Setup in AD FS
Open AD FS management tool and go to Relying Party Trust
Create a new Relying Party trust
Select
Enter a Display name (Only used for visual referance)
(Optional) Select your token encryption certificate
Select the SAML 2 protocol and enter your DAM url like this: https://DAMURL/DigizuiteCore/LoginService/Saml2/Acs
E.g:
Relying party identifiers will be https://DAMURL/DigizuiteCore/LoginService
E.g:
Choose who should have access to the solution.
And finish the Relying party trust
Configure the following claims
Add the following “Transform an Incoming Claim” like this:
Add the following claims as LDAP Attributers:
E-mail address
Surname
Given name
(Optional - only if Group sync is needed) Groupname (Token-Group - Qualified by Domain)
(Optional - only if Group sync is needed) Groupsid (Token-Groups as SIDs)
Get the Metadatafederation url for next step. It will most likely be: https://YourADDomain/FederationMetadata/2007-06/FederationMetadata.xml