+ Post New Thread
Results 1 to 13 of 13
Cloud Services Thread, Office 365 and ADFS in Technical; Morning, Trying to get my head round ADFS and office 365. i want to trial the weboffice bit and not ...
  1. #1

    Join Date
    Nov 2005
    Location
    North
    Posts
    1,817
    Thank Post
    24
    Thanked 91 Times in 71 Posts
    Rep Power
    50

    Office 365 and ADFS

    Morning,

    Trying to get my head round ADFS and office 365. i want to trial the weboffice bit and not the exchange.

    I followed the instructions on this article AD FS with Office 365 Step by Step Install GuideMessageOps | MessageOps but when i get to the convert to Convert-MsolDomainToFederated –DomainName domain.com bit I am getting

    failed to setup trust with the microsoft federated gateway

    I have read the MS stuff (man they know how to overcomplicate stuff) and think I have got my head round what I need to do.

    Would my firewall be blocking the traffic, its a server so everything should go out okay but it is Smoothwall.

  2. #2
    dezt's Avatar
    Join Date
    Dec 2005
    Location
    Lancs
    Posts
    1,026
    Thank Post
    157
    Thanked 58 Times in 46 Posts
    Rep Power
    29
    Hi Simcfc73, I had lots of problems setting this up using the same article, here is a link to the thread that I set up with my problems, and fixes. Hope it is of some use to you.

    SSO with Office 365

    dezt

  3. #3

    m25man's Avatar
    Join Date
    Oct 2005
    Location
    Romford, Essex
    Posts
    1,621
    Thank Post
    49
    Thanked 451 Times in 334 Posts
    Rep Power
    137
    One quick tip I will offer is setup the adfs service on a 2008R2 box, we recently did a 60 user migration installed a 2012 DC and configured adfs.
    The migration went fine and all users worked fine for a couple of days then the adfs service failed to start and nobody could login to 365.
    Having escalated this to MS 365 3rd line support they eventually admitted that ADFS had problems with 2012 Server and were waiting for a hotfix or service pack! they then asked us to re-set it all up on a 2008R2 box (by which time we had already worked out for ourselves).
    We did and all is well....

  4. #4
    dezt's Avatar
    Join Date
    Dec 2005
    Location
    Lancs
    Posts
    1,026
    Thank Post
    157
    Thanked 58 Times in 46 Posts
    Rep Power
    29
    i'll second @m25man's comment, we are running our ADFS on 2008R2 boxes.

  5. #5
    jamesbmarshall's Avatar
    Join Date
    Feb 2010
    Location
    Reading, UK
    Posts
    509
    Thank Post
    26
    Thanked 226 Times in 157 Posts
    Rep Power
    85
    Quote Originally Posted by Simcfc73 View Post
    Trying to get my head round ADFS and office 365. i want to trial the weboffice bit and not the exchange.
    If you're looking just to trial the Office Web Apps I would suggest that deploying full-blown DirSync and AD FS is overkill! While DirSync and AD FS are great solutions to ID provisioning and management, you don't need them up front.

    You can trial Office 365 with literally no on-premises servers.

  6. #6

    Join Date
    Nov 2005
    Location
    North
    Posts
    1,817
    Thank Post
    24
    Thanked 91 Times in 71 Posts
    Rep Power
    50
    Hit a snag, major PITA. After a reboot I cannot log onto the server as its saying the 'the security database on the server does not have a computer account' I found an article saying its a SPN issue and changing the service account that the ADFS pool uses to a local account. Tried that but its still not letting me on. The biggest pain is I have used the server which has eclipse.net on so that's not working either. Anyone got any advise?

  7. #7

    Join Date
    Nov 2005
    Location
    North
    Posts
    1,817
    Thank Post
    24
    Thanked 91 Times in 71 Posts
    Rep Power
    50
    Looks like irs because I used the servername for my pool or something like that...its 20 past midnight and I need to look at this in a clearer light. Its obviously a domain issue as I tried to recover the server and its still showing the error. Wonder if I could change the server name????

  8. #8

    Join Date
    Nov 2005
    Location
    North
    Posts
    1,817
    Thank Post
    24
    Thanked 91 Times in 71 Posts
    Rep Power
    50
    Jeez, could MS make it any more annoying to fix after you make 1 little error. I had to change the server name which seems to have caused all sorts of problems not least that its throwing up errors about the computer ID int he database being wrong.... even though i have uninstalled the ADFS stuff 4 times, removed the DB and now into trying to sort it by using the server key managemnt utility which won't let me in with a password error. I only wanted to test office 365 but I think i will call it a day and go over to the dark side.

  9. #9
    jamesbmarshall's Avatar
    Join Date
    Feb 2010
    Location
    Reading, UK
    Posts
    509
    Thank Post
    26
    Thanked 226 Times in 157 Posts
    Rep Power
    85
    You don't need to try and untangle this alone - support for Office 365 is free; why don't you give them a call and see if they can help you fix this?

    AD FS is not something to deploy lightly and, like I said earlier in the thread, isn't something you need in order to be able to test out the full capabilities of the service.

  10. #10

    Join Date
    Nov 2005
    Location
    North
    Posts
    1,817
    Thank Post
    24
    Thanked 91 Times in 71 Posts
    Rep Power
    50
    Woohoo, got it synching. i removed the ADFS and the microsoft sync stuff which muct have had the computer name hard coded somewhere. All users are now synched.

  11. #11

    Join Date
    Nov 2005
    Location
    North
    Posts
    1,817
    Thank Post
    24
    Thanked 91 Times in 71 Posts
    Rep Power
    50
    Well thats another keyboard I hve broken. Synching worked, eventually got the Remote Connectivity Analyser to tivck all the boxes but now I can't log onto the domain from the portal and am getting
    Error


    There was a problem accessing the site. Try to browse to the site again.
    If the problem persists, contact the administrator of this site and provide the reference number to identify the problem.
    Reference number: c5441ad3-4405-486b-987a-8bc4a547621e

    Looking online it pretty much says, something is broken.. check every single thing you have done again and good luck. I am sure ADFS and SSO are wonderful if they go swimmingly but I am sick of technet now and most just go round and round in circles.

  12. #12
    jamesbmarshall's Avatar
    Join Date
    Feb 2010
    Location
    Reading, UK
    Posts
    509
    Thank Post
    26
    Thanked 226 Times in 157 Posts
    Rep Power
    85
    Quote Originally Posted by Simcfc73 View Post
    I am sure ADFS and SSO are wonderful if they go swimmingly but I am sick of technet now and most just go round and round in circles.
    Is AD FS a requirement for your deployment? It sounds like you're hitting problems with the identity piece, rather than the service itself. You don't need to go down the route of a full blown DirSync and AD FS deployment in order to test out the features of SharePoint.

    All you need to do is provision a new user in the management console of Office 365, assign it a SharePoint & Office Web Apps licence and then you're able to access that feature. I'd strongly recommend holding off trying to integrate with your local AD until you're ready to and comfortable with the service.

    Did you try contacting support? You don't need to spend hours trawling through TechNet (unless you're into that sort of thing) unnecessarily when there's free support on hand to help.

  13. #13

    EduTech's Avatar
    Join Date
    Aug 2007
    Location
    Reading
    Posts
    5,038
    Thank Post
    160
    Thanked 909 Times in 713 Posts
    Blog Entries
    3
    Rep Power
    270
    I have sent you a PM in regards to the problems your having with ADFS at this moment in time, more than happy to have a chat with you about it see if we can find out what your problem us. but, as James says if your just using this for a trial at the moment i would not worry too much about getting ADFS/DirSync to work use the Local User accounts to explore the features of Office 365.

    James.

SHARE:
+ Post New Thread

Similar Threads

  1. Office 365 and HP Printers.
    By pandster in forum Cloud Services
    Replies: 9
    Last Post: 16th September 2013, 03:33 PM
  2. Office 365 and high availability
    By vikpaw in forum Cloud Services
    Replies: 7
    Last Post: 19th November 2012, 11:13 AM
  3. Office 365 and SSO
    By Simcfc73 in forum Cloud Services
    Replies: 1
    Last Post: 10th November 2012, 12:31 AM
  4. Office 365 and 2013 spoint
    By pmdc199 in forum Cloud Services
    Replies: 6
    Last Post: 12th September 2012, 08:33 AM
  5. Office 365 and head@ style addresses
    By djones in forum Cloud Services
    Replies: 3
    Last Post: 30th July 2012, 01:42 PM

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •