Are you interested in Office 365 and ADFS but are intimidated by it and not sure where to begin? If that’s the case, you’ve come to the right place. I have been studying to write my 70-346 (Managing Office 365 Identities Exam) and realized that I was still really weak on ADFS and how all the pieces work together. I decided I wanted to build a fully fleshed out ADFS environment in my own lab complete with a new Office 365 tenant and ADFS configured in high availability with the recommended 4 servers (redundant federation and redundant proxy servers). So that’s what I did and I’m going to walk you through the entire setup, starting from the very beginning.
[toc]
Prerequisites
All the links download are free for testing purposes. To follow along with this HOWTO you will need:
[table]
Description,URL/Notes
Registered Domain, Including access to modify public DNS records – I used www.vanlab.net
Purchased SSL certificate that you have saved as a .PFX file, I recommend a wildcard certificate. I used one from www.cheapsslsecurity.com
Office 365 for Business Trial Setup, https://products.office.com/en-us/business/office-365-for-business-free-trial
Access to a phone, Capable of receiving text messages or phone calls
PFSense Firewall, https://pfsense.org/download/
Windows 2012 R2 180 Day Trial, https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2012-r2
Windows 10 Enterprise 90 Day Trial, https://www.microsoft.com/en-us/evalcenter/evaluate-windows-10-enterprise
Exchange 2016, https://www.microsoft.com/en-us/download/details.aspx?id=49161
Microsoft Unified Communications Managed API, http://go.microsoft.com/fwlink/p/?linkId=258269
Office 2016 Administrative Templates, https://www.microsoft.com/en-us/download/details.aspx?id=49030
Microsoft Online Services Sign-In Assistant, https://www.microsoft.com/en-us/download/details.aspx?id=41950
Azure AD Module, http://go.microsoft.com/fwlink/p/?linkid=236297
[/table]
Credit where credit is due. This HOWTO is based on basic ADFS deployment documentation found here: :
http://nolabnoparty.com/en/adfs-3-0-setup-upn-suffix-for-office-365-sso-pt-1/