Examples of using Microsoft federation in English and their translations into German
{-}
-
Colloquial
-
Official
-
Ecclesiastic
-
Medicine
-
Financial
-
Ecclesiastic
-
Political
-
Computer
-
Programming
-
Official/political
-
Political
Cancel enrollment with the Microsoft Federation Gateway.
In the Microsoft Federation Gateway Support wizard, click Next, and then click Finish.
In the pane, click Configure Microsoft Federation Gateway settings.
The AD RMS cluster must be configured touse an SSL-encrypted connection that uses a certificate that the Microsoft Federation Gateway trusts.
Deploying AD RMS with Microsoft Federation Gateway Support.
The certificate mustbe from a certificate authority that is trusted by the Microsoft Federation Gateway.
Deploying AD RMS with Microsoft Federation Gateway Support.
In the console tree, click Trust Policies, and then in the Actions pane, click Add Microsoft Federation Gateway Support.
With the Microsoft Federation Gateway, authentication from the identity provider is supplied to the gateway by using a standard format called Security Assertion Markup Language SAML.
You can enroll again with the Microsoft Federation Gateway later.
For more information about the requirements for the SSL certificate,see Important considerations for installing AD RMS with Microsoft Federation Gateway Support.
For more information, see Remove Microsoft Federation Gateway Support.
After adding Microsoft Federation Gateway Support, you must enroll the cluster with the Microsoft Federation Gateway and then enable Microsoft Federation Gateway Support.
In the results pane, click Manage Microsoft Federation Gateway Support.
Microsoft Federation Gateway Support in Windows Server® 2008 R2 enables AD RMS to accept tokens from the Microsoft Federation Gateway to authenticate users for certification and licensing.
In the Actions pane, click Configure Microsoft Federation Gateway Support.
The Microsoft Federation Gateway is an identity service that runs over the Internet and mediates between an organization or business and the external services that the organization wants to use.
Before uninstalling Service Pack 1 for Windows Server® 2008 R2,you must remove Microsoft Federation Gateway Support from the AD RMS cluster.
The Microsoft Federation Gateway provides applications with a simple, standards-based method of establishing trust between separate organizations that uses SSL certificates to prove domain ownership.
To prove your ownership of the domain that you want to federate with the Microsoft Federation Gateway, you must own the X. 509 SSL certificate for that domain.
If the SSL certificate contains a subject alternate name(SAN), the last entry in the SAN list must be the fully qualifieddomain name of the domain you want to enroll with the Microsoft Federation Gateway.
Because these features require theability of two organizations to establish a trust relationship, Microsoft Federation Gateway Support plays a crucial role in their deployment.
If you ran the wizard to enroll with the Microsoft Federation Gateway, you should list the domains that you want to allow or to block from receiving certificates and licenses from your AD RMS cluster.
If you have rights policy templates that grant user rights to Anyone, you should consider modifying them to prevent grantingrights to external users who are authenticated through the Microsoft Federation Gateway.
In the Enroll Cluster with Microsoft Federation Gateway wizard, click Update Microsoft Federation Gateway Settings, select Update Microsoft Federation Gateway Certificate, and then click Next.
If the certificate you select in step 5 contains a subject alternate name(SAN), the last entry in the SAN list must be the fully qualifieddomain name of the domain you want to enroll with the Microsoft Federation Gateway.
When the Enroll Cluster with the Microsoft Federation Gateway wizard appears, verify that the SSL certificate is the correct certificate that proves domain ownership for enrolling with the Microsoft Federation Gateway.
If the AD RMS cluster is configured with an intranet URL that is different from the extranet URL and if the intranet URL is not a domain name that can be accessed from the Internet, you must install the SSL certificate associated with the extranet URL on this AD RMS server andthen select that certificate when enrolling with the Microsoft Federation Gateway.
In the Enroll Cluster with Microsoft Federation Gateway wizard, click Terminate Federation Relationship, and then verify that the SSL certificate is the correct certificate for enrolling with the Microsoft Federation Gateway.
On one server in the AD RMS cluster, enroll the cluster with the Microsoft Federation Gateway and then enable Microsoft Federation Gateway Support by following the instructions in Enroll with the Microsoft Federation Gateway.