Add an Active Directory account store
Updated: September 13, 2007
Applies To: Windows Server 2003 R2
If user and computer accounts that require access to a resource that is protected by Active Directory Federation Services (ADFS) are stored in Active Directory, you must add Active Directory as an account store on a federation server in the Federation Service that authenticates the accounts.
An Active Directory forest can have only one Active Directory instance. Therefore, you can add only one Active Directory store for the respective Federation Service.
To complete this procedure, you must be a member of the Administrators group on the local computer.
To add an Active Directory account store
Click Start, point to Administrative Tools, and then click Active Directory Federation Services.
Double-click Federation Service, double-click Trust Policy, double-click My Organization, right-click Account Stores, point to New, and then click Account Store.
On the Welcome to the Add Account Store Wizard page, click Next.
On the Account Store Type page, ensure that Active Directory is selected, and then click Next.
On the Enable this Account Store page, ensure that the Enable this account store check box is selected, and then click Next.
On the Completing the Add Account Store Wizard page, click Finish.