I am very confused about my current ADFS setup. I have an identity provider that issues a SAML 2.0 token to ADFS 2.0 in an IDP-Initiated scenario. ADFS translates the token into WS-Federation, and forwards it on to a claims aware (WIF) web application. The web application, however doesn't recognize the user has having authenticated and redirects back to Home Realm discovery. I've used SAML Tracer in Firefox and I can see the SAML assertions going in and the WS-Federation claims in the parameters being sent to the web application. Is there a step I am missing? I set up custom claim rules to translate the SAML assertion into a WS-Federation claim (e.g. http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name) If I switch the SP application to a SAML 2 web app, then everything works fine.
SAML IDP and WS-Federation SP with ADFS 2.0
1.5k Views Asked by JGC At
1
There are 1 best solutions below
Related Questions in SAML
- How to correctly work on a GreaseMonkey userscript using git?
- continuous integration - build separated projects or build all in one?
- MS-Access form: Is it possible to create a Gantt chart and dynamic timeline?
- MS Project - Adding multiples of the same resources to multiple concurrent tasks
- Cannot add embedded binaries (other projects) to project dependencies in XCode
- IntelliJ IDEA not showing my module/project
- How to arrange / manage methods of different functionality in a big project
- Team based project management software using .NET
- PM getting a feel for the time a Drupal site takes
- V-Modell-XT: creating new project: "missing file V-Modell-XT.xml" (model files missing / installer is needed)
Related Questions in ADFS2.0
- How to correctly work on a GreaseMonkey userscript using git?
- continuous integration - build separated projects or build all in one?
- MS-Access form: Is it possible to create a Gantt chart and dynamic timeline?
- MS Project - Adding multiples of the same resources to multiple concurrent tasks
- Cannot add embedded binaries (other projects) to project dependencies in XCode
- IntelliJ IDEA not showing my module/project
- How to arrange / manage methods of different functionality in a big project
- Team based project management software using .NET
- PM getting a feel for the time a Drupal site takes
- V-Modell-XT: creating new project: "missing file V-Modell-XT.xml" (model files missing / installer is needed)
Related Questions in CLAIMS
- How to correctly work on a GreaseMonkey userscript using git?
- continuous integration - build separated projects or build all in one?
- MS-Access form: Is it possible to create a Gantt chart and dynamic timeline?
- MS Project - Adding multiples of the same resources to multiple concurrent tasks
- Cannot add embedded binaries (other projects) to project dependencies in XCode
- IntelliJ IDEA not showing my module/project
- How to arrange / manage methods of different functionality in a big project
- Team based project management software using .NET
- PM getting a feel for the time a Drupal site takes
- V-Modell-XT: creating new project: "missing file V-Modell-XT.xml" (model files missing / installer is needed)
Related Questions in WS-FEDERATION
- How to correctly work on a GreaseMonkey userscript using git?
- continuous integration - build separated projects or build all in one?
- MS-Access form: Is it possible to create a Gantt chart and dynamic timeline?
- MS Project - Adding multiples of the same resources to multiple concurrent tasks
- Cannot add embedded binaries (other projects) to project dependencies in XCode
- IntelliJ IDEA not showing my module/project
- How to arrange / manage methods of different functionality in a big project
- Team based project management software using .NET
- PM getting a feel for the time a Drupal site takes
- V-Modell-XT: creating new project: "missing file V-Modell-XT.xml" (model files missing / installer is needed)
Trending Questions
- UIImageView Frame Doesn't Reflect Constraints
- Is it possible to use adb commands to click on a view by finding its ID?
- How to create a new web character symbol recognizable by html/javascript?
- Why isn't my CSS3 animation smooth in Google Chrome (but very smooth on other browsers)?
- Heap Gives Page Fault
- Connect ffmpeg to Visual Studio 2008
- Both Object- and ValueAnimator jumps when Duration is set above API LvL 24
- How to avoid default initialization of objects in std::vector?
- second argument of the command line arguments in a format other than char** argv or char* argv[]
- How to improve efficiency of algorithm which generates next lexicographic permutation?
- Navigating to the another actvity app getting crash in android
- How to read the particular message format in android and store in sqlite database?
- Resetting inventory status after order is cancelled
- Efficiently compute powers of X in SSE/AVX
- Insert into an external database using ajax and php : POST 500 (Internal Server Error)
Popular # Hahtags
Popular Questions
- How do I undo the most recent local commits in Git?
- How can I remove a specific item from an array in JavaScript?
- How do I delete a Git branch locally and remotely?
- Find all files containing a specific text (string) on Linux?
- How do I revert a Git repository to a previous commit?
- How do I create an HTML button that acts like a link?
- How do I check out a remote Git branch?
- How do I force "git pull" to overwrite local files?
- How do I list all files of a directory?
- How to check whether a string contains a substring in JavaScript?
- How do I redirect to another webpage?
- How can I iterate over rows in a Pandas DataFrame?
- How do I convert a String to an int in Java?
- Does Python have a string 'contains' substring method?
- How do I check if a string contains a specific word?
So after comparing the headers of an IDP initiated request and an SP initiated request, I noticed a difference. The IDP initiated request was missing the wctx parameter. Once I included this in my relaystate, the WIF RP app worked fine.