Quantcast
Channel: Directory integration services - Recent Threads
Viewing all articles
Browse latest Browse all 6446

Re: Want to manually set Secondary certificates to Primary in ADFS during Grace period, how?

$
0
0

Hi LTCC Ofiice365Admin,

The option is greyed out and you can´t manually force the automatic rollover since you have entered the grace period.

But don´t worry the process is all automatic.

However if you are using the ADFS servers for more than Office365 you might need take the signing certificate and put it into the configuration like I had an external archiving/journaling solution.

The only problem I discovered a few hours after the automatic auto rollover was that it didn´t function properly for one of my ADFS servers so I restarted the ADFS service and after that everything worked fine.

The auto rollover process then it changes the certificate is shown in the event viewer so you will be able to follow it and you have the date and time in your current certificate so you know then it will happen. Can´t remember if the process starts one hour before it is going to expire.

Before the process I also connected to the MSOL service and ran Update-MsolFederatedDomain -DomainName contoso.com. If you have multiple federated domains you need to run Update-MsolFederatedDomain -DomainName contoso.com -SupportMultipleDomain

Repeat this command for every federated domain

I have a document which I received from the MS Support which explains the process and the commands which needs to be used.

 

Send me a private message with your e-mail and I can send it over.

Regards

Niklas


Viewing all articles
Browse latest Browse all 6446

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>