Course Overview

When we want external parties to consume our applications (be it on-premises or cloud) then the federation comes into the picture. Federation allows external identities (from partner organizations or individual contractors) to access the published applications in another organization using their own organization's user account or using their personal social media accounts. 

This course primarily talks about the federation of identities using the old horse Active Directory Federation Services (ADFS) and Entra ID formerly known as Azure Active Directory (Azure AD). 

In this course, students will gain a step-by-step understanding of implementing ADFS infrastructure in Azure IAAS, and in later sections, they'll get to know how Azure AD works as a federation broker. 

During the course you will also learn how to register a custom domain in Azure AD and sync their On-Premises user objects to Azure AD using Azure AD Connect. This course will be explaining in detail how Azure B2B Collaboration and Azure B2C work.

By the end of the course, you will have an in-depth knowledge about identity federation using Microsoft ADFS and Azure AD.

The necessary resources for this course are in the "Resources" section of Video 1.1. You can also access them through this direct link - https://github.com/ec-council-learning/Federation-using-Microsoft-ADFS-and-Entra-ID

What You Will Learn

  • Detailed step by step Implementation of Microsoft ADFS Farm in Azure IAAS
  • Configure Azure Load Balancer for ADFS Farm
  • Configure Federation using ADFS between two organizations
  • Publish ADFS to internet using WAP (Windows Application Proxy)
  • Sync User Objects from On-Premises AD to Azure AD using Azure AD Connect
  • Configure Federation between Azure AD and ADFS
  • Configure Azure AD B2B and B2C
  • Decode Ws-fed
  • SAML
  • OAuth and OpenID Connect
  • Add Google as an Identity Provider in Azure AD B2B

Program Curriculum

  • Module Overview
  • What is Identity Federation?
  • Why Need Federation
  • Overview of Claim Based Identity and Claim Based Authentication
  • AD FS and Claims-based Terminology
  • Chapter 1 Quiz

  • Module Overview
  • Type of Configuration Store to Use
  • Where to Place ADFS and Proxy Servers
  • Capacity Planning for ADFS Servers
  • DNS Resolution for ADFS Farm
  • Certificate Requirements
  • Chapter 2 Quiz

  • Module Overview
  • Preparing VNET and Subnets in Azure
  • Creating NSGs in Azure
  • Deploying VMs for Domain Controllers and ADFS in Azure
  • Installing Active Directory
  • Installing Certificate Services
  • Installing ADFS Farm using WID
  • Installing Second ADFS Server in Farm
  • Configuring a Load Balancer in Azure for ADFS Farm
  • Chapter 3 Quiz

  • Module Overview
  • Claim Provider Trust and Relying Party Trust
  • Installing Web Server Role
  • Installing a Sample Claim Aware Application
  • Creating Relying Party Trust in ADFS
  • What are Claims and Claim Types?
  • What are Claim Rules?
  • How Claim Rules are Processed in Claim Pipeline
  • Chapter 4 Quiz
  • Chapter 4 Quiz

  • Module Overview
  • Understanding Our Scenario
  • Deploying AD FS in a Partner Organization
  • Federating Two Organizations via ADFS
  • Managing Claims Across Organizations
  • Understanding Home Realm Discovery
  • Installing ADFS Proxy or WAP
  • Publishing ADFS over Internet using WAP
  • Chapter 5 Quiz

  • Module Overview
  • Understanding WS-Fed, SAML, OAuth in Layman Terms
  • Decoding WS-Fed, SAML, & OAuth
  • Understanding OAuth Flow and OpenID Connect
  • Chapter 6 Quiz

  • Module Overview
  • Azure AD as an Identity Provider
  • Register a Custom Domain in Azure AD
  • Federating Azure AD with ADFS for Authentication
  • Testing of Federated Authentication
  • Setup Password Hash Synchronization or PHS as a Backup
  • Switch to Password Hash Synchronization
  • Switch Back to Federation
  • Understanding Pass Through Authentication (PTA)
  • Switch to Pass Through Authentication (PTA)- Part 1
  • Understanding Seamless Single Sign-On
  • Testing Azure AD Seamless Single Sign On - Staged Migration
  • Switch to Pass Through Authentication (PTA)- Part 2
  • Chapter 7 Quiz

  • Module Overview
  • Azure AD B2C Explained
  • Create Azure AD B2C Tenant
  • Register a Sample Application in Azure AD B2C
  • Create and Test a User Flow in Application
  • Add Facebook as an Identity Provider in Application
  • Azure AD B2B Collaboration Explained
  • Type of Guest Accounts Supported and Authentication Flow in B2B
  • Invite External User for B2B Collaboration
  • Add Google as an Identity Provider for B2B Guest Users
  • Enable One-time passcode authentication for B2B Guest User
  • Thank You
  • Chapter 8 Quiz
Load more modules

Instructor

Himanshu Rana

Himanshu is a consultant, primarily focused on Windows Active Directory, PKI, ADFS, and Microsoft Azure. He's been in this industry for the past 11+ years and worked on various projects for various clients.  He has worked as a corporate trainer in one of the best offshore training providers and delivered corporate training on various Microsoft certifications to students all over the globe. Being a Microsoft Certified Trainer, he still follows his passion for teaching.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Empower Your Learning with Our Flexible Plans

Invest in your future with our flexible subscription plans. Whether you're just starting out or looking to enhance your expertise, there's a plan tailored to meet your needs. Gain access to in-demand skills and courses for your continuous learning needs.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 600+ courses and diverse Learning Paths to enhance your skills.

$ 499.00
Billed annually or $59.00 billed monthly

What is included

  • 700+ Premium Short Courses
  • 50+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs, CTF Challenges, and exclusive EC-Council certifications for comprehensive skill-building.

$ 599.00
Billed annually or $69.00 billed monthly

Everything in Pro and

  • 800+ Practice Lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Practice Labs and Challenges added every month
  • 3 Official EC-Council Essentials Certifications¹ (retails at $897!)
    Exclusive Bonus with Annual Plans

¹This plan includes Digital Forensics Essentials (DFE), Ethical Hacking Essentials (EHE), and Network Defense Essentials (NDE) certifications. No other EC-Council certifications are included.

Related Courses

1 of 8