Planning Active Directory Federated Services for SSO

The primary component that drives SSO for Lync Online is Active Directory Federated Services. AD FS is a claims-based authentication platform that runs on Windows, and is used to simplify access to applications and services using secure tokens. In the case of Lync Online, AD FS is used to establish federation between the on-premise Active Directory deployment and the Lync Online tenant. After the appropriate trusts are configured, a secure channel is created over which authentication tokens are passed, allowing users to log on seamlessly to Lync Online using their AD credentials. Although prior versions of AD FS are included with the Windows Server OS, the AD FS version required for Lync Online SSO is version 2.0, which must be downloaded from the Microsoft download site before installation.


Note

Although this chapter is focused on Lync Online, SSO is also leveraged with the other applications included in the Office 365 suite. If a full Office 365 subscription is used as opposed to just Lync Online, the same AD FS instance would be sufficient to enable SSO for all applications, and the SSO planning process described in this chapter would also remain the same.


..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset