Enable or disable TLS and SSL for an ADAM account store

Applies To: Windows Server 2003 R2

By default, Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols are not enabled for Active Directory Application Mode (ADAM) account stores in Active Directory Federation Services (ADFS). You can enable or disable these protocols as needed.

Administrative credentials

To complete this procedure, you must be a member of the Administrators group on the local computer.

To enable or disable TLS/SSL protocols for an ADAM account store

  1. Click Start, point to Administrative Tools, and then click Active Directory Federation Services.

  2. Double-click Federation Service, double-click Trust Policy, double-click My Organization, and then double-click Account Stores.

  3. Right-click the ADAM account store whose search base you want to change, and then click Properties.

  4. On the Settings tab, enable or disable TLS/SSL as follows, and then click OK:

    • If the Enable Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols check box is cleared (disabled) and you want to enable it, select the check box.

    • If the Enable Transport Layer Security (TLS) and Secure Sockets Layer (SSL) protocols check box is selected (enabled) and you want to disable it, clear the check box.

See Also

Concepts

Change the server name or IP address for an ADAM account store
Change the port number for an ADAM account store
Change the search base for an ADAM account store
Change the user name attribute for an ADAM account store
Change the display name for an ADAM account store
Change the URI for an ADAM account store