我开发了用于自定义 AD FS MFA 的 c# DLL。所以我使用本教程中的 Build a Custom Authentication Method for AD FS in Windows Server
我使用这个 Power Shell 命令:
Set-Location "C:\Release"
[System.Reflection.Assembly]::Load("System.EnterpriseServices, Version=4.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a")
$publish = New-Object System.EnterpriseServices.Internal.Publish
$publish.GacInstall("C:\Release\MFAAdapter.dll")
([System.Reflection.Assembly]::LoadFile("C:\Release\MFAAdapter.dll")).FullName
$typeName = "MFAAdapter.Adapter, MFAAdapter, Version=1.0.0.7, Culture=neutral, PublicKeyToken=23251ce4dd11647e, processorArchitecture=MSIL”
Register-AdfsAuthenticationProvider -TypeName $typeName -Name “MFA Adapter” -ConfigurationFilePath 'C:\Release\config.json'
net stop adfssrv
net start adfssrv
但在事件查看器上启动 ADFS 服务后,会发生此错误:
An error occurred loading an authentication provider. Fix configuration errors using PowerShell
cmdlets and restart the Federation Service.
Identifier: MFA Adapter
Context: Proxy device TLS pipeline
Additional Data
Exception details:
An error occurred initializing the 'MFA Adapter' authentication provider.
但我的 DLL 已加载并进行身份验证。它还加载 TryEndAuthentication()
功能
为什么会出现这个错误?
OnAuthenticationPipelineLoad()
最后:调用函数还有一个问题。这样,这个函数根本就没有被调用,也不会加载配置文件(config.json)
。
public void OnAuthenticationPipelineLoad(IAuthenticationMethodConfigData configData)
{
try
{
if (configData != null || configData.Data != null)
{
using (StreamReader reader = new StreamReader(configData.Data, Encoding.UTF8))
{
var config = reader.ReadToEnd();
var obj = JObject.Parse(config);
EventLog.WriteEntry(
"Application",
String.Format("Config loaded for user:{0}. iKey:{1}, user_name, bj["ikey"]]),
EventLogEntryType.Information);
var ikey = obj["ikey"].ToString();
}
}
else
{
EventLog.WriteEntry(
"Application",
String.Format("Error: configData is null for user:{0}", user_name),
EventLogEntryType.Error);
throw new ArgumentNullException();
}
}
catch (Exception ex)
{
EventLog.WriteEntry(
"Application",
String.Format("Exception on OnAuthenticationPipelineLoad for user:{0}: {1}", user_name, ex.Message),
EventLogEntryType.Error);
throw new ArgumentException(ex.Message);
}
}