Install and Configure Web Application Proxy on Windows Server 2016

Below we may get step-by-step screenshots,

Step 1 - Verify and ensure appropriate IP addresses are assigned to all required fields.

Step 2 - Click on "Local Server".

Step 3 - Click on "WORKGROUP".

Step 4 - Click on "Change...".

Step 5 - Click on "More...".

Step 6 - Type the domain name and click on "OK".

Step 7 - Click on "OK".

Step 8 - Click on "OK".

Step 9 - Click on "OK".

Step 10 - Click on "Close".

Step 11 - Save rest of your background work, if any and click on "Restart Now". If planning to restart after some time then click on "Restart Later".

Step 12 - Click on "Add roles and features".

Step 13 - Click on "Next".

Step 14 - Keep selected "Role-based or feature-based installation" and click on "Next".

Step 15 - Select/Verify the server name and IP address, then click on "Next".

Step 16 - Locate "Remote Access" and click the check box.

Step 17 - Confirm the Tick mark and click on "Next".

Step 18 - Click on "Next".

Step 19 - Click on "Next".

Step 20 - Locate "Web Application Proxy" and click the check box.

Step 21 - Click on "Add Features".

Step 22 - Confirm the Tick mark and click on "Next".

Step 23 - Click on "Install".

Step 24 - Wait for some time until installation completes.

Step 25 - Click on "Open the Web Application Proxy Wizard".

Step 26 - Click on "Next".

Step 27 - Type "Federation Service Name", "User name and Password" of a local administrator account on the federation servers.

Step 28 - Click on "Next".

Step 29 - Select appropriate SSL Certificate from the drop down list and click on "Next".

Step 30 - Review all selections and click on "Configure".

Step 31 - Wait for some time until configuration completes.

Step 32 - Click on "Close".

Step 33 - Click on "Publish".

Step 34 - Click on "Next".

Step 35 - Click on "Pass-through".

Step 36 - Click on "Next".

Step 37 -  Type "Name", "External URL" & "Backend server URL", for example - "https://sso.dskoli.work/", select appropriate "External certificate" from the drop down list.

Step 38 - Locate "Enable HTTP to HTTPS redirection", click the check box, confirm the Tick mark and click on "Next".

Step 39 - Review all selections and click on "Publish".

Step 40 - Click on "Close".

Step 41 - Published Web Application will be displayed in the list.

Step 42 - On the Public DNS Panel of domain, add "Host (A)" record for federation service name pointing to WAP server on Perimeter Network. For example, "sso.dskoli.work" pointing to Public IP.

Thank You for being with me.
— Divyaprakash Shamrao Koli (Narmada)
DIVYAPRAKASH KOLIComment