question

MichaelNeal-8936 avatar image
0 Votes"
MichaelNeal-8936 asked piaudonn answered

AD FS Migration to a new domain

Performing a domain migration. We have an AD FS farm with over 150 relying party trusts configured. I have two questions.

  1. With a domain trust configured. Can I still authenticate through AD FS on the originating domain after a user is migrated to the new domain?

  2. Is there a more efficient way of migrating all of the trusts to a new AD FS farm in the new domain without having to coordinate and reconfigure150+ configurations?





adfs
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

piaudonn avatar image
0 Votes"
piaudonn answered
  1. As long as you have an Active Directory bi-directional trust, you will be able to authenticate with users on both side. Even after the user has been migrated.

  2. You can script things, but if you are creating a new farm, then all the applications also have to change to reference the new farm name, URIs and certificates.


5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.