Get hands-on experience with 20+ free Google Cloud products and $300 in free credit for new customers.

Cloud Identity & Microsoft ADFS Federation

Hi all,

I have a customer running Sharepoint on Windows 2019 Servers in Google Cloud Compute Engines.

The Microsoft AD forest/domain and ADFS is also running in self hosted Windows 2022 server in Google Cloud. They want to enable MFA using the Google Cloud Identity's MFA feature.

My idea was like this

AD is syncing user & password using the GCDS & Password sync to Google Cloud Identity.

Google Cloud Identity will act as a IdP (Identity Provider)

ADFS will act as a Service Provider to Sharepoint.

Configure the SAML auth between ADFS and Cloud Identity using Relying Party Trust.

Will this approach work ?

If so, anyone has done something similar and have any documentation related to set up in ADFS. 

 

-Sijohn

5 1 1,045
1 REPLY 1

Hello @sijohnmathew  ,Welcome on Google Cloud Community.

I've didn't use MS AD for this ( I'm using Okta ) but found something interesting, which might help with your case. 
https://cloud.google.com/architecture/identity/federating-gcp-with-active-directory-synchronizing-us...

--
cheers,
DamianS
LinkedIn medium.com Cloudskillsboost