ADFS
This reference provides command-line reference documentation for the IT professional of the Windows PowerShell cmdlets that you can use to deploy and administer Active Directory Federation Services (AD FS) in Windows Server.
adfs
|
Add-Adfs
|
Adds an attribute store to the Federation Service. |
|
Add-Adfs
|
Adds a new certificate to AD FS for signing, decrypting, or securing communications. |
|
Add-Adfs
|
Adds a claim description to the Federation Service. |
|
Add-Adfs
|
Adds a new claims provider trust to the Federation Service. |
|
Add-Adfs
|
Creates a claims provider trust group based on metadata that contains multiple entities. |
|
Add-Adfs
|
Registers an OAuth 2.0 client with AD FS. |
|
Add-Adfs
|
Adds a custom UPN suffix. |
|
Add-Adfs
|
Adds this computer to an existing federation server farm. |
|
Add-Adfs
|
Creates a local claims provider trust. |
|
Add-Adfs
|
Adds a native client application role to an application in AD FS. |
|
Add-Adfs
|
Adds a relying party trust that represents a non-claims-aware web application or service to the Federation Service. |
|
Add-Adfs
|
Adds a new relying party trust to the Federation Service. |
|
Add-Adfs
|
Creates a relying party trusts group. |
|
Add-Adfs
|
Adds a scope description in AD FS. |
|
Add-Adfs
|
Adds a server application role to an application in AD FS. |
|
Add-Adfs
|
Adds configuration settings for trusted federation partners in AD FS. |
|
Add-Adfs
|
Adds a Web API application role to an application in AD FS. |
|
Add-Adfs
|
Adds a relying party trust for the Web Application Proxy. |
|
Disable-Adfs
|
Disables an application group. |
|
Disable-Adfs
|
Disables a certificate authority. |
|
Disable-Adfs
|
Disables a claims provider trust in the Federation Service. |
|
Disable-Adfs
|
Disables an OAuth 2.0 client that is currently registered with AD FS. |
|
Disable-Adfs
|
Marks the Device Registration Service as disabled on an AD FS server. |
|
Disable-Adfs
|
Disables an endpoint of AD FS. |
|
Disable-Adfs
|
Disables a local claims provider trust. |
|
Disable-Adfs
|
Disables a relying party trust for a non-claims-aware web application or service from the Federation Service. |
|
Disable-Adfs
|
Disables a relying party trust of the Federation Service. |
|
Disable-Adfs
|
Disables the relying party trust for the Web Application Proxy. |
|
Enable-Adfs
|
Enables an application group in AD FS. |
|
Enable-Adfs
|
Enables a claims provider trust in the Federation Service. |
|
Enable-Adfs
|
Enables the use of an OAuth 2.0 client registration by AD FS. |
|
Enable-Adfs
|
This cmdlet has been deprecated. |
|
Enable-Adfs
|
Enables an endpoint in AD FS. |
|
Enable-Adfs
|
Enables a local claims provider trust. |
|
Enable-Adfs
|
Enables a relying party trust for a non-claims-aware web application or service from the Federation Service. |
|
Enable-Adfs
|
Enables a relying party trust of the Federation Service. |
|
Enable-Adfs
|
Enables the relying party trust object for the Web Application Proxy. |
|
Export-Adfs
|
Returns a file containing the tenant ID for which the AD FS farm is configured for Azure MFA, as well as the well-known client ID for Azure MFA. |
|
Export-Adfs
|
Generates SQL scripts to create the AD FS database and to grant permissions. |
|
Export-Adfs
|
Exports properties of all web content objects in a specific locale to a specified file. |
|
Export-Adfs
|
Exports a web theme to a folder. |
|
Get-Adfs
|
Gets an AD FS access control policy. |
|
Get-Adfs
|
Retrieves the global rules that trigger additional authentication providers to be invoked. |
|
Get-Adfs
|
Gets an application group. |
|
Get-Adfs
|
Gets permission for an application. |
|
Get-Adfs
|
Gets the attribute stores of the Federation Service. |
|
Get-Adfs
|
Gets a list of all authentication providers in AD FS. |
|
Get-Adfs
|
Retrieves web content objects for authentication providers. |
|
Get-Adfs
|
Gets whether Azure MFA is enabled. |
|
Get-Adfs
|
Retrieves the certificates from AD FS. |
|
Get-Adfs
|
Gets a certificate authority. |
|
Get-Adfs
|
Gets claim descriptions from the Federation Service. |
|
Get-Adfs
|
Gets the claims provider trusts in the Federation Service. |
|
Get-Adfs
|
Gets an AD FS claims provider trust group. |
|
Get-Adfs
|
Retrieves registration information for an OAuth 2.0 client. |
|
Get-Adfs
|
Gets the administrative polices of the Device Registration Service. |
|
Get-Adfs
|
Gets the UPN suffixes that can be used with device registration. |
|
Get-Adfs
|
Retrieves an endpoint in AD FS. |
|
Get-Adfs
|
Gets AD FS behavior level and farm node information. |
|
Get-Adfs
|
Displays the AD FS global policy. |
|
Get-Adfs
|
Gets global web content objects. |
|
Get-Adfs
|
Gets local claims provider trusts. |
|
Get-Adfs
|
Gets native client application roles from an application in AD FS. |
|
Get-Adfs
|
Gets the properties of a relying party trust for a non-claims-aware web application or service. |
|
Get-Adfs
|
Gets all the associated properties for the AD FS service. |
|
Get-Adfs
|
The Get-AdfsRegistrationHosts cmdlet is deprecated. |
|
Get-Adfs
|
Gets the relying party trusts of the Federation Service. |
|
Get-Adfs
|
Gets a relying party trust group. |
|
Get-Adfs
|
Gets web content objects for relying parties. |
|
Get-Adfs
|
Gets properties of web themes applied to relying party trusts. |
|
Get-Adfs
|
Gets a description for a scope in AD FS. |
|
Get-Adfs
|
Gets configuration settings for a server application role for an application in AD FS. |
|
Get-Adfs
|
Gets the host name, port, and certificate hash for SSL bindings configured for AD FS and the device registration service. |
|
Get-Adfs
|
Gets synchronization properties the configuration database of AD FS. |
|
Get-Adfs
|
Gets a trusted federation partner in AD FS. |
|
Get-Adfs
|
Gets Web API application roles in AD FS. |
|
Get-Adfs
|
Gets the relying party trust object for the Web Application Proxy. |
|
Get-Adfs
|
Gets AD FS web customization configuration settings. |
|
Get-Adfs
|
Gets web themes. |
|
Grant-Adfs
|
Grants application permission. |
|
Import-Adfs
|
Imports the custom configuration for an authentication provider. |
|
Import-Adfs
|
Imports properties from a resource file into global and relying party web content objects. |
|
Initialize-ADDevice
|
Initializes the Device Registration Service configuration in the Active Directory forest. |
|
Install-Adfs
|
Creates the first node of a new federation server farm. |
|
Invoke-Adfs
|
Raises the behavior level of a farm. |
|
New-Adfs
|
Creates an AD FS access control policy. |
|
New-Adfs
|
Creates an application group. |
|
New-Adfs
|
Creates a certificate for the AD FS farm to use to connect to Azure MFA, or returns the currently configured certificate. |
|
New-Adfs
|
Creates a set of claim rules. |
|
New-Adfs
|
Creates a contact person object. |
|
New-Adfs
|
Creates a mapping between an attribute of an LDAP folder and an AD FS claim type. |
|
New-Adfs
|
Creates a connection object. |
|
New-Adfs
|
Creates a new organization information object. |
|
New-Adfs
|
Creates a SAML protocol endpoint object. |
|
New-Adfs
|
Creates an AD FS web theme. |
|
Publish-Ssl
|
The Publish-SslCertificate cmdlet is deprecated. |
|
Register-Adfs
|
Registers an external authentication provider in AD FS. |
|
Remove-Adfs
|
Removes an AD FS access control policy. |
|
Remove-Adfs
|
Removes an application group. |
|
Remove-Adfs
|
Removes an attribute store from the Federation Service. |
|
Remove-Adfs
|
Removes web content customization of the authentication provider in the user sign-in web pages from AD FS. |
|
Remove-Adfs
|
Removes a certificate from AD FS. |
|
Remove-Adfs
|
Removes a claim description from the Federation Service. |
|
Remove-Adfs
|
Removes a claims provider trust from the Federation Service. |
|
Remove-Adfs
|
Removes an AD FS claims provider trust group. |
|
Remove-Adfs
|
Deletes registration information for an OAuth 2.0 client that is currently registered with AD FS. |
|
Remove-Adfs
|
Removes a custom UPN suffix. |
|
Remove-Adfs
|
The Remove-AdfsFarmNode cmdlet is deprecated. |
|
Remove-Adfs
|
Removes a global web content object. |
|
Remove-Adfs
|
Removes a local claims provider trust. |
|
Remove-Adfs
|
Removes a native client application role from an application in AD FS. |
|
Remove-Adfs
|
Removes a relying party trust for a non-claims-aware web application or service from the Federation Service. |
|
Remove-Adfs
|
Removes a relying party trust from the Federation Service. |
|
Remove-Adfs
|
Removes a relying party trusts group. |
|
Remove-Adfs
|
Removes a relying party web content object. |
|
Remove-Adfs
|
Removes a web theme to a relying party. |
|
Remove-Adfs
|
Removes a scope description in AD FS. |
|
Remove-Adfs
|
Removes a server application role from an application in AD FS. |
|
Remove-Adfs
|
Removes a trusted federation partner in AD FS. |
|
Remove-Adfs
|
Removes a Web API application role from an application in AD FS. |
|
Remove-Adfs
|
Removes the relying party trust object for the Web Application Proxy. |
|
Remove-Adfs
|
Removes a web theme. |
|
Restore-Adfs
|
Restores the farm to a previous behavior level. |
|
Revoke-Adfs
|
Revokes permission for an application. |
|
Revoke-Adfs
|
Revokes trust for all federation server proxies configured for the Federation Service. |
|
Set-Adfs
|
Modifies an AD FS access control policy. |
|
Set-Adfs
|
Sets the global rules that provide the trigger for additional authentication providers to be invoked. |
|
Set-Adfs
|
Configures an existing AD FS deployment to use the same port for both device certificate and client certificate authentication. |
|
Set-Adfs
|
Modifies an application group. |
|
Set-Adfs
|
Modifies application permissions. |
|
Set-Adfs
|
Modifies properties of an attribute store. |
|
Set-Adfs
|
Modifies a display name and description. |
|
Set-Adfs
|
Enables an AD FS farm to use MFA. |
|
Set-Adfs
|
Sets the account that is used for sharing managed certificates in a federation server farm. |
|
Set-Adfs
|
Sets the properties of an existing certificate that AD FS uses to sign, decrypt, or secure communications. |
|
Set-Adfs
|
Modifies a certificate authority. |
|
Set-Adfs
|
Modifies the properties of a claim description. |
|
Set-Adfs
|
Sets the properties of a claims provider trust. |
|
Set-Adfs
|
Modifies registration settings for an OAuth 2.0 client registered with AD FS. |
|
Set-Adfs
|
Configures the administrative policies for the Device Registration Service. |
|
Set-Adfs
|
Sets the list of UPN suffixes. |
|
Set-Adfs
|
Sets the endpoint on a Web Application Proxy. |
|
Set-Adfs
|
Removes a stale or offline farm node from the farm information table. |
|
Set-Adfs
|
Modifies the AD FS global policy. |
|
Set-Adfs
|
Sets properties for global web content objects. |
|
Set-Adfs
|
Modifies a local claims provider trust. |
|
Set-Adfs
|
Modifies configuration settings for a server native client application role of an application in AD FS. |
|
Set-Adfs
|
Sets the properties of a relying party trust for a non-claims-aware web application or service. |
|
Set-Adfs
|
Sets the properties that control global behaviors in AD FS. |
|
Set-Adfs
|
The Set-AdfsRegistrationHosts cmdlet is deprecated. |
|
Set-Adfs
|
Sets the properties of a relying party trust. |
|
Set-Adfs
|
Sets properties for the relying party web content objects. |
|
Set-Adfs
|
Applies a web theme to a relying party. |
|
Set-Adfs
|
Modifies a scope description in AD FS. |
|
Set-Adfs
|
Modifies configuration settings for a server application role of an application in AD FS. |
|
Set-Adfs
|
Sets an SSL certificate for HTTPS bindings for AD FS. |
|
Set-Adfs
|
Modifies the frequency of synchronization for the AD FS configuration database and which server is primary in the farm. |
|
Set-Adfs
|
Modifies configuration settings for trusted federation partners in AD FS. |
|
Set-Adfs
|
Modifies configuration settings for a Web API application in AD FS. |
|
Set-Adfs
|
Modifies properties of the relying party trust object for the Web Application Proxy. |
|
Set-Adfs
|
Modifies web customization configuration settings. |
|
Set-Adfs
|
Modifies properties of a web theme. |
|
Test-Adfs
|
Tests whether you can raise the behavior level of a farm. |
|
Test-Adfs
|
Tests whether you can restore an AD FS farm to a previous behavior level. |
|
Test-Adfs
|
Runs prerequisite checks for installing a new federation server farm. |
|
Test-Adfs
|
Runs prerequisite checks for adding the server computer to a federation server farm. |
|
Unregister-Adfs
|
Deletes an external authentication provider from AD FS. |
|
Update-Adfs
|
Updates the certificates of AD FS. |
|
Update-Adfs
|
Updates the claims provider trust from federation metadata. |
|
Update-Adfs
|
Updates the relying party trust from federation metadata. |