Integrate IDaaS AD FS Adaptor

The IDaaS AD FS Adapter uses the pluggable multi-factor authentication (MFA) option of AD FS to integrate Identity as a Service with AD FS. The IDaaS AD FS Adapter includes an installer to install the Identity as a Service plug-in. For instructions to add a legacy version of the Entrust IdentityGuard AD FS Adapter to Identity as a Service, see Integrate Entrust IdentityGuard AD FS Adapter.

This integration supports the following authentication methods for Identity as a Service:

       One-time password (OTP)

       Token (soft token and hardware token)

Integrate Entrust Identity AD FS Adapter

1.      To complete this procedure, you need to reference the Entrust Identity AD FS Adapter 13.0 Technical Integration Guide.

Note: To ensure that you are using the latest version of the document, it is best to download the document from Entrust Trusted Care.

2.      Add IDaaS AD FS Adapter to Identity as a Service.

3.      Be sure to copy the Application ID. You need this ID to complete the installation of the Entrust AD FS Adapter 5.0 for Identity as a Service.

4.      Create a resource rule to protect access to the AD FS Adapter.

5.      Using the Entrust AD FS Adapter documentation, complete the following:

a.      Install the Entrust  AD FS Adapter (see the section Installing the Entrust AD FS Adapter).

b.      Restart the AD FS Service (see the section, Restarting the AD FS Service).

c.      Configure AD FS for Entrust authentication (see the section, Configuring Entrust AD FS for authentication).

d.      Configure AD FS for Identity as a Service (see the section, Configuring AD FS for Identity as a Service).