Consider the following scenario in Microsoft Forefront Unified Access Gateway (UAG) 2010:
In this scenario, you may find that single sign-on does not occur, and you have to authenticate again to the AD FS server.
- You have a Forefront UAG trunk portal that is configured to perform trunk authentication to an Active Directory or other non-Active Directory Federation Services (AD FS) repository.
- You publish an AD FS server by using the built-in (AD FS) 2.0 template.
- You configure an application for single sign-on from the trunk repository.
In this scenario, you may find that single sign-on does not occur, and you have to authenticate again to the AD FS server.