檢查清單︰ 設定 AD FS 使用 AD FS 從宣告 1.xChecklist: Configuring AD FS to Consume Claims from AD FS 1.x

適用於:Windows Server 2016、Windows Server 2012 R2、Windows Server 2012Applies To: Windows Server 2016, Windows Server 2012 R2, Windows Server 2012

檢查清單︰ 設定 AD FS 使用 AD FS 從宣告 1.xChecklist: Configuring AD FS to consume claims from AD FS 1.x

此檢查清單會包含所需的設定您的 Active Directory 同盟服務 (AD FS) 同盟服務使用宣告 AD FS 1 所傳送的 Windows Server 2012 中的工作。x同盟服務。This checklist includes the tasks that are necessary for configuring your Active Directory Federation Services (AD FS) Federation Service in Windows Server 2012 to consume claims that are sent by an AD FS 1.x Federation Service.

注意

完成此訂單中的檢查清單中的工作。Complete the tasks in this checklist in order. 當參考連結可讓您的程序時,返回本主題之後在您完成該程序中的步驟操作,以便您可以繼續檢查清單中的其餘的工作。When a reference link takes you to a procedure, return to this topic after you complete the steps in that procedure so that you can proceed with the remaining tasks in this checklist.

<span data-ttu-id="0a793-108">使用宣告 AD FS 從](media/2b05dce3-938f-4168-9b8f-1f4398cbdb9b.gif)**檢查清單︰ 設定 AD FS 使用 AD FS 從宣告 1.x**</span><span class="sxs-lookup"><span data-stu-id="0a793-108">consume claims from AD FSChecklist: Configuring AD FS to consume claims from AD FS 1.x

工作Task 參考資料Reference
使用 AD FS 從宣告 規劃跨平台與 Windows Server 2012 中的 AD FS 舊版 AD FS,並了解更多有關名稱 ID 宣告類型。Plan for interoperability between AD FS in Windows Server 2012 and previous versions of AD FS, and learn more about the Name ID claim type. <span data-ttu-id="0a793-113">使用宣告 AD FS 從規劃 AD FS 使用的跨平台 1.x](https://technet.microsoft.com/library/ff678040.aspx)consume claims from AD FSPlanning for Interoperability with AD FS 1.x
使用 AD FS 從宣告 您可以使用舊版 AD FS 交互之前,您必須先建立宣告 AD FS 同盟服務提供者信任。Before you can interoperate with a previous version of AD FS, you must first create a claims provider trust in the AD FS Federation Service. 注意:您無法使用 AD FS 1 中建立信任關係。x使用聯盟中繼資料同盟服務。Note: You cannot create a trust with an AD FS 1.x Federation Service by using federation metadata.

當您設定程序使用中的直接連結信任時,您必須完成以下新增宣告提供者信任精靈交互操作 AD FS 1 信任此設定。x同盟服務:When you set up the trust using the procedure in the link to the right, you must do the following in the Add Claims Provider Trust Wizard to set up this trust to interoperate with an AD FS 1.x Federation Service:

1.在選取資料來源頁面上,選取 [輸入資料可以手動廠商信任1. On the Select Data Source page, select Enter data about the relying party trust manually.
2.在選擇設定檔頁面上,選取的設定檔 AD FS 1.0 和 1.12. On the Choose Profile page, select AD FS 1.0 and 1.1 profile.
3.在設定的 URL頁面上,在WS-聯盟被動式 URL,輸入同盟服務端點 URL AD FS 1 中所定義。x的合作夥伴同盟服務。3. On the Configure URL page, under WS-Federation Passive URL, type the Federation Service endpoint URL as defined in the AD FS 1.x Federation Service of the partner.
4.在設定識別碼頁面上,在宣告提供者信任識別碼,輸入同盟服務 URI AD FS 1 中所定義。x的合作夥伴同盟服務。4. On the Configure Identifiers page, under Claims provider trust identifier, type the Federation Service URI as defined in the AD FS 1.x Federation Service of the partner.
<span data-ttu-id="0a793-122">使用宣告 AD FS 從宣告提供者信任手動建立](../../ad-fs/operations/Create-a-Claims-Provider-Trust.md)consume claims from AD FSCreate a Claims Provider Trust Manually
使用 AD FS 從宣告 在您先前建立的宣告提供者信任,您必須建立理賠要求規則的需要從 AD FS 傳入的宣告 1.x 同盟服務和通過、篩選,或將它們轉換成名稱 ID 宣告類型。On the claims provider trust that you created earlier, you must create a claim rule that will take claims that are incoming from the AD FS 1.x Federation Service and pass through, filter, or transform them into a Name ID claim type.

當名稱 ID 宣告類型已已經通過,篩選掉,或轉換,它可以當做輸入到另一個規則或規則,了解並由 AD FS 同盟服務 Windows Server 2012 中。When the Name ID claim type has been passed through, filtered, or transformed, it can be used as input to another rule or rules so that it can be understood and consumed by the AD FS Federation Service in Windows Server 2012 .
<span data-ttu-id="0a793-126">使用宣告 AD FS 從建立傳送給 AD FS 規則 1.x 相容宣告](../../ad-fs/operations/Create-a-Rule-to-Send-an-AD-FS-1x-Compatible-Claim.md)consume claims from AD FSCreate a Rule to Send an AD FS 1.x Compatible Claim
使用 AD FS 從宣告 請連絡 1 AD FS 管理員。x同盟服務和 AD FS 1 您的系統管理員。x設定新的資源合作夥伴信任同盟服務。Contact the administrator of the AD FS 1.x Federation Service and have the administrator of the AD FS 1.x Federation Service set up a new resource partner trust. 同時,提供同盟服務 URI 的系統管理員 \(以同盟服務 properties),同盟服務端點 URL,及匯出 token-簽署憑證檔案 \(的公用按鍵 only)。Also, provide that administrator with the Federation Service URI (in the Federation Service properties), the Federation Service endpoint URL, and an exported token-signing certificate file (with public key only). 系統管理員必須設定信任的這些項目。The administrator will need these items to set up the trust. A N\ 日N/A