Hi All
Bit of background of our environment:
- Active Directory based on 2008 R2, forest/domain functional level set to 2008 R2.
- CRM 2013 with 1 front end, 1 back end and 1 SQL server. Patched to latest version.
- Setup new ADFS 3.0 server (Windows 2012 R2)
- Setup claims based authentication on CRM 2013 successfully.
- ADFS / CRM /AD server is internal only and not publically addressable.
- A trusted CA wildcard cert is being used for the certificate piece
Soon we will be adding IFD to our existing CRM 2013 production system. This is so our company can use a 3rd party cloud solution to improve our marketing communications within CRM Dynamics. Unfortunately the built in solutions are not suitable for our needs.
I have done extensive research on deploying this and my initial plan was before we rollout in live, I would test the concept at our DR site where we have a copy of our virtual servers, make sure it works and really to test the concept and process.
I have been able to do this up to a certain point. So i setup an ADFS server, used a wildcard certificate for our external domain, and then configured claims based authentication on the CRM server. This part all works so we now have SSO when using CRM. I have tested all of this being within the internal system at our DR site.
However I am having some issues setting up the IFD component and not sure if I am getting these issues because our CRM is not externally available.
My questions are:
- Can I test IFD without making our CRM externally available? This is only for testing purposes.
- When setting up IFD as part of the system checks, it is saying 'The discovery web service could not be accessed. The domain is unavailable or does not exist'. Has anyone seen this message? what does it exactly mean? I have tried all sorts of combinations and am not able to get this to be successful.
- When setting up IFD, there is an area where it asks "Enter the external domain where your internet-facing servers are located'. Would this be the ADFS servers, as this in DR none of our servers are internet facing though....
Any help on this would be most appreciated.
Thanks
*This post is locked for comments