Jump to content

Recommended Posts

Posted

Hi All

 

We have a new requirement and I have asked to find a solution to something we want to implement and wanted to know if AD LDS would be the right way to do this.

 

We have a web server in our DMZ and a new IIS based application is being built which our customers will use to authenticate with to login to the system. The IIS server will be configured to support federation using Google, facebook etc. However our internal users who are joined to our Active Directory domain will also need access.

 

As the server is in the DMZ and isn't connected to our domain we need someway for the IIS application to support AD authentication as well for these users to login otherwise we will need to create separate logins which will be an administrative nightmare.

 

The web server is Windows Server 2008 R2 and our AD is 2008 R2 with forest and domain functional levels set to WIndows 2008 R2.

 

We also use ADFS 2012 R2 to allow internal applications (connected to the domain) through ADFS and web application proxy for external based access.

 

My question is what options are available to us to address this new requirement? any advice on this would be most appreciated.

 

Thanks

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...