Forum Discussion
Ramy Farag
Nov 15, 2016Brass Contributor
SharePoint Claim Authentication
We are trying to authenticate users to SharePoint 2016 using IDP-Initiated SAML 2.0. The SAML token is generated from PingFederate and sent to ADFS which in turn sends it to SharePoint (Relying Party...
Nov 15, 2016
This is a tough one. Why are you feeding into ADFS from PingFederate, rather than straight from AD?
Ramy Farag
Nov 15, 2016Brass Contributor
Hi Nick,
AD is not the identity provider. We use a different LDAP directory with PingFederate as its Federation Server.
- Nov 15, 2016I have customers who integrate SharePoint with PingFed directly. You should be able to do this... one thing to note is that SharePoint only supports SAML 1.1.
- Ramy FaragNov 15, 2016Brass Contributor
Hi Trevor,
That is what we tried initially. But we found out that the WS-Federation protocol is not enabled in PingFederate and there are no plans to enable it. That why we came up with the idea to use ADFS in the middle.
- Nov 15, 2016PingFed does have an integration kit for SharePoint. I haven't personally used it, but it is available from https://www.pingidentity.com/en/products/downloads.html. You may also want to contact support @ Ping. You shouldn't need ADFS at all in this scenario.
- Nov 15, 2016
This is the correct answer. It looks like *sunglasses* Trevorishere. YEEEEEEAAAAHHHHHHHHH