question

ElmerTubiera-2113 avatar image
0 Votes"
ElmerTubiera-2113 asked amanpreetsingh-msft answered

SAML 2.0 and AD FS

Hi,

We are planning to setup SSO. We have Active Directory on Windows Server 2012 R2. What are the requirements for an AD FS server to use SAML 2.0? Can we use ADFS on Windows Server 2016? Anything needed from Active Directory?

REgards,

azure-ad-saml-sso
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

amanpreetsingh-msft avatar image
0 Votes"
amanpreetsingh-msft answered

Hi @ElmerTubiera-2113 · Thank you for reaching out.

New installations of AD FS 2016 require the Active Directory 2016 schema (minimum version 85). If your Active Directory Schema version is lower than this, you need to update schema by using adprep /forestprep command using Schema Admin/Enterprise Admin account, to use all features of ADFS 2016 Farm Behavior Level (FBL).

AD FS server by default supports SAML 2.0 protocol and there are no additional requirements for it.

Read More:
- Active Directory requirements for AD FS
- https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-r2-and-2012/cc731728(v=ws.11)


Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.