The following issues were encountered when configuring the ADFS service during an ADFS deployment
Check the system log error log as follows, it is obvious "NT service\mssql$microsoft# #WID" This account is not in log on as a aservice
To see what this account is going to do, we found the account in the service, he needs to start the Windows Internal database this service, in the configuration when the prompt to look at the interface to know that the need to create a database, and this account is missing the ability to start the service can not be created, caused a failure of the configuration.
Follow the error prompt only need to add "NT service\mssql$microsoft# #WID" This account to the log on SERVICE group in the Group Policy can be all right, and read a lot of information on the internet said to add this account can be, But this account does not exist is a virtual account can not be added at all, how to do?
Finally, just add these 4 groups IIS_WGP, network, Network Service, service into log on as a service, note that this step only domain administrator has permission to add, and finally run the ADFS service configuration will find that the configuration went smoothly to the last , this problem has been solved.