Install and Configure Web Application Proxy on Windows Server 2016
Below we may get step-by-step screenshots,
Step 1 - Verify and ensure appropriate IP addresses are assigned to all required fields.
Step 2 - Click on "Local Server".
Step 3 - Click on "WORKGROUP".
Step 4 - Click on "Change...".
Step 5 - Click on "More...".
Step 6 - Type the domain name and click on "OK".
Step 7 - Click on "OK".
Step 8 - Click on "OK".
Step 9 - Click on "OK".
Step 10 - Click on "Close".
Step 11 - Save rest of your background work, if any and click on "Restart Now". If planning to restart after some time then click on "Restart Later".
Step 12 - Click on "Add roles and features".
Step 13 - Click on "Next".
Step 14 - Keep selected "Role-based or feature-based installation" and click on "Next".
Step 15 - Select/Verify the server name and IP address, then click on "Next".
Step 16 - Locate "Remote Access" and click the check box.
Step 17 - Confirm the Tick mark and click on "Next".
Step 18 - Click on "Next".
Step 19 - Click on "Next".
Step 20 - Locate "Web Application Proxy" and click the check box.
Step 21 - Click on "Add Features".
Step 22 - Confirm the Tick mark and click on "Next".
Step 23 - Click on "Install".
Step 24 - Wait for some time until installation completes.
Step 25 - Click on "Open the Web Application Proxy Wizard".
Step 26 - Click on "Next".
Step 27 - Type "Federation Service Name", "User name and Password" of a local administrator account on the federation servers.
Step 28 - Click on "Next".
Step 29 - Select appropriate SSL Certificate from the drop down list and click on "Next".
Step 30 - Review all selections and click on "Configure".
Step 31 - Wait for some time until configuration completes.
Step 32 - Click on "Close".
Step 33 - Click on "Publish".
Step 34 - Click on "Next".
Step 35 - Click on "Pass-through".
Step 36 - Click on "Next".
Step 37 - Type "Name", "External URL" & "Backend server URL", for example - "https://sso.dskoli.work/", select appropriate "External certificate" from the drop down list.
Step 38 - Locate "Enable HTTP to HTTPS redirection", click the check box, confirm the Tick mark and click on "Next".
Step 39 - Review all selections and click on "Publish".
Step 40 - Click on "Close".
Step 41 - Published Web Application will be displayed in the list.
Step 42 - On the Public DNS Panel of domain, add "Host (A)" record for federation service name pointing to WAP server on Perimeter Network. For example, "sso.dskoli.work" pointing to Public IP.