You're completing the setup or manual update of AD Connect for IIS and are ready to verify the AD Connect for IIS installation and configure additional settings in PingOne for Enterprise.
When you've completed your configuration:
- If you've upgraded:
- You need to set the proper verification certificate. While logged in as an
Administrator, browse to
https://localhost/adconnect/config.aspx.
In the bottom left of this page you will find the digital signature portion. Select the certificate that you'd assigned for the previous AD Connect installation, or want to assign for this installation. You can also choose to use the self-signed certificate.
Note: If an error displays after you've selected the verification certificate stating that the certificate does not have the proper permissions, see the PingOne Knowledge Base article Manually updating the AD Connect signing certificate. - If you upgraded from version 1.x, in the PingOne admin portal, you will see that the group short names have been converted to their full DN. If you have multiple domains or child domains, check your application group mappings to ensure all of the correct groups have been selected for your application.
- You need to set the proper verification certificate. While logged in as an
Administrator, browse to
https://localhost/adconnect/config.aspx.
- If you're using AD Connect with IIS in a clustered, high availability configuration, repeat these steps on each AD Connect host.