federating Office 365 - pt. 5"},"content":{"rendered":"<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice01\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice01.jpg\" alt=\"adfs30federatingoffice01\" width=\"602\" height=\"202\" border=\"0\" \/><\/p>\n<p>Installed both ADFS and WAP servers, next step of the ADFS 3.0 setup covers the federation process with Office 365.<\/p>\n<p>The procedure requires two components to install in the ADFS server to perform administrative tasks using the PowerShell commands.<\/p>\n<p><!--more--><\/p>\n<p>&nbsp;<\/p>\n<h2>Blog series<\/h2>\n<p><a href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-setup-upn-suffix-for-office-365-sso-pt-1\/\">ADFS 3.0 setup UPN suffix for Office 365 SSO - pt. 1<\/a><br \/>\n<a href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-ssl-certificate-signing-request-pt-2\/\">ADFS 3.0 SSL certificate signing request - pt. 2<\/a><br \/>\n<a href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-install-adfs-server-pt-3\/\">ADFS 3.0 install ADFS Server - pt. 3<\/a><br \/>\n<a href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-install-wap-server-pt-4\/\">ADFS 3.0 install WAP Server - pt. 4<\/a><br \/>\nADFS 3.0 federating Office 365 - pt. 5<br \/>\n<a href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-install-directory-sync-tool-pt-6\/\">ADFS 3.0 install Directory Sync tool - pt. 6<\/a><br \/>\n<a href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-deploy-office-365-pt-7\/\">ADFS 3.0 deploy Office 365 - pt. 7<\/a><\/p>\n<p>&nbsp;<\/p>\n<h2>Prerequisites<\/h2>\n<ul>\n<li>UPN suffix set to match federated domain (see <a title=\"ADFS 3.0 setup UPN suffix for Office 365 SSO \u2013 pt. 1\" href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-setup-upn-suffix-for-office-365-sso-pt-1\/\">part 1<\/a>)<\/li>\n<li>Windows 2012 R2 server joined to the domain and with ADFS role installed (see <a title=\"ADFS 3.0 install ADFS Server \u2013 pt. 3\" href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-install-adfs-server-pt-3\/\">part 3<\/a>)<\/li>\n<li><a href=\"https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=41950\" target=\"_blank\" rel=\"noopener\">Microsoft Online Services Sign-In Assistant for IT Professionals RTW<\/a><\/li>\n<li><a href=\"http:\/\/go.microsoft.com\/fwlink\/p\/?linkid=236297\" target=\"_blank\" rel=\"noopener\">Azure Active Directory Module for Windows PowerShell (64-bit version)<\/a><\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<h2>Install Online Services Sign-in Assistant<\/h2>\n<p>To provide <strong>end user sign-in capabilities<\/strong> to Microsoft Online Services, such as Office 365, the <a href=\"http:\/\/go.microsoft.com\/fwlink\/?LinkID=286152\" target=\"_blank\" rel=\"noopener\">Microsoft Online Services Sign-In Assistant<\/a> needs to be installed in the ADFS server. Download the tool and run the installer.<\/p>\n<p>When the wizard starts, accept the EULA then click <strong>Install<\/strong> to proceed.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice02\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice02.jpg\" alt=\"adfs30federatingoffice02\" width=\"600\" height=\"396\" border=\"0\" \/><\/p>\n<p>The Microsoft Online Services Sign-In Assistant is being installed.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice03\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice03.jpg\" alt=\"adfs30federatingoffice03\" width=\"600\" height=\"396\" border=\"0\" \/><\/p>\n<p>When the installation has completed, click <strong>Finish<\/strong> to exit the wizard.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice04\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice04.jpg\" alt=\"adfs30federatingoffice04\" width=\"600\" height=\"396\" border=\"0\" \/><\/p>\n<p>&nbsp;<\/p>\n<h2>Install Windows Azure AD Module for PowerShell<\/h2>\n<p>To perform <strong>administrative tasks<\/strong> such as user management, domain management and for configuring single sign-on, the <a href=\"http:\/\/go.microsoft.com\/fwlink\/p\/?linkid=236297\" target=\"_blank\" rel=\"noopener\">Azure Active Directory Module for Windows PowerShell<\/a> is another component to be installed in the ADFS server. Download the module and run the installer.<\/p>\n<p>When the installation wizard opens, click <strong>Next<\/strong> to begin the installation.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice05\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice05.jpg\" alt=\"adfs30federatingoffice05\" width=\"509\" height=\"399\" border=\"0\" \/><\/p>\n<p>Accept the EULA then click <strong>Next<\/strong>.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice06\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice06.jpg\" alt=\"adfs30federatingoffice06\" width=\"509\" height=\"399\" border=\"0\" \/><\/p>\n<p>Leave default location and click <strong>Next<\/strong>.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice07\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice07.jpg\" alt=\"adfs30federatingoffice07\" width=\"509\" height=\"399\" border=\"0\" \/><\/p>\n<p>When ready to proceed, click on <strong>Install<\/strong> button to install the module.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice08\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice08.jpg\" alt=\"adfs30federatingoffice08\" width=\"509\" height=\"399\" border=\"0\" \/><\/p>\n<p>The module is being installed in the system.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice09\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice09.jpg\" alt=\"adfs30federatingoffice09\" width=\"509\" height=\"399\" border=\"0\" \/><\/p>\n<p>When the installation has completed successfully, click <strong>Finish<\/strong> to exit the Setup.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice10\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice10.jpg\" alt=\"adfs30federatingoffice10\" width=\"509\" height=\"399\" border=\"0\" \/><\/p>\n<p>&nbsp;<\/p>\n<h2>Federating Office 365 domain<\/h2>\n<p>When the server installation has been completed, open the <strong>PowerShell<\/strong> shell from the icon placed on the desktop during the Azure Active Directory Module for Windows PowerShell setup.<\/p>\n<p>To <strong>connect to your online service<\/strong> (Office 365), use the cmdlet:<\/p>\n<p><span style=\"color: #0000a0;\">PS C:\\&gt; Connect-MsolService<\/span><\/p>\n<p>Enter the <strong>Office 365 Admin<\/strong> credentials then click <strong>OK<\/strong>.<\/p>\n<blockquote><p>username: 365admin@nolabnoparty.onmicrosoft.com<br \/>\npassword: password<\/p><\/blockquote>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice11\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice11.jpg\" alt=\"adfs30federatingoffice11\" width=\"600\" height=\"293\" border=\"0\" \/><\/p>\n<p>The <strong>connection to Office 365<\/strong> platform has been established.<\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice12\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice12.jpg\" alt=\"adfs30federatingoffice12\" width=\"600\" height=\"304\" border=\"0\" \/><\/p>\n<p>To federate domains, they must be verified in the Office 365 portal. To check if the <strong>domain is verified<\/strong>, run the following command:<\/p>\n<p><span style=\"color: #0000a0;\">PS C:\\&gt; Get-MsolDomain<\/span><\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice13\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice13.jpg\" alt=\"adfs30federatingoffice13\" width=\"600\" height=\"304\" border=\"0\" \/><\/p>\n<p>Once the domain is listed as verified, use the following command to <strong>federate a single domain<\/strong>:<\/p>\n<p><span style=\"color: #0000a0;\">PS C:\\&gt; Convert-MsolDomainToFederated -DomainName nolabnoparty.com<\/span><\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice14\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice14.jpg\" alt=\"adfs30federatingoffice14\" width=\"600\" height=\"304\" border=\"0\" \/><\/p>\n<p>To use the same ADFS servers to <strong>federate other domains<\/strong> in the same tenant, use the command:<\/p>\n<p><span style=\"color: #0000a0;\">PS C:\\&gt; Convert-MsolDomainToFederated -DomainName nolabnoparty.com -SupportMultipleDomains:$true<\/span><\/p>\n<p>To <strong>check the federated domains<\/strong>, run the cmdlet:<\/p>\n<p><span style=\"color: #0000a0;\">PS C:\\&gt;\u00a0 Get-MsolDomain<\/span><\/p>\n<p><img decoding=\"async\" style=\"background-image: none; float: none; padding-top: 0px; padding-left: 0px; margin: 0px auto; display: block; padding-right: 0px; border: 0px;\" title=\"adfs30federatingoffice15\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/2015\/06\/adfs30federatingoffice15.jpg\" alt=\"adfs30federatingoffice15\" width=\"600\" height=\"304\" border=\"0\" \/><\/p>\n<p><a href=\"https:\/\/nolabnoparty.com\/en\/adfs-3-0-install-directory-sync-tool-pt-6\/\">Part 6<\/a> will cover the installation of the <strong>Directory Sync <\/strong>tool needed by the system to synchronize Active Directory objects with Office 365.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/nolabnoparty.com\/wp-content\/uploads\/images\/firma.jpg\" alt=\"firma\" title=\"\"><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Installed both ADFS and WAP servers, next step of the ADFS 3.0 setup covers the federation process with Office 365. The procedure requires two components to install in the ADFS server to perform administrative tasks using the PowerShell commands.<\/p>\n","protected":false},"author":3,"featured_media":13028,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"rop_custom_images_group":[],"rop_custom_messages_group":[],"rop_publish_now":"initial","rop_publish_now_accounts":{"facebook_2879994398731222_17841400390232720":"","mastodon_115463926174894442_115463926174894442":"","linkedin_93tdZWzMZc_93tdZWzMZc":"","bluesky_did:plc:tkabz5kl2rukzdwtuongv3kz_did:plc:tkabz5kl2rukzdwtuongv3kz":""},"rop_publish_now_history":[],"rop_publish_now_status":"pending","footnotes":""},"categories":[1065,1721],"tags":[1570,1574,1583,1575],"class_list":["post-13043","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-microsoft-en","category-office365-en","tag-adfs-en","tag-federating","tag-office365","tag-powershell","has_thumb"],"_links":{"self":[{"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/posts\/13043","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/comments?post=13043"}],"version-history":[{"count":0,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/posts\/13043\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/media\/13028"}],"wp:attachment":[{"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/media?parent=13043"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/categories?post=13043"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nolabnoparty.com\/en\/wp-json\/wp\/v2\/tags?post=13043"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}