Quantcast
Channel: Claims based access platform (CBA), code-named Geneva forum
Viewing all articles
Browse latest Browse all 2535

active directory federation server secondary node is giving HTTP Error 503

$
0
0

active directory federation server secondary node is giving HTTP Error 503. The service is unavailable.

when i try to access the link using the sever name 

 

https://myserver.mydomain/FederationMetadata/2007-06/FederationMetadata.xml

 

i am seeing this in the event log of the adfs

 

There was an error in enabling endpoints of Federation Service. Fix configuration errors using PowerShell cmdlets and restart the Federation Service.

Additional Data
Exception details:
System.ArgumentNullException: Value cannot be null.
Parameter name: certificate
   at System.IdentityModel.Tokens.X509SecurityToken..ctor(X509Certificate2 certificate, String id, Boolean clone, Boolean disposable)
   at System.IdentityModel.Tokens.X509SecurityToken..ctor(X509Certificate2 certificate)
   at Microsoft.IdentityServer.Service.Configuration.MSISSecurityTokenServiceConfiguration.Create(Boolean forSaml)
   at Microsoft.IdentityServer.Service.Policy.PolicyServer.Service.ProxyPolicyServiceHost.ConfigureWIF()
   at Microsoft.IdentityServer.Service.SecurityTokenService.MSISConfigurableServiceHost.Configure()
   at Microsoft.IdentityServer.Service.Policy.PolicyServer.Service.ProxyPolicyServiceHost.Create()
   at Microsoft.IdentityServer.Service.SecurityTokenService.STSService.StartProxyPolicyStoreService(ServiceHostManager serviceHostManager)

i am using F5 for NLB, and i have the VIP pining, i have exchange 2010 on premise i think more than 10 servers

i installed all office 365 required servers for a hybrid configuration and what i am trying to do now is to make these servers HA, so i am adding an ADFS and ADFP and hybrid, now after adding the second ADFS by installing the ADFsetup_64 and the rollup 2, i am trying to access the three links, the link pointing to the primary, secondary and the nlb name, the primary is working but the secondary link is giving me this 503 error, it looks like a cert issue but i am installing the same certs as the primary

we are not using CRM


Viewing all articles
Browse latest Browse all 2535

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>