ADFS Setup Instructions

Introduction to ADFS

It is recommended to be familiar with ADFS prior to the setup with Trax 

For more information view


1. Install ADFS Role Service


2. Deploying a Federation Server Farm


Trax Authentication Configuration

When the ADFS is configured and ready, pleas perform the following steps to configure the integration with Trax:

  1. Safe the ADFS Transform Rules to a filename "Issuance-Transform-Rules.txt"​​:

    @RuleName = "ldap attr"
    c:[Type == "", Issuer == "AD AUTHORITY"]
    = > issue(store = "Active Directory", types = ("email", "user_name", "display_name"), query = ";mail,userPrincipalName,displayName;{0}", param = c.Value);


  2. Execute the following windows powershell commands:

    1. Add ADFS Client:

      Add-AdfsClient -Name "TraxImageRecognition" -ClientId "1adb656e-79d6-4a08-ad7f-448b0484ca44" -RedirectUri @("", "", "","") -Description "OAuth 2.0 client for Trax Image Recognition"

    2. Add Relying Party Trust:

      Add-AdfsRelyingPartyTrust -Name "TraxImageRecognition" -Identifier -IssueOAuthRefreshTokensTo AllDevices -EnableJWT $true -IssuanceTransformRulesFile "Issuance-Transform-Rules.txt"

