Fortinet black logo

Handbook

Adding an AD FS Publish

Adding an AD FS Publish

  1. Go to User Authentication > AD FS Proxy.
    The configuration page displays the Publish tab.
  2. Click Create New to display the AD FS Publish configuration editor.
  3. Make the desired entries or selections, as described in the table below.
  4. Save the configuration.

AD FS Publish

Parameter Description

Name

Specify a unique name for the AD FS Proxy;Valid characters are A-Z, a-z, 0-9,_, and -. No space is allowed.

Note: Once you have saved the configuration, you\ cannot edit the AD FS Proxy name.

Status

Enable—The proxy can be used by AD FS Publish.

Disable—The proxy can’t be used anymore.

Note: If the proxy is used by at least one AD FS Publish,it can’t be disabled.

AD FS Proxy

Select an AD FS Proxy to publish on it.

Preauthentication Method

Pass Through: ADC will not change the message flow, basically it will only forward the message.

AD FS: ADC will do the pre-authentication, if OK, it will forward the following messages.

Relying Party

Relying party trust configuration is received by AD FS Proxy from the AD FS server. This parameter can only be used in the AD FS mode.

External URL

The URL that ADC provide to the external users to serve as the Microsoft Application server such as Exchange server.

Example: https://certauth.o365.com/owa/

Backend Server URL

The URL that used for AD FS Proxy to access the Microsoft Application server such as Exchange server.

Example: https://certauth.o365.com/owa/

Adding an AD FS Publish

  1. Go to User Authentication > AD FS Proxy.
    The configuration page displays the Publish tab.
  2. Click Create New to display the AD FS Publish configuration editor.
  3. Make the desired entries or selections, as described in the table below.
  4. Save the configuration.

AD FS Publish

Parameter Description

Name

Specify a unique name for the AD FS Proxy;Valid characters are A-Z, a-z, 0-9,_, and -. No space is allowed.

Note: Once you have saved the configuration, you\ cannot edit the AD FS Proxy name.

Status

Enable—The proxy can be used by AD FS Publish.

Disable—The proxy can’t be used anymore.

Note: If the proxy is used by at least one AD FS Publish,it can’t be disabled.

AD FS Proxy

Select an AD FS Proxy to publish on it.

Preauthentication Method

Pass Through: ADC will not change the message flow, basically it will only forward the message.

AD FS: ADC will do the pre-authentication, if OK, it will forward the following messages.

Relying Party

Relying party trust configuration is received by AD FS Proxy from the AD FS server. This parameter can only be used in the AD FS mode.

External URL

The URL that ADC provide to the external users to serve as the Microsoft Application server such as Exchange server.

Example: https://certauth.o365.com/owa/

Backend Server URL

The URL that used for AD FS Proxy to access the Microsoft Application server such as Exchange server.

Example: https://certauth.o365.com/owa/