Direct Inward Dialing: +1 408 916 9892
Active Directory Federation Services (ADFS) is Microsoft's federated identity and access management solution that provides single sign-on (SSO) capability to web applications. The smooth functioning of ADFS has several dependencies such as the SQL server in which the configuration database is stored, DNS which resolves the federation service to appropriate IP address, certificates which form the core of ADFS, and so on. Even a minor issue in any of these can lead to problems in ADFS operations, and affect users' ability to access applications like Office365. For example, if a certificate expires and loses validity, it can collapse ADFS functionality.
DNS name resolution must be one of the first things to check while troubleshooting ADFS. DNS must be able to resolve the name of the federation service and point to the IP address of the ADFS server or the load balancer in your server farm. The following are some of the name resolution tests to be performed in case ADFS is not working or responding.
PING test sends Internet Control Message Protocol (ICMP) Echo Request messages to another TCP/IP computer to verify IP-level connectivity. To conduct the PING test:
The NSLookup command line tool can be used to fetch diagnostic details on DNS infrastructure.
Tracert command line utility traces the path to a destination by by sending Internet Control Message Protocol (ICMP) Echo Request or ICMPv6 messages with increasing Time to Live (TTL) field values.
ADAudit Plus simplifies ADFS tracking by fetching all authentication attempts recorded by ADFS and generating predefined ADFS Auditing reports along with intuitive graphical representation of the same for easy comprehension. By auditing ADFS, ADAudit Plus keeps administrators informed about trends in user activity and helps organizations meet compliance requirements. It also provides users the option to generate custom reports and export them in a preferred format (PDF, XLS, HTML, and CSV).
Native auditing becoming a little too much?
Simplify Active Directory Federation Services auditing and reporting with ADAudit Plus.
Get Your Free Trial Fully functional 30-day trial