다음을 통해 공유


인증 사이트와 관리 포털 간의 트러스트 다시 설정

 

적용 대상: Windows Azure Pack

Windows Azure Pack 배포의 가상 머신 중 하나에서 다음 스크립트를 한 번 실행합니다. 트러스트를 다시 설정하는 방법에 대한 자세한 내용은 Windows Azure Pack에서 FQDN 및 포트 다시 구성을 참조하세요.

$MgmtStoreConnectionString="Data Source=$server;Initial Catalog=Microsoft.MgmtSvc.Store;User Id=sa;Password=$password"
$ConnectionString="Data Source=$server;User Id=$userid;Password=$password"
$TenantMetadataEndpoint="https://${AuthSiteLB}:$AuthSitePort/federationMetaData/2007-06/FederationMetadata.xml"
$AdminMetadataEndpoint="https://${WinAuthSiteLB}:$WinAuthSitePort/federationMetaData/2007-06/FederationMetadata.xml"

Set-MgmtSvcRelyingPartySettings -Target Tenant –MetadataEndpoint $TenantMetadataEndpoint  -DisableCertificateValidation -PortalConnectionString $PortalconnectionString  -ManagementConnectionString $MgmtStoreConnectionString
Set-MgmtSvcRelyingPartySettings -Target Admin –MetadataEndpoint $AdminMetadataEndpoint  -DisableCertificateValidation -PortalConnectionString $PortalconnectionString  -ManagementConnectionString $MgmtStoreConnectionString

$AdminSiteMetadataEndpoint="https://${AdminSiteLB}:$AdminSitePort/federationMetaData/2007-06/FederationMetadata.xml"
$TenantSiteMetadataEndpoint="https://${TenantSiteLB}:$TenantSitePort/federationMetaData/2007-06/FederationMetadata.xml"

Set-MgmtSvcIdentityProviderSettings -Target MemberShip –MetadataEndpoint  $TenantSiteMetadataEndpoint -ConnectionString $ConnectionString -DisableCertificateValidation
Set-MgmtSvcIdentityProviderSettings -Target Windows –MetadataEndpoint  $AdminSiteMetadataEndpoint -ConnectionString $ConnectionString -DisableCertificateValidation