Masterclass: Managing Active Directory Federation Services for Multiple Organizations

Live Virtual Class – Super Intensive Remote Training with Labs!
(9:00am – 4:00pm CEST Thursday to Friday)
1725 EUR 2275 EUR (net)
Early-bird offer valid till 7th March!

Register now

Masterclass: Managing Active Directory Federation Services for Multiple Organizations

This is an international Live Virtual Class where you will be able to share the learning experience with a group of IT pros from around the world without leaving your home or office! The class is taught fully remotely in English by CQURE Cybersecurity Experts. In order to ensure the highest quality and unique learning experience, the course is limited to 12 participants by default, or supported by an assistant instructor if the number of delegates exceeds 12. During this course, you will have the opportunity to go through CQURE’s custom lab exercises, interact with our world-renowned Expert and receive a lifelong certification after completing the course!

See the schedule of our all Live Virtual Classes

Upcoming Live Virtual Classes

Live Virtual Class Length Start Date Instructor
Pay & enroll 2 days-14h 28.03.2024 Mike Jankowski-Lorek, PhD

Eligible for group discount? Click here

Loads of Knowledge

Multi organization ADFS is a perfect course if you need to implement ADFS across different organizations! Federated Identity is the most discussed topic in terms of organization cooperation right now, and with this course you will get all the knowledge you will need when you are planning to host services that will connect users across different organizations. As an add-on course, we will extend previous labs with multi organizations trust, discover problems arising from connecting remote parties and find an automated way to make sure that everything is working smoothly. Using ADFS on Windows 2019, we will connect parties using various active directory topologies and versions, to simulate all the problems that you will be facing in real world deployment

As a CQURE course, we will focus on security of ADFS, and show a way to solve common access problems – from hacking the user identity, to solving permission problems. A good enterprise implementation is not complete if we do not think about backup and scripting –so after implementing business partner connectivity, we will focus on scripting the implementation, which will not only allow us to quickly backup and restore our servers, but also allow us to prepare automatic configuration scripts for remote party.

The last part of this course is focused on large ADFS implementations, where load-balancing client traffic is a must. You will not only learn how to load balance ADFS farm, but also get to known Microsoft load balancer included in IIS.

To get more practice we offer three extra weeks of labs online!

At the end of the course you will be able to

  • Deploy AD Federation Services to provide claims-aware authentication for multiple organizations
  • Implement AD Federation Services high availability and load balancing
  • Implement Claims filtering and processing, to secure multi-organization enabled application
  • Script and backup ADFS environment
  • Automate business partner setup procedure for ADFS
  • Configure Active Directory for ADFS.

Intense exercises:

The course focuses on implementation scenarios, including practice in the newest technologies and solutions delivered with Windows Server 2019.

The last part of this course is focused on large ADFS implementations, where load-balancing client traffic is a must. You will not only learn how to load balance ADFS farm, but also get to known Microsoft load balancer included in IIS.

This course is ideal for:

Enterprise administrators, infrastructure architects, security professionals, systems engineers, network administrators, IT professionals, security consultants and other people responsible for implementing network and perimeter security.

Platform and Technical Requirements:

To participate in the course you need a Stable internet connection. For the best learning experience we also need you to have a webcam, headphones and a microphone. Open RDP port 3391 for the connection to the Lab environment is needed as well. We will setup a secure Zoom classroom for every day of the course – we will send you a safe link to join the conference by e-mail.

Certification:

After finishing the course, you will be granted a CQURE Certificate of Completion. Please note that after completing the course you will also be eligible to claim CPE points!

COURSE FORMULA

Remote Delivery

We are Experts in remote delivery. In the past year, we have organized over 200 days of trainings and we have tested many solutions. The experience remains the same as in the case of face-to-face trainings – a personalized, lab intense training with a lot of interaction between you and the instructor.

Virtual Labs

You will be granted a lab access for the duration of the training and a complementary access for additional 3 weeks after the training concludes with new challenging exercise instructions. With the extra self-study materials, you will be able to refresh your knowledge, acquire new skills and practically apply the techniques you have just learned.

Lifelong Certification

What is wonderful about our certification is that it is lifetime valid with no renewal fees – the technology changes, but fundamentals and attitude remain mostly the same. Our Virtual Certificates, which entitle you to collect CPE Points, are issued via Accredible.

COURSE SYLLABUS

MODULE 1

  1. Working with external parties
  2. ADFS in Forest/Domain trust environment
  3. What are Claims
  4. Federating with different ADFS versions

MODULE 2

  1. Home Realm Discovery
  2. Hacking ADFS Claims
  3. Additional user authorization
  4. Claim pipeline for multiple IdP MFA in multi IdP environment

MODULE 3

  1. PowerShell Scripting for ADFS
  2. Backup and Restore ADFS Config
  3. Exporting and Importing RP and IdP

MODULE 4

  1. Working with clients
  2. Creating automated Claim Provided
    Trust configuration for clients
  3. Working with third party IdP

MODULE 5

  1. Load Balancing ADFS
  2. Using IIS ARR to load-balance ADFS
  3. Advance Clustering and load
    balancing
Register now

Click here to browse the modules:

YOUR TEACHER

Mike Jankowski-Lorek, PhD

CQURE Director of Consulting, Cybersecurity Expert, Trainer

Cybersecurity Expert with more than 20 years of experience in the field. Dr. Mike designs and implements solutions for organization identity and access, databases, network, as well as security monitoring and management. He also has a Ph.D. in Computer Science and since 2007, he has been a teacher at the Polish-Japanese Academy of Information Technology in Warsaw. His areas of expertise include Windows Infrastructure Security, cloud solutions, and Database Servers Security.

Michael Grafnetter

Cybersecurity Expert

Michael is an expert on Windows Security, Microsoft Azure and PowerShell, he holds a master’s degree in Software Engineering and in early 2021 he was awarded with the Microsoft Azure Most Valuable Professional title. He is an author of the open-source Directory Services Internals (DSInternals) PowerShell module and Thycotic Weak Password Finder, tools used by security auditors and penetration testers worldwide. His unique DSInternals Framework exposes many undocumented Active Directory security features, and it has already been integrated into multiple 3rd party solutions for Identity Management and Active Directory Disaster Recovery.

WHO IS IT FOR?

Audience

The course is perfect for enterprise administrators, infrastructure architects, security professionals, systems engineers, network administrators, IT professionals, security consultants.

Recommendations

To attend this training, you should have good hands-on experience in administering Windows infrastructure and medium level knowledge about Active Directory Domain Services.

Exercises

Exercises, presentation slides with notes. All exercises are based on newest Windows Server 2019 and Windows 10.

Our students say…

“All of their classes are based on their real world experience with the products, not just the typical Official Curriculum style classes that teach you things for an exam, but that you never use. You’ll find that all of the material you’ll lrarn in the class will be used, at some point, in your security career.”

Jack Perry

Security Principal Consultant - Presido

“Totally professional, total great stuff, in-depth knowledge and a perfect Learning Atmosphere! I like it! Thanks so much for sharing your experience and knowledge!”

Martin Weber

CTO - IT.INNOVATION.4U

“I have attended CQURE’s training as someone who is not a security professional, but just an enthusiast, and I feel like I learned a A LOT. The whole training was loaded with information and nice demos of the latest technologies. On top of that — having an opportunity to ask and talk to professionals was priceless.”

Marek Chmel

SQL SERVER DBA - AT&T

×