my current sts configuration web follows,
<microsoft.identitymodel> <service savebootstraptokens="true"> <audienceuris mode="never"/> <federatedauthentication> <wsfederation passiveredirectenabled="true" issuer="https://fs.mysite.net/adfs/ls" realm="https://myweb.cloudapp.net/" reply="https://myweb.cloudapp.net/account/federatedresult" requirehttps="false"/> <cookiehandler requiressl="false"/> </federatedauthentication> <servicecertificate> <certificatereference x509findtype="findbysubjectname" findvalue="*.mydomain.net"/> </servicecertificate> <applicationservice> <claimtyperequired> <claimtype type="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/name" optional="true"/> <claimtype type="http://schemas.microsoft.com/ws/2008/06/identity/claims/role" optional="true"/> <claimtype type="http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress" optional="true"/> </claimtyperequired> </applicationservice> <issuernameregistry type="microsoft.identitymodel.tokens.configurationbasedissuernameregistry, microsoft.identitymodel, version=3.5.0.0, culture=neutral, publickeytoken=31bf3856ad364e35"> <trustedissuers> <add thumbprint="a5069c80a92e7a49937bba9bc25a85a57b4bbc74" name="https://fs.myweb.net/adfs/services/trust"/> </trustedissuers> </issuernameregistry> <certificatevalidation certificatevalidationmode="none"/> </service> i need introduce machinekeysessionsecuritytokenhandler below, (in web farm environment need enforce cookie encryption mahcinekey)
<system.identitymodel> <identityconfiguration> <securitytokenhandlers> <remove type="system.identitymodel.tokens.sessionsecuritytokenhandler, system.identitymodel, version=4.0.0.0, culture=neutral, publickeytoken=b77a5c561934e089" /> <add type="system.identitymodel.services.tokens.machinekeysessionsecuritytokenhandler, system.identitymodel.services, version=4.0.0.0, culture=neutral, publickeytoken=b77a5c561934e089" /> </securitytokenhandlers> </identityconfiguration> </system.identitymodel> but tag not available in system.identitymodel. federatedauthentication tag gives errors. can me migrate microsoft.identitymodel system.identitymodel version.
did put following @ top of web.config ?
<configuration> <configsections> <section name="system.identitymodel" type="system.identitymodel.configuration.systemidentitymodelsection, system.identitymodel, version=4.0.0.0, culture=neutral, publickeytoken=b77a5c561934e089" /> <section name="system.identitymodel.services" type="system.identitymodel.services.configuration.systemidentitymodelservicessection, system.identitymodel.services, version=4.0.0.0, culture=neutral, publickeytoken=b77a5c561934e089" />
Comments
Post a Comment