Install the Federation Service on an additional federation server

Applies To: Windows Server 2003 R2

When you install an additional federation server in a server farm, you add the Federation Service component of Active Directory Federation Services (ADFS) and use the trust policy file that is used by other federation servers in the server farm. A token-signing certificate must have been installed or imported into the local certificate store. The trust policy file must also be available on the network.

Administrative credentials

To complete this procedure, you must be a member of the Administrators group on the local computer.

To install the Federation Service component of ADFS on an additional server

  1. Click Start, point to Control Panel, and then click Add or Remove Programs.

  2. In Add or Remove Programs, click Add/Remove Windows Components.

  3. In the Windows Components Wizard, select the Active Directory Services check box, and then click Details.

  4. In the Active Directory Services dialog box, select the Active Directory Federation Services (ADFS) check box, and then click Details.

  5. In the Active Directory Federation Services (ADFS) dialog box, select the Federation Service check box, and then click OK. If a message appears stating that ASP.NET 2.0 was not previously enabled, click Yes to enable it, and then click OK.

  6. In the Active Directory Services dialog box, click OK.

  7. In the Windows Components Wizard, click Next.

  8. On the Federation Service page, click Select token signing certificate, and then click Select to select the appropriate token-signing certificate from the local certificate store.

  9. In the Select Certificate dialog box, click the exported token-signing certificate, and then click OK.

  10. Under Trust policy, click Use an existing trust policy, and then click Browse.

  11. In the Browse dialog box, click the shared TrustPolicy.xml file, and then click Open.

  12. If you are prompted for the location of the installation files, navigate to R2 Installation Folder\cmpnents\r2, and then click OK.

  13. On the Completing the Windows Components Wizard page, click Finish.

See Also

Concepts

Implementing a Server Farm of Federation Servers
Export the private key portion of a token-signing certificate