Skip to main content

Notifications

Microsoft Dynamics CRM (Archived)

Configuration of claims based authentication!

Posted on by Microsoft Employee

Have configured ADFS,

My metadata opens well, as per below, though this certification error,  "un trusted certificate"

"- <EntityDescriptor ID="_f5edced6-41fe-4154-8232-1fb42b3cd7bc" entityID="sts.xxxxxxxxxxx.com/.../trust" xmlns="urn:oasis:names:tc:SAML:2.0:metadata">

- <ds:Signature xmlns:ds="www.w3.org/.../xmldsig">
- <ds:SignedInfo>
<ds:CanonicalizationMethod Algorithm="www.w3.org/.../xml-exc-c14n" /> 
<ds:SignatureMethod Algorithm="www.w3.org/.../xmldsig-more" /> 
- <ds:Reference URI="#_f5edced6-41fe-4154-8232-1fb42b3cd7bc">

"

When configuring claims from Dynamics CRM 2016 deployment manager i get below error.

The federation metadata URL 'sts.xxxxxxx.com/.../federationmetadata.xml' is not available.

*This post is locked for comments

  • Suggested answer
    Nadeeja Bomiriya Profile Picture
    Nadeeja Bomiriya 6,804 on at
    RE: Configuration of claims based authentication!

    Hi muleso,

    When you export the certificate, make sure to include private key and extended properties. Then install it in to the machine you are using (not just the in ADFS Server) as well. You need to install it twice. First to your personal store. Second to the machine's and install it to Trusted Root Certificate store.

  • Community Member Profile Picture
    Community Member Microsoft Employee on at
    RE: Configuration of claims based authentication!

    I use the certificate during adfs, but opens metadata on browser with trust warning

  • Community Member Profile Picture
    Community Member Microsoft Employee on at
    RE: Configuration of claims based authentication!

    This link assumes ADFS is running.

    ADFS opens with warning error, so i when i proceed to configure claims in dynamics crm, it doens't connect to metadata, although metadata url opens on browser but with errors.

  • Suggested answer
    Alagunellaikumar Profile Picture
    Alagunellaikumar 6,210 on at
    RE: Configuration of claims based authentication!

    Hi

    If you create a self signed certificate, pls make sure that certificate you must be select in the ADFS configuration. If not pls recconfigure.

    Because first ADFS federation URL must be open without certificate error. If issue still exist let me know

  • Suggested answer
    Nadeeja Bomiriya Profile Picture
    Nadeeja Bomiriya 6,804 on at
    RE: Configuration of claims based authentication!

    Hi muleso,

    Please follow the instructions in the article below.

    technet.microsoft.com/.../gg188595.aspx

    if you are using self-signed certificates, make sure to install it on the machine running Dynamics CRM.  Also import it to the Trusted Root Certification Authorities.

Under review

Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.

Helpful resources

Quick Links

December Spotlight Star - Muhammad Affan

Congratulations to a top community star!

Top 10 leaders for November!

Congratulations to our November super stars!

Tips for Writing Effective Suggested Answers

Best practices for providing successful forum answers ✍️

Leaderboard

#1
André Arnaud de Calavon Profile Picture

André Arnaud de Cal... 291,253 Super User 2024 Season 2

#2
Martin Dráb Profile Picture

Martin Dráb 230,188 Most Valuable Professional

#3
nmaenpaa Profile Picture

nmaenpaa 101,156

Leaderboard

Featured topics

Product updates

Dynamics 365 release plans