The Entrust AD FS Adapter uses the pluggable multi-factor authentication (MFA) option of AD FS to integrate Identity as a Service with AD FS. This integration guides provides the instructions to add a legacy version of the Entrust IdentityGuard AD FS Adapter to Identity as a Service. For the new Identity as a Service AD FS Adapter that includes an installer to install the Identity as a Service plug-in, see the instructions in Integrate IDaaS AD FS Adapter.
This integration supports the following authentication methods for Identity as a Service:
● One-time password (OTP)
● Token (soft token and hardware token)
For legacy versions of the Entrust IdentityGuard AD FS Adapter (versions 1.0, 1.1, and 4.0), do the following:
1. Access the technical integration guide for your version of the Entrust IdentityGuard AD FS Adapter:
● Entrust IdentityGuard AD FS Adapter 1.0
● Entrust IdentityGuard AD FS Adapter 1.1
● Entrust IdentityGuard AD FS Adapter 4.0
2. Add
Entrust IdentityGuard AD FS Adapter to Identity as a Service as an Authentication
API.
3. Protect
Entrust IdentityGuard AD FS Adapter with a resource rule.
4. Using the Entrust AD FS Adapter documentation, complete the following:
a. Install the Entrust IdentityGuard AD FS Adapter (see the section Installing the Entrust IdentityGuard AD FS Adapter).
b. Restart the AD FS Service (see the section, Restarting the AD FS Service).
c. Configure AD FS for Entrust authentication (see the section, Configuring AD FS Entrust IdentityGuard for authentication).
d. Configure AD FS for Identity as a Service (see the section, Configuring AD FS for Identity as a Service).
5. In Identity as a Service, do the following:
a. Create a gateway.
b. Configure the gateway.
c. Add a gateway instance.
Note: See the section Manage Gateways in the Administrator Help for instructions if you need to complete these steps.
d. Add
Entrust IdentityGuard AD FS Adapter to Identity as a Service.
e. Protect
Entrust IdentityGuard AD FS Adapter with a resource rule.
6. Using the applicable Entrust IdentityGuard AD FS Adapter Integration Guide, complete the following:
a. Install the Entrust IdentityGuard AD FS Adapter (see the section Installing the Entrust IdentityGuard AD FS Adapter)
b. Restart the AD FS Service (see the section, Restarting the AD FS Service)
c. Configure AD FS for Identity as a Service authentication (see the section, Configuring Entrust IdentityGuard AD FS for authentication)