ADFS Part 1
ADFS Part 2
ADFS Part 3
ADFS Part 4
ADFS Part 5
100

This identity model allows users in one organization to access resources in another without re-authenticating

What is identity federation?

100

In a single organization, AD FS enables SSO by trusting this internal identity provider.

What is Active Directory Domain Services (AD DS)?

100

This AD FS component issues security tokens containing claims about authenticated users.

What is the Security Token Service (STS)?

100

This planning activity estimates the number of authentication requests and helps determine server sizing.

What is capacity planning?

100

This AD FS component defines how incoming claims are processed and transformed before being issued.

What are claims rules?

200

This type of identity represents a user through a set of attributes like name, email, or role.

What is claims-based identity?

200

This AD FS component transforms incoming claims into outgoing claims for relying parties.

What is the claims rule engine?

200

AD FS requires this type of certificate to sign tokens and establish trust with relying parties.

What is a token-signing certificate?

200

This Azure service can be used to host AD FS and provide scalable, cloud-based federation.

What is Azure Virtual Machines?

200

This trust relationship in AD FS identifies the identity provider that authenticates users.

What is a claims provider trust?

300

This authentication method relies on tokens containing user attributes rather than usernames and passwords.

What is claims-based authentication?

300

n a business-to-business federation, AD FS establishes trust between organizations using this type of relationship.

What is a federation trust?

300

This AD FS component handles authentication requests from users and redirects them to the appropriate identity provider.

What is the Federation Service Proxy?

300

This AD FS requirement ensures that all servers in the farm share configuration data.

What is a Windows Internal Database or SQL Server?

300

This trust relationship in AD FS defines the application or service that consumes issued claims.

What is a relying party trust?

400

This Windows Server role enables secure identity federation and supports claims-based authentication.

What is Active Directory Federation Services (AD FS)?

400

AD FS enables SSO across organizations by issuing this type of token to the relying party.

What is a SAML token?

400

This certificate type is required to secure communications between AD FS servers and clients.

What is an SSL/TLS certificate?

400

When deploying AD FS in Azure, this security measure helps protect the federation service from internet-based threats.

What is placing AD FS behind an Azure Application Gateway or firewall?

400

In a federation scenario, this organization authenticates users and sends claims to the resource partner.

What is the account partner?

500

AD FS uses this protocol to issue security tokens containing claims about a user.

What is WS-Federation?

500

This AD FS feature allows users to access multiple applications without signing in again, even across organizational boundaries.

What is Single Sign-On (SSO)?

500

To ensure high availability, AD FS should be deployed with multiple servers behind this network component.

What is a load balancer?

500

These are statements about a user—such as name, email, or group membership—used in AD FS tokens.

What are claims?

500

In a federation scenario, this organization hosts the application or service that consumes the claims.

What is the resource partner?