I've successfully made connections to the SharePoint On-prem using WAP and ADFS with external help.
The users hits the external domain... http://Wap.contoso.com and gets validated by WAP and ADFS and directed to the on-prem webapplication on the LAN side: http://Lan1.portal1 on a SharePoint WebApplication that is Kerberos enabled. - that's all good..:)
But can I on the http://Lan1.portal1 make a link to another Webapplication that has kerberos enabled e.g. http://lan1.portal2 - in the same farm or in another farm and the users then is directed to it? )
in other words - is the "token/validation" following the user/session? or is WAP just a 1-Site-to-Site?
- Edited by JmATK Friday, March 20, 2015 5:15 AM