建立傳送主張使用自訂規則規則Create a Rule to Send Claims Using a Custom Rule

適用於:Windows Server 2016、Windows Server 2012 R2Applies To: Windows Server 2016, Windows Server 2012 R2

使用傳送主張使用自訂規則範本 Active Directory 同盟 Services (AD FS) 中的,您可以建立自訂宣告規則情形一般規則範本不符合您的組織的需求。By using the Send Claims Using a Custom Rule template in Active Directory Federation Services (AD FS), you can create custom claim rules for situation in which a standard rule template does not satisfy the requirements of your organization. 自訂宣告規則撰寫理賠要求規則語言和必須複製到自訂規則之前規則集合中所使用的文字方塊。Custom claim rules are written in the claim rule language and must then be copied into the Custom rule text box before they can be used in a rule set. 針對建構語法進階規則的詳細資訊,請查看的角色理賠要求規則語言的For information about constructing the syntax for an advanced rule, see The Role of the Claim Rule Language.

您可以使用下列程序,請使用 AD FS 管理 snap\ 中建立理賠要求規則。You can use the following procedure to create a claim rule by using the AD FS Management snap-in.

資格在系統管理員,或相當於、在本機電腦上已完成此程序的最低需求。Membership in Administrators, or equivalent, on the local computer is the minimum requirement to complete this procedure. 檢視詳細資料使用適當的帳號,並群組成員資格,本機和網域預設群組Review details about using the appropriate accounts and group memberships at Local and Domain Default Groups.

若要建立通過或篩選可以方信任 Windows Server 2016 上的連入理賠要求規則To create a rule to pass through or filter an incoming claim on a Relying Party Trust in Windows Server 2016

  1. 在伺服器管理員中,按一下工具,然後選取 [ AD FS 管理In Server Manager, click Tools, and then select AD FS Management.

  2. 主控台中在AD FS,按一下 [做為基礎的派對信任In the console tree, under AD FS, click Relying Party Trusts. 建立規則

  3. Right\ 按一下信任選取,然後再按一下編輯宣告發行原則Right-click the selected trust, and then click Edit Claim Issuance Policy. 建立規則

  4. 編輯宣告發行原則對話方塊中,在發行轉換規則新增規則以開始規則精靈。In the Edit Claim Issuance Policy dialog box, under Issuance Transform Rules click Add Rule to start the rule wizard. 建立規則

  5. 選取 [規則範本頁面上,在理賠要求規則範本、選取傳送主張使用自訂規則從清單中,然後按一下下一步On the Select Rule Template page, under Claim rule template, select Send Claims Using a Custom Rule from the list, and then click Next.
    建立規則

  6. 設定規則頁面上,在理賠要求規則名稱,輸入顯示名稱本規則。On the Configure Rule page, under Claim rule name, type the display name for this rule. 自訂規則中,輸入或貼上您想要這個規則理賠要求規則語言語法。Under Custom rule, type or paste the claim rule language syntax that you want for this rule.
    建立規則

  7. 按一下完成Click Finish.

  8. 編輯理賠要求規則對話方塊中,按[確定]來儲存規則。In the Edit Claim Rules dialog box, click OK to save the rule.

若要建立通過或篩選在 Windows Server 2016 宣告提供者信任傳入理賠要求規則To create a rule to pass through or filter an incoming claim on a Claims Provider Trust in Windows Server 2016

  1. 在伺服器管理員中,按一下工具,然後選取 [ AD FS 管理In Server Manager, click Tools, and then select AD FS Management.

  2. 在主控台在AD FS,按一下 [宣告提供者信任In the console tree, under AD FS, click Claims Provider Trusts. 建立規則

  3. Right\ 按一下信任選取,然後再按一下編輯理賠要求規則Right-click the selected trust, and then click Edit Claim Rules. 建立規則

  4. 編輯理賠要求規則對話方塊中,在接受轉換規則[新增規則開始規則精靈。In the Edit Claim Rules dialog box, under Acceptance Transform Rules click Add Rule to start the rule wizard. 建立規則

  5. 選取 [規則範本頁面上,在理賠要求規則範本、選取傳送主張使用自訂規則從清單中,然後按一下下一步On the Select Rule Template page, under Claim rule template, select Send Claims Using a Custom Rule from the list, and then click Next.
    建立規則

  6. 設定規則頁面上,在理賠要求規則名稱,輸入顯示名稱本規則。On the Configure Rule page, under Claim rule name, type the display name for this rule. 自訂規則中,輸入或貼上您想要這個規則理賠要求規則語言語法。Under Custom rule, type or paste the claim rule language syntax that you want for this rule.
    建立規則

  7. 按一下完成Click Finish.

  8. 編輯理賠要求規則對話方塊中,按[確定]來儲存規則。In the Edit Claim Rules dialog box, click OK to save the rule.

若要建立傳送主張使用在 Windows Server 2012 R2 的自訂理賠要求規則To create a rule to send claims by using a custom claim in Windows Server 2012 R2

  1. 在伺服器管理員中,按一下工具,然後按AD FS 管理In Server Manager, click Tools, and then click AD FS Management.

  2. 主控台中在AD FS\Trust 關係,按一下宣告提供者信任可以廠商信任,,然後按一下 [特定信任在清單中您想要用來建立本規則。In the console tree, under AD FS\Trust Relationships, click either Claims Provider Trusts or Relying Party Trusts, and then click a specific trust in the list where you want to create this rule.

  3. Right\ 按一下信任選取,然後再按一下編輯理賠要求規則Right-click the selected trust, and then click Edit Claim Rules.
    建立規則

  4. 編輯理賠要求規則對話方塊中,選取其中一種下列索引標籤,而定信任您正在編輯,並在哪一個規則設定您想要建立本規則,然後按一下 [ [新增規則以開始規則該組相關聯的規則精靈:In the Edit Claim Rules dialog box, select one the following tabs, which depends on the trust that you are editing and in which rule set you want to create this rule, and then click Add Rule to start the rule wizard that is associated with that rule set:

    • 接受轉換規則Acceptance Transform Rules

    • 發行轉換規則Issuance Transform Rules

    • 發行授權規則Issuance Authorization Rules

    • 委派授權規則Delegation Authorization Rules
      建立規則

  5. 選取 [規則範本頁面上,在理賠要求規則範本、選取傳送主張使用自訂規則從清單中,然後按一下下一步On the Select Rule Template page, under Claim rule template, select Send Claims Using a Custom Rule from the list, and then click Next.
    建立規則

  6. 設定規則頁面上,在理賠要求規則名稱,輸入顯示名稱本規則。On the Configure Rule page, under Claim rule name, type the display name for this rule. 自訂規則中,輸入或貼上您想要這個規則理賠要求規則語言語法。Under Custom rule, type or paste the claim rule language syntax that you want for this rule.
    建立規則

  7. 按一下完成Click Finish.

  8. 編輯理賠要求規則對話方塊中,按[確定]來儲存規則。In the Edit Claim Rules dialog box, click OK to save the rule.

其他參考資料Additional references

設定理賠要求規則Configure Claim Rules

檢查清單︰ 建立信賴的派對信任理賠要求規則Checklist: Creating Claim Rules for a Relying Party Trust

檢查清單︰ 建立理賠要求規則宣告提供者信任Checklist: Creating Claim Rules for a Claims Provider Trust

使用授權理賠要求規則When to Use an Authorization Claim Rule

宣告的角色The Role of Claims

宣告規則的角色The Role of Claim Rules