Event ID 191 — AD RMS Federated Identity Support Installation

Applies To: Windows Server 2008

Active Directory Rights Management Services (AD RMS) federated identity support is offered as a role service and is configured by using Server Manager. The Federated Identity Support role service is used with Active Directory Federation Services (AD FS) and allows organizations to share rights-protected content by using an AD FS federated trust.

Event Details

Product: Windows Operating System
ID: 191
Source: Active Directory Rights Management Services
Version: 6.0
Symbolic Name: FederationPackageNotFoundEvent
Message: The Active Directory Rights Management Services (AD RMS) federation package files were not found. Make sure the Identity Federation sub-role is selected when you install AD RMS.

Resolve

Install AD RMS Federated Identity Support role service

Identity Federation Support for AD RMS is installed as a role service by using Server Manager. This role service allows users to consume rights-protected content from other organizations where an Active Directory Federated Services trust has been configured.

To perform this procedure, you must be a member of the local Administrators group, or you must have been delegated the appropriate authority.

To install the Identity Federation Support role service for AD RMS:

  1. Log on to an AD RMS server in the cluster.
  2. Click Start, point to Administrative Tools, and then click Server Manager.
  3. In the Roles Summary section, click Go to Manage Roles.
  4. In the Active Directory Rights Management Services section, click Add Role Services.
  5. Select the Identity Federation Support check box, and then click Next.
  6. When prompted for the identity federation URL, type the URL of the Active Directory Federation Services resource partner, and then click Validate.
  7. If the validation succeeds, click Next.
  8. Click Install.
  9. When the installation is complete, click Close.
  10. Repeat steps 1 - 9 for each server in the AD RMS cluster.

Verify

To perform this procedure, you must be a member of the local Administrators group, or you must have been delegated the appropriate authority.

To verify that the Federated Identity Support role service has been added:

  1. On a computer in the AD RMS cluster, open the Active Directory Rights Management Services console.
  2. Expand the AD RMS cluster.
  3. In the console tree, expand Trust Policies, and look for Federated Identity Support. If the Federated Identity Support role service is not installed, this option will not be available.

AD RMS Federated Identity Support Installation

Active Directory Rights Management Services