AD FS deployment topologies
There are a few different deployment models we can use for AD FS deployment:
- A single federation server
- A single federation server and single Web Application Proxy server
- Multiple federation servers and multiple Web Application Proxy servers with SQL Server
In this section, we are going to look into these different topologies and their characteristics.
A single federation server
This is the simplest AD FS deployment model available. It contains a single AD FS server. It doesn't have high availability (unless at the host level).
This is ideal for a lab environment or staging environment:
Figure 14.3: Single federation server deployment
In the preceding example, we have a web application, myapp.rebeladmin.com
, that needs to allow access via AD FS. We have one AD FS server in the setup with WID. It is behind the corporate firewall and there are Network Address Translation (NAT) and access rules...