-
On isa2006.contoso.com, open the ISA server snap-in: click Start, point to Programs, point to Microsoft ISA Server, and then click ISA Server Management.
-
On the Firewall Policy (default) result pane, on the Toolbox tab on the right side of the result pane, select Network Objects, click New, and then click Web Listener.
-
On the Welcome page, type ssoServer in the Web listener name box, and then click Next.
-
On the Client Connection Security page, accept the default Require SSL secured connections with clients, and then click Next.
-
On the Web Listener IP Addresses page, under Listen for incoming Web requests on these networks, select the External check box, and then click Select IP Addresses.
-
On the External Network Listener IP Selection page, select Specified IP addresses on the ISA Server computer in the selected network.
-
Select the item in the Available IP Addresses list box.
-
Click Add, and then click OK.
-
On the Web Listener IP Addresses page, click Next.
-
On the Listener SSL Certificates page, click Select Certificate.
-
On the Select Certificate page, select the certificate you created for the ssoServer Web listener. This certificate should have the FQDN of the URL used to access the ssoServer listener; in this case, cwa.contoso.com. Click Select.
-
On the Listener SSL Certificates page, click Next.
-
On the Authentication Settings page, select HTML Form Authentication, select LDAP (Active Directory), and then click Next.
-
On the Single Sign On Settings page, select the Enable SSO check box. In the SSO domain name box, type .contoso.com (notice the leading period in .contoso.com), and then click Next.
-
If you did not configure the LDAP verification server before creating the Web listener, you can configure it now on the page that appears. If you have already configured the server, skip to the next step.
-
On the Completing the New Web Listener Wizard page, click Finish.
-
In the ISA MMC Firewall Policy result pane, click Apply.
-
On the Saving Configuration Changes page, click OK.
-
In the ISA Server snap-in, right-click the Server node in the scope pane, and then click Refresh.