Windows Server 2016 AD FS 测试登陆界面配置报错

Posted ***忘了时间的钟***

tags:

篇首语:本文由小常识网(cha138.com)小编为大家整理,主要介绍了Windows Server 2016 AD FS 测试登陆界面配置报错相关的知识,希望对你有一定的参考价值。

 

默认安装完成ADFS 之后,AD FS 2012 R2 and 2016 有the ldpinitiatedsignon.aspx page,

地址:https://sts.focuswincloud.cn/adfs/ls/idpinitiatedsignon.aspx

但是在Windows server 2012 R2 里面是正常的

Windows server 2016 默认打开报错:

 

Usually after building an AD FS/WAP farm I test locally from the Internet and the Intranet using (to-date) a fairly reliable source of verification that the service is up and running. I’m referring to, of course, the IdP sign-in page (../adfs/ls/idpinitiatedsignon.aspx). This offers a simple way of validating login via AD FS.

With Windows Server 2016, this page is no longer surfaced “out-of-the-box”.. if you want to do a SAML 2.0  IdP-initiated sign-on, this functionality will need to be enabled. Otherwise, connecting to the obligatory sign-in page, will produce an error similar to the following:

2016-06-10_18-06-00

Testing from the Web Application Proxy itself directly,  pointing to the AD FS farm, we may see an HTTP 503 Service Not Available error.

Via Powershell, it can be switched back on:

set-adfsproperties -EnableIdpInitiatedSignon $True

 

以上是关于Windows Server 2016 AD FS 测试登陆界面配置报错的主要内容,如果未能解决你的问题,请参考以下文章

windows server 2016 AD安装

Windows server2016中可以实现对AD备份和还原的工具是啥?

Windows server 2016 部署AD(Windows 域)

windows server 2016 添加AD域控制器

windows server2016部署AD(活动目录)

如何将 server 2008 R2 AD升级到server 2016 AD