{
    "api_version": "1",
    "kind": "dse_post",
    "self": "https://update.dsesecurity.com/api/v1/posts/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/",
    "item": {
        "id": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/",
        "slug": "dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production",
        "url": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/",
        "alternate_urls": {
            "markdown": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production.md",
            "json": "https://update.dsesecurity.com/api/v1/posts/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/"
        },
        "title": "Prepare federation certificate names before a Work Folders lab becomes production",
        "summary": "Which certificate planning decisions should precede the Work Folders AD FS setup example?",
        "format": {
            "slug": "guide",
            "name": "Guide"
        },
        "priority": {
            "slug": "info",
            "name": "Information"
        },
        "featured": false,
        "image": {
            "theme": "network-infrastructure",
            "label": "Networks & infrastructure",
            "alt": "Resilient network core with engineered blue and gold data paths.",
            "card_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-card.webp?v=1.8.20",
            "hero_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-hero.webp?v=1.8.20",
            "social_url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
            "width": 2400,
            "height": 1350
        },
        "topics": [
            {
                "slug": "business-continuity",
                "name": "Business Continuity",
                "url": "https://update.dsesecurity.com/topic/business-continuity/"
            },
            {
                "slug": "it",
                "name": "IT",
                "url": "https://update.dsesecurity.com/topic/it/"
            }
        ],
        "author": {
            "name": "DSE Security Editorial Team",
            "url": "https://update.dsesecurity.com/#editorial-team",
            "type": "Organization"
        },
        "publisher": {
            "name": "Detection Systems & Engineering",
            "url": "https://dsesecurity.com/"
        },
        "published_at": "2026-09-08T18:16:12+00:00",
        "modified_at": "2026-09-08T18:20:21+00:00",
        "reviewed_on": "2026-09-08",
        "reading_minutes": 1,
        "word_count": 214,
        "potentially_affected": "Use this review when planning the federation endpoint for the documented Work Folders design.",
        "dse_recommendation": "Create a certificate-name worksheet before requesting issuance.",
        "primary_source": {
            "name": "Deploy Work Folders with AD FS and Web Application Proxy - Step 1, Set Up AD FS",
            "url": "https://learn.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders-adfs-step1",
            "published_on": null,
            "authority": "Microsoft Learn"
        },
        "publishing_principles": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
        "usage_info": "https://update.dsesecurity.com/usage/",
        "copyright_notice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
        "content_html": "<h2>Source facts</h2>\n<p>Microsoft&#8217;s Work Folders walkthrough starts by preparing AD FS before the later proxy and client stages. The walkthrough distinguishes its self-signed test certificate from the publicly trusted certificate recommended for production. Its certificate example includes names for the federation service, enterprise registration, and federation server. <a href=\"https://learn.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders-adfs-step1\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft documentation</a>.</p>\n<h2>Applicability</h2>\n<p>Use this review when planning the federation endpoint for the documented Work Folders design. Identify the real service names and certificate authority. Check the procedure&#8217;s release-specific limits before adapting any historical lab instruction.</p>\n<h2>DSE recommendation</h2>\n<p>Create a certificate-name worksheet before requesting issuance. Have the federation and certificate owners confirm which names the planned service requires and who will maintain the certificate. Keep lab identities and trust decisions visibly separate from the production request. Allow time for issuance and validation, and avoid copying sample hostnames into the deployment record.</p>\n<h2>Verification</h2>\n<p>Inspect the issued certificate against the approved name worksheet and trust arrangement. Verify the intended federation endpoint through an authorized test before moving to later Work Folders stages. Record the certificate identity, responsible owner, and any name mismatch. Resolve the mismatch through the approved certificate process before publishing the service to clients.</p>\n<h2>Official references</h2>\n<p><a href=\"https://learn.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders-adfs-step1\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Learn: Deploy Work Folders with AD FS and Web Application Proxy &#8211; Step 1, Set Up AD FS</a>. Source reviewed September 8, 2026.</p>",
        "content_text": "Source facts\nMicrosoft’s Work Folders walkthrough starts by preparing AD FS before the later proxy and client stages. The walkthrough distinguishes its self-signed test certificate from the publicly trusted certificate recommended for production. Its certificate example includes names for the federation service, enterprise registration, and federation server. Microsoft documentation.\nApplicability\nUse this review when planning the federation endpoint for the documented Work Folders design. Identify the real service names and certificate authority. Check the procedure’s release-specific limits before adapting any historical lab instruction.\nDSE recommendation\nCreate a certificate-name worksheet before requesting issuance. Have the federation and certificate owners confirm which names the planned service requires and who will maintain the certificate. Keep lab identities and trust decisions visibly separate from the production request. Allow time for issuance and validation, and avoid copying sample hostnames into the deployment record.\nVerification\nInspect the issued certificate against the approved name worksheet and trust arrangement. Verify the intended federation endpoint through an authorized test before moving to later Work Folders stages. Record the certificate identity, responsible owner, and any name mismatch. Resolve the mismatch through the approved certificate process before publishing the service to clients.\nOfficial references\nMicrosoft Learn: Deploy Work Folders with AD FS and Web Application Proxy – Step 1, Set Up AD FS. Source reviewed September 8, 2026.",
        "content_markdown": "## Source facts\n\nMicrosoft’s Work Folders walkthrough starts by preparing AD FS before the later proxy and client stages. The walkthrough distinguishes its self-signed test certificate from the publicly trusted certificate recommended for production. Its certificate example includes names for the federation service, enterprise registration, and federation server. [Microsoft documentation](https://learn.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders-adfs-step1).\n\n## Applicability\n\nUse this review when planning the federation endpoint for the documented Work Folders design. Identify the real service names and certificate authority. Check the procedure’s release-specific limits before adapting any historical lab instruction.\n\n## DSE recommendation\n\nCreate a certificate-name worksheet before requesting issuance. Have the federation and certificate owners confirm which names the planned service requires and who will maintain the certificate. Keep lab identities and trust decisions visibly separate from the production request. Allow time for issuance and validation, and avoid copying sample hostnames into the deployment record.\n\n## Verification\n\nInspect the issued certificate against the approved name worksheet and trust arrangement. Verify the intended federation endpoint through an authorized test before moving to later Work Folders stages. Record the certificate identity, responsible owner, and any name mismatch. Resolve the mismatch through the approved certificate process before publishing the service to clients.\n\n## Official references\n\n[Microsoft Learn: Deploy Work Folders with AD FS and Web Application Proxy – Step 1, Set Up AD FS](https://learn.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders-adfs-step1). Source reviewed September 8, 2026."
    },
    "json_ld": {
        "@context": "https://schema.org",
        "@graph": [
            {
                "@type": "Organization",
                "@id": "https://dsesecurity.com/#organization",
                "name": "Detection Systems & Engineering",
                "alternateName": "DSE Security",
                "url": "https://dsesecurity.com/",
                "logo": {
                    "@type": "ImageObject",
                    "url": "https://update.dsesecurity.com/assets/dse-logo-20260812.png?v=1.8.20"
                }
            },
            {
                "@type": "Organization",
                "@id": "https://update.dsesecurity.com/#editorial-team",
                "name": "DSE Security Editorial Team",
                "url": "https://update.dsesecurity.com/",
                "parentOrganization": {
                    "@id": "https://dsesecurity.com/#organization"
                }
            },
            {
                "@type": "WebSite",
                "@id": "https://update.dsesecurity.com/#website",
                "name": "DSE Updates",
                "alternateName": "DSE Security Knowledge Hub",
                "url": "https://update.dsesecurity.com/",
                "inLanguage": "en-US",
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "potentialAction": {
                    "@type": "SearchAction",
                    "target": {
                        "@type": "EntryPoint",
                        "urlTemplate": "https://update.dsesecurity.com/?q={search_term_string}"
                    },
                    "query-input": "required name=search_term_string"
                }
            },
            {
                "@type": "WebPage",
                "@id": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/",
                "url": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/",
                "isPartOf": {
                    "@id": "https://update.dsesecurity.com/#website"
                },
                "lastReviewed": "2026-09-08"
            },
            {
                "@type": "BreadcrumbList",
                "@id": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/#breadcrumbs",
                "itemListElement": [
                    {
                        "@type": "ListItem",
                        "position": 1,
                        "name": "DSE Updates",
                        "item": "https://update.dsesecurity.com/"
                    },
                    {
                        "@type": "ListItem",
                        "position": 2,
                        "name": "Prepare federation certificate names before a Work Folders lab becomes production",
                        "item": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/"
                    }
                ]
            },
            {
                "@type": [
                    "Article",
                    "TechArticle"
                ],
                "@id": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/#article",
                "identifier": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/",
                "url": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/",
                "headline": "Prepare federation certificate names before a Work Folders lab becomes production",
                "description": "Which certificate planning decisions should precede the Work Folders AD FS setup example?",
                "abstract": "Which certificate planning decisions should precede the Work Folders AD FS setup example?",
                "articleBody": "Source facts\nMicrosoft’s Work Folders walkthrough starts by preparing AD FS before the later proxy and client stages. The walkthrough distinguishes its self-signed test certificate from the publicly trusted certificate recommended for production. Its certificate example includes names for the federation service, enterprise registration, and federation server. Microsoft documentation.\nApplicability\nUse this review when planning the federation endpoint for the documented Work Folders design. Identify the real service names and certificate authority. Check the procedure’s release-specific limits before adapting any historical lab instruction.\nDSE recommendation\nCreate a certificate-name worksheet before requesting issuance. Have the federation and certificate owners confirm which names the planned service requires and who will maintain the certificate. Keep lab identities and trust decisions visibly separate from the production request. Allow time for issuance and validation, and avoid copying sample hostnames into the deployment record.\nVerification\nInspect the issued certificate against the approved name worksheet and trust arrangement. Verify the intended federation endpoint through an authorized test before moving to later Work Folders stages. Record the certificate identity, responsible owner, and any name mismatch. Resolve the mismatch through the approved certificate process before publishing the service to clients.\nOfficial references\nMicrosoft Learn: Deploy Work Folders with AD FS and Web Application Proxy – Step 1, Set Up AD FS. Source reviewed September 8, 2026.",
                "datePublished": "2026-09-08T18:16:12+00:00",
                "dateModified": "2026-09-08T18:20:21+00:00",
                "mainEntityOfPage": {
                    "@id": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/"
                },
                "inLanguage": "en-US",
                "isAccessibleForFree": true,
                "author": {
                    "@type": "Organization",
                    "name": "DSE Security Editorial Team",
                    "url": "https://update.dsesecurity.com/#editorial-team"
                },
                "publisher": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "image": {
                    "@type": "ImageObject",
                    "@id": "https://update.dsesecurity.com/updates/dse-20260908-059-prepare-federation-certificate-names-before-a-work-folders-lab-becomes-production/#primaryimage",
                    "url": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
                    "contentUrl": "https://update.dsesecurity.com/assets/editorial/network-infrastructure-social-v2.jpg?v=1.8.20",
                    "width": 1200,
                    "height": 630,
                    "caption": "Prepare federation certificate names before a Work Folders lab becomes production"
                },
                "articleSection": [
                    "Business Continuity",
                    "IT"
                ],
                "keywords": [
                    "Business Continuity",
                    "IT",
                    "Guide",
                    "Information priority"
                ],
                "genre": "Guide",
                "about": [
                    {
                        "@type": "Thing",
                        "name": "Business Continuity",
                        "url": "https://update.dsesecurity.com/topic/business-continuity/"
                    },
                    {
                        "@type": "Thing",
                        "name": "IT",
                        "url": "https://update.dsesecurity.com/topic/it/"
                    }
                ],
                "wordCount": 214,
                "timeRequired": "PT1M",
                "publishingPrinciples": "https://update.dsesecurity.com/updates/dse-updates-editorial-methodology/",
                "usageInfo": "https://update.dsesecurity.com/usage/",
                "copyrightHolder": {
                    "@id": "https://dsesecurity.com/#organization"
                },
                "copyrightNotice": "Copyright © 2026 Detection Systems & Engineering. All rights reserved.",
                "citation": {
                    "@type": "CreativeWork",
                    "name": "Deploy Work Folders with AD FS and Web Application Proxy - Step 1, Set Up AD FS",
                    "url": "https://learn.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders-adfs-step1"
                }
            }
        ]
    }
}