移轉 AD FS 2.0 聯盟伺服器 Proxy 準備Prepare to Migrate the AD FS 2.0 Federation Server Proxy

準備 AD FS 2.0 聯盟伺服器 proxy 移轉到 Windows Server 2012 時,您必須匯出與從這個的 proxy 伺服器備份 AD FS 設定資料。To prepare to migrate an AD FS 2.0 federation server proxy to Windows Server 2012, you must export and back up the AD FS configuration data from this server proxy. 本主題中的步驟操作套用到的一個 proxy 聯盟伺服器的案例或多個 proxy 聯盟伺服器。The steps in this topic apply to a scenario with one proxy federation server or multiple proxy federation servers.

若要匯出 AD FS 設定資料,請執行下列工作:To export the AD FS configuration data, perform the following tasks:

步驟 1:匯出 proxy 服務設定Step 1: Export proxy service settings

若要匯出聯盟伺服器 proxy 服務設定,請執行下列程序:To export federation server proxy service settings, perform the following procedure:

若要匯出 proxy 服務設定To export proxy service settings

  1. 安全通訊端層 (SSL) 憑證和匯出其私密金鑰.pfx 檔案。Export the Secure Sockets Layer (SSL) certificate and its private key to a .pfx file. 如需詳細資訊,請查看匯出私人鍵部分伺服器驗證憑證的For more information, see Export the Private Key Portion of a Server Authentication Certificate.

注意

這個步驟是選擇性的因為此憑證會在作業系統升級過程中保留。This step is optional because this certificate is preserved during the operating system upgrade.

  1. 檔案匯出 AD FS 2.0 聯盟 proxy 屬性。Export AD FS 2.0 federation proxy properties to a file. 您可以使用 Windows PowerShell 來執行的動作。You can do that by using Windows PowerShell.

打開 Windows PowerShell 並執行下列命令新增至您的 Windows PowerShell 工作階段的 AD FS cmdlet: PSH:>add-pssnapin “Microsoft.adfs.powershell”Open Windows PowerShell and run the following command to add the AD FS cmdlets to your Windows PowerShell session: PSH:>add-pssnapin “Microsoft.adfs.powershell”. 然後執行下列命令,以聯盟 proxy 屬性匯出至檔案:PSH:> Get-ADFSProxyProperties | out-file “.\proxyproperties.txt”Then run the following command to export federation proxy properties to a file: PSH:> Get-ADFSProxyProperties | out-file “.\proxyproperties.txt”.

  1. 請確定您知道帳號,AD FS 聯盟伺服器的系統管理員或服務帳號 AD FS 同盟服務執行的認證。Ensure you know the credentials of an account that is either an administrator of the AD FS federation server or the service account under which the AD FS federation service runs. Proxy 信任設定為需要這項資訊。This information is required for the proxy trust setup.

    完成此步驟會導致收集所需設定您 AD FS 聯盟伺服器 proxy 下列資訊:Completing this step results in gathering the following information that is required to configure your AD FS federation server proxy:

  • AD FS 同盟服務名稱AD FS federation service name

  • 所需的安裝程式 proxy 信任的網域帳號名稱Name of the domain account that is required for the proxy trust setup

  • 地址和(如果之間 AD FS 聯盟伺服器 proxy 伺服器 AD FS 聯盟 HTTP proxy)HTTP proxy 連接埠The address and the port of the HTTP proxy (if there is an HTTP proxy between the AD FS federation server proxy and the AD FS federation servers)

步驟 2:備份網頁的自訂項目Step 2: Back up webpage customizations

若要備份網頁的自訂項目,複製 AD FS proxy 網頁和web.config檔案從 [對應至 virtual 路徑 directory 」日 adfs 日 ls]在。To back up webpage customizations, copy the AD FS proxy webpages and the web.config file from the directory that is mapped to the virtual path “/adfs/ls” in IIS. 根據預設,這是在%systemdrive%\inetpub\adfs\ls directory。By default, it is in the %systemdrive%\inetpub\adfs\ls directory.

後續步驟Next Steps

準備移轉 AD FS 2.0 聯盟伺服器Prepare to Migrate the AD FS 2.0 Federation Server
移轉 AD FS 2.0 聯盟伺服器 Proxy 準備Prepare to Migrate the AD FS 2.0 Federation Server Proxy
移轉 AD FS 2.0 聯盟伺服器Migrate the AD FS 2.0 Federation Server
移轉 AD FS 2.0 聯盟伺服器 ProxyMigrate the AD FS 2.0 Federation Server Proxy
移轉 AD FS 1.1 Web 代理程式Migrate the AD FS 1.1 Web Agents