AD FS 3.0
This version was introduced with Windows Server 2012 R2. This removed a few role services from the AD FS 2.0. AD FS Proxy service provided interface between the internet and AD FS servers. It operates from the demilitarized zone (DMZ) and doesn't need to be domain joined. The idea of it is to protect the identity infrastructure with bogus token. This was replaced by Web Application Proxy, which comes under remote access role. This is not used by AD FS anymore. It also removed the AD FS web agents 1.x, which provided connections with other systems.
Workspace Join is one of the greatest features that came up with this. It allows to register mobile devices (even non-windows) with corporates to access application and data with SSO. ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access