I am trying to setup Active Directory Federation Services on Windows Server 2008 R2 in a test environment. I need to integrate ADFS server with our HSM LunaSA, however, I couldn't figure out how to do this. I tried to find some help in guides provided on Microsoft Technet but no luck. We dont get any option to select Luna CSP while configuring ADFS. Please assist me with integration of ADFS with a HSM.
Thanks & regards, VivekSunday, August 07, 2011 1:27 PM
Earlier, we have performed LunaSA integration with other Microsoft products e.g. ADRMS and ADCS. While configuring ADRMS we get an option to select CSP key storage where we can select Luna Cryptographic service provider. Similarly, while configuring ADCS, we get an option to select Luna CSP for key generation. We don’t get any such option while configuring ADFS server. It does not allow us to select a CSP.
Thanks & regards, VivekTuesday, August 09, 2011 6:20 AM
I am working on the ADFS 2.0 integration with our HSM Luna SA for securing the private keys on Luna SA. I have successfully setup the lab for verifying the SSO feature for claim based application using WIF. I have installed the AdfsSetup.exe and applied a patch (Windows6.1-KB2607496-v3-x64.msu) released by Microsoft for HSM support. I am able to generate the certificate request using Luna KSP while keys are on Luna SA and this certificate is bind in to the IIS but when we configuring the ADFS 2.0, I am getting the following error:
Please help us to solve this problem.
ArifMonday, February 20, 2012 6:56 AM
I have found that an error is occured in the event log when ADFS 2.0 Configuration wizard failed to configure service settings, below I have copied that event for your reference:
Log Name: Application
Date: 2/21/2012 10:54:12 AM
Event ID: 9645
Task Category: (2)
The description for Event ID 9645 from source MSSQL$MICROSOFT##SSEE cannot be found. Either the component that raises this event is not installed on your local computer or the installation is corrupted. You can install or repair the component on the local computer.
If the event originated on another computer, the display information had to be saved with the event.
The following information was included with the event:
The specified resource type cannot be found in the image file
<Provider Name="MSSQL$MICROSOFT##SSEE" />
<TimeCreated SystemTime="2012-02-21T05:24:12.000000000Z" />
and there is no any error in Setup log.
Tuesday, February 21, 2012 5:55 AM
I have no idea why that error is occurring. I haven't seen it before. It looks like the package you used to install ADFS is either corrupt, or it's the wrong version. Try downloading the installer from the web and re-running it.
Developer Security MVP | www.syfuhs.netFriday, February 24, 2012 10:07 PM