June 2017
Beginner to intermediate
742 pages
18h 29m
English
As the first step, we need to create a certificate, which will be used by the AD FS farm and Azure MFA to connect. This needs to run from the AD FS server:
$certbase64 = New-AdfsAzureMfaTenantCertificate -TenantID 05c6f80c-61d9-44df-bd2d-4414a983c1d4
The preceding command will generate the new certificate. TenantID is the subscription ID you have from Azure. This can be found out by running this:
Login-AzureRmAccount
It will ask for the credentials for Azure and once we provide them, it will list down the Tenant ID:

This will create a certificate under Local Computer: