Azure ADFS 2019 Azure SQL/mi Options?

Rodney R. Fournier 21 Reputation points
2020-08-13T16:58:56.22+00:00

We want to do a cut over from ADFS 3.0 to Azure 5.0 (2019) in the cloud. I read that Server 2016 ADFS does NOT support Azure SQL, we tired with 2019 and it did not work either, could not find the Database from the wizard. Should we try SQL mi or since that is also a PaaS solution go with SQL VMs? Anyone have MSFT documentation as to what is supported for Server 2019 ADFS (5.0) and SQL? We want to stay in Azure and leave on premise.

Thanks!

Azure SQL Database
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,197 questions
0 comments No comments
{count} votes

Accepted answer
  1. Pierre Audonnet - MSFT 10,166 Reputation points Microsoft Employee
    2020-08-13T17:37:04.847+00:00

    As far as I know, there is still no support for Azure based SQL in any version of ADFS. BUT there is really not a lot of reasons to go with SQL anyways. So you go use WID as a backend for your ADFS virtual machines in Azure IaaS.

    WID supports up to 100 trust entries.
    WID supports up to 25 nodes in the same farm.
    WID does not support SAML Artifact Resolution (which is an old school SAML stuff that quite frankly I have seen only once being used)
    WID does not support Token Replay Detection, but that feature is only active when ADFS is consuming a token (such as when ADFS is trusting another IDP). If you are only using AD as a claim provider trust, you can't use it.

    Also, if you are using ADFS for SSO with Azure AD workloads (such as Office 365), you can replace it with Azure Active Directory Seamless Single Sign-On (whether it is using PTA or PHS).

    If you are currently using SQL and wish to move back to WID, you can use the ADFS Rapid Restore tool to backup your SQL based environment and restore it (with same name, same ID, same everything) in a WID based farm.

    1 person found this answer helpful.
    0 comments No comments

0 additional answers

Sort by: Most helpful