Enable ADFS Communication

 

This Section describes all required steps you must do in order to enable ConnectMaster to communicate with your ADFS server.

ADFS SERVER CONFIGURATION

This section describes how to configure your ADFS server, so that it will accept requests by the ConnectMaster application, and it will respond with the correct information.

Enable /usernamemixed endpoint

ConnectMaster uses the ADFS endpoint /adfs/services/trust/13/usernamemixed. You must enable this endpoint in the ADFS configuration on the server side.

You can find the endpoints in the AD FS Management window of the
Server Manager (Tools -> AD FS Management) … under the point Service -> Endpoints.

 

ADFS_M~1_img4

 

ADFS_M~1_img5

Configure ConnectMaster as a Relying Party Trust

To allow ConnectMaster to receive information from the ADFS, it must be added as a Relying Party Trust in the ADFS configuration.

 

The following screenshots show the steps that are necessary:

 

ADFS_M~1_img6

ADFS_M~1_img7

ADFS_M~1_img8

 

Specify a proper Display name.

ADFS_M~1_img9

Proceed with "Next".

ADFS_M~1_img10

Proceed with "Next".

ADFS_M~1_img11

Proceed with "Next".

ADFS_M~1_img12

Add the URL https://vertigis.com/connectmaster as Relying party trust identifier, because ConnectMaster will identify itself with this URL. Hit "Add" to do so.

 

ADFS_M~1_img13

Proceed with "Next".

ADFS_M~1_img14

Specify the policy "Permit everyone" and proceed with "Next".

 

ADFS_M~1_img15

Select the option “Configure claims …” to add a Claim rule to the Relying Party Trust. This Claim rule is necessary to send the needed information to Connect Master. Proceed with "Close".

 

Because you have chosen to configure claims the next form does appear automatically.

ADFS_M~1_img16

Choose "Add Rule".

ADFS_M~1_img17

Proceed with "Next".

ADFS_M~1_img18

Specify a proper Claim Rule Name.

The three LDAP mappings shown in the screenshot above are necessary for ConnectMaster to manage the ConnectMaster user rights via ADFS.

Proceed with "Finish".

ADFS_M~1_img19

Finish the Procedure with "OK".