MCITP Certification, Configuring Web SSO Authentication by Using ADFS
January 31st, 2012 by AustinConfiguring Web SSO Authentication by Using ADFS
Web Single Sign On (SSO) will allow users in a company different than your own to access servers hosted by you. It accomplishes this by using their existing Active Directory accounts. Web SSO relies on Active Directory Federation Services (ADFS) to create a trust relationship between two companies, which results in a one-time logon for end users. After a user is authenticated, they are given an authentication token (cookie). MCITP Certification
The Microsoft SharePoint blog has some good information about configuring
multiple authentication providers. The URL is http://blogs.msdn.com/
sharepoint/archive/2006/08/16/configuring-multiple-authentication-
providers-for-sharepoint-2007.aspx .
application. The
Summary
Proper conWSS installation. Taking the time to conwill ensure that all WSS sites are running at peak performance. When youthe con
In this chapter, you saw how powerful an application WSS can become when you create and extend web applications. Never overlook the value of quota templates to ensure that site collections do not grow out of control. This chapter also stressed the importance of a properly planned and executed upgrade from WSS 2.0 to 3.0.
As you plan a WSS 3.0 installation, time should be devoted to how users will be authenti- cated. WSS 3.0 supports several security scenarios, such as standard Windows authentication, simple database, using a company identity management system, and Web Single Sign On.
Exam Essentials
Understand how to perform an upgrade. It is important for you to be familiar with the
recommended upgrade procedures. Knowing what the prerequisites are will prove valuable.
Know authentication types. Review all forms of authentication and the differences
between basic, digest, NTLM, and ADFM. Iteach type.
Understand logging. Know where you would look to
Review what information is collected and how to set up trace logging.
Configuring incoming and outgoing email. Review and understand how to con
both incoming and outgoing email settings. Understand how a WSS 3.0 site can benefrom using these features.
306 Chapter 7
Review Questions
1. Where can you configure email, workflow, and logging settings?
A. SharePoint Community Portal
B. SharePoint Central Administration site
C. Site actions
D. Team site
2. The term safe email servers refers to what?
A. Email servers that are configured properly
B. Email servers that are not on the DNS blacklist
C. Servers you deem safe to receive emails from
D. Servers that are on the same Active Directory domain
3. For users to be able to configure email alerts, they must have at least what level of permissions?
A. Site administrator
B. Read and Write
C. Full
D. View
4. What service must be installed before you can send out emails and alerts from your WSS server?
A. DNS
B. SMTP
C. Active Directory
D. SNMB
5. What are some of the errors that diagnostic logging will record? (Choose all that apply.)
A. Product ID
B. IP address of server
C. Software version
D. Condition of your server at time of error
6. What categories are defined in WSS event throttling? (Choose all that apply.)
A. Features
B. By product
C. Workstations
D. Active Directory users
Review Questions
307
7. When choosing the level of event to log, what should you keep in mind?
A. WSS will record events that are greater than or equal to the selected event.
B. How many users will be accessing your WSS site?
C. How much free space is left on your WSS server hard drives?
D. WSS will record events that are equal to or less than the selected event.
8. What options do you have when using trace logs? (Choose all that apply).
A. High
B. Medium
C. Unnecessary
D. None
9. On a properly configured WSS server using an anti-virus solution, when would you allow users to download infected documents?
A. When users complain that they need the document for a project deadline.
B. Always, because most all of the warnings in a WSS site are considered false positives.
C. Only when you have a specific reason such as troubleshooting a virus on your system.
D. Only when you have an antivirus solution on the end users
10. When should you use the Best Practices Analyzer tool?
A. When you need to check for common problems and determine if your installation is configured with the best security practices
B. Only when you have an issue with a web application
C. Only when you want to use this tool in a server farm network
D. Only when you are using Exchange servers
11. What does alternate access mapping allow you to do?
A. Create a specific web zone.
B. Control how large your site collections become.
C. Add different UNC paths.
D. Assign different URLs to the same site.
12. What are the prerequisites for upgrading from WSS 2.0? (Choose all that apply.)
A. Microsoft .NET Framework 3.0.
B. Service Pack 2 for SharePoint Services 2.0.
C. 100GB of free space for the upgraded database.
D. Nothing; you cannot upgrade SharePoint services 2.0 to WSS 3.0.
308 Chapter 7
13. Before performing an upgrade from a 2.0 WSS site to 3.0, what type of backup should be preformed?
A. Full
B. Not needed because it is preformed during upgrade.
C. Partial
D. Differential
14. When must you rebuild your Web Parts before you perform an upgrade?
A. When the web parts were created with ASP.NET 1.1.
B. It is not required to rebuild Web Parts because the upgrade will rebuild the application.
C. When the Web Parts were created with ASP.NET 2.0.
D. Only when the Web Parts contain workflow settings.
15. True/False: Quota templates are used to manage a site
A. True
B. False
16. When you create a new site collection you are also creating a top-level ___________________ .
A. Application
B. Library
C. Website
D. Extranet site
17. What items can you configure access for within a site collection? (Choose all that apply.)
A. Library
B. Folder
C. Item
D. Document
18. The majority of the configuration of user access is configured within ___________________ .
A. Central Administration site
B. Site collection
C. Active Directory
D. User groups
Review Questions
309
19. It is good practice, when giving users access, to assign access by ___________________ .
A. Individual users
B. NTFS
C. Groups
D. NDS
20. While WSS allows for Basic authentication, why is it not recommended?
A. Lacks security.
B. IIS does not support it.
C. Will not authenticate with Active Directory users.
D. It is only for NDS networks.







