1,240 questions with Active Directory Federation Services tags

Sort by: Updated
2 answers

Integrate ADFS ( WS 2019) with an external Identity Provider: check user authorizations / permissions

Hi, I have setup an enviroment with an ADFS ( WS 2019) and an external Identity Provider. My goal is that once a user has been authenticated by the external Identiy Provider that ADFS will query AD to get retrieve his / her permissions (i.e. based…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-10-06T16:21:08.877+00:00
Giovanni Fleres 216 Reputation points
commented 2020-10-07T17:36:26.427+00:00
Pierre Audonnet - MSFT 10,181 Reputation points Microsoft Employee
1 answer

ADFS 2016 - Claim to retrieve members (user and group) cross forest of an AD group

Hey everyone, I'm trying to figure out a way to send all the members from an AD group INCLUDING nested groups from a different forest. So let's say I am authenticated with DOMAINA\USER1 and I am a member of DOMAINA\GROUPA which itself is a member of…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-10-02T22:21:23.423+00:00
Mike Power 1 Reputation point
answered 2020-10-07T13:02:31.687+00:00
Pierre Audonnet - MSFT 10,181 Reputation points Microsoft Employee
2 answers

SSO support for edge (chromium based) with ADFS 3.0

Hi We have upgrade ADFS FBL from 1.0 to 3.0. Still SSO with edge (chromium based) is not working if we do not add the specific version. Below is the current status Set-AdfsProperties -WIASupportedUserAgents…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-20T07:48:37.313+00:00
LMS 156 Reputation points
commented 2020-10-07T12:09:54.103+00:00
Pierre Audonnet - MSFT 10,181 Reputation points Microsoft Employee
1 answer

ADFS - SAML 2.0 - Multiple Forests - No Trusts

I have a weird scenario. There are many companies that are owned by one company. We are moving to a cloud based helpdesk system that supports SAML authentication for SSO. Ultimately all companies will be in a single forest, but for now each company has…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-10-02T18:21:50.097+00:00
Phil Montalbano 1 Reputation point
answered 2020-10-06T17:34:55.627+00:00
2 answers

ADFS - ADFS doesn't seem to adhere to the SAML2.0 specification with regards to AssertionConsumerServiceURL (MSIS3200)

Hi, I have successfully installed and configured the ADFS service on Windows 2012 R2. I've also setup a relying party trust and logging in with SSO works perfectly. However according to the SAML2.0 specification the AuthRequest may optionally contain a…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-24T16:42:00.267+00:00
EnginZ 1 Reputation point
answered 2020-10-06T07:12:30.3+00:00
EnginZ 1 Reputation point
1 answer One of the answers was accepted by the question author.

Azure AD connect Single Sign On ADFS

If ADFS is installed but not being used for Office 365/Azure AD authentication and there is no existing Azure AD Connect installation - can I perform a fresh install of Azure Active Directory Connect and enable single sign on without using the existing…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,214 questions
asked 2020-10-04T22:46:40.823+00:00
jpcapone 1,396 Reputation points
accepted 2020-10-05T00:43:32.233+00:00
jpcapone 1,396 Reputation points
1 answer

Single forest Mutiple Domain - ADFS 2016

we have a multidomain forest Root.local - root doman mydomain.com - Child domain. ADFS installed and configured in "mydomain.com", however, the users from root domain are not able to get authenticated with ADFS relying party. (Exchange…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-27T23:55:19.917+00:00
Sandheep Unnikrishnan 1 Reputation point
answered 2020-10-01T22:57:51.193+00:00
0 answers

MSIS9459: Unable to use the enrollment certificate ADFS

Our ADFS 2016 server is getting the below event id 1021 Log Name: Source: AD FS Date: 10/1/2020 4:58:01 PM Event ID: 1021 Task Category: None Level: Error Keywords: AD FS User: Computer: Description: Encountered error during OAuth…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-10-01T21:01:48.213+00:00
vferna 1 Reputation point
2 answers

Chrome Sharepoint ADFS the same client browser session has made 6 requests

Weird issue. Any insight is highly appreciated. A handful of users complaining about errors when trying to login from chrome to the sharepoint portal via adfs 3.0 sso. Reports started coming after migration to 2016 sharepoint portal. One user had this …

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
SharePoint Server Management
SharePoint Server Management
SharePoint Server: A family of Microsoft on-premises document management and storage systems.Management: The act or process of organizing, handling, directing or controlling something.
2,935 questions
asked 2020-07-28T16:04:25.32+00:00
Huck Finn 1 Reputation point
commented 2020-10-01T00:29:37.467+00:00
Huck Finn 1 Reputation point
2 answers One of the answers was accepted by the question author.

Rollback ADFS Farm Behavior Level to 1 from 4

Hi We are planning to raise ADFS Farm Behavior Level (FBL) to ADFS 4.0. Both the ADFS servers are 2016 VMs. In case of any issue with new FBL version, shall we revert to the snapshot taken before raising the FBL or is there a better way to revert? …

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-14T14:25:02.327+00:00
LMS 156 Reputation points
accepted 2020-09-29T09:08:52.87+00:00
LMS 156 Reputation points
1 answer One of the answers was accepted by the question author.

ADFS Migration

My existing ADFS farm was setup by others who left. The OS is 2012R2. So I assume I am on ADFS 3.0. My DC is still on 2008R2. Both Forest Functional Level & Domain Functional Level are still on 2008R2. I want to migrate to a new ADFS farm to…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-24T03:25:23.35+00:00
Lim Chong Sun 531 Reputation points
accepted 2020-09-29T02:51:29.467+00:00
Lim Chong Sun 531 Reputation points
1 answer

HSTS on ADFS

We're running ADFS on Windows Server 2019, with the appropriate headers enabled. Much like this prior question, we need to have ADFS return a header, showing HSTS enabled, rather than a 404, if the root is called -- i.e., https://adfs.url.com. HSTS shows…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-22T19:52:00.9+00:00
BRYAN BURNETT 16 Reputation points
commented 2020-09-25T01:26:32.433+00:00
BRYAN BURNETT 16 Reputation points
1 answer

Migrate ADFS to Azure using Azure Site Recovery

I am searching for documentation detailing the steps required to migrate ADFS on prem to Azure VMs within an existing AAD tenant. I am not finding a lot of information in my google searches on this topic. Can someone here assist?

Azure Site Recovery
Azure Site Recovery
An Azure native disaster recovery service. Previously known as Microsoft Azure Hyper-V Recovery Manager.
693 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-14T15:31:39.677+00:00
jpcapone 1,396 Reputation points
commented 2020-09-25T00:36:25.797+00:00
olufemia-MSFT 2,861 Reputation points
1 answer One of the answers was accepted by the question author.

Migrate Office 365 domain federation

We're about to migrate one Office 365 domain from our old SAML federation to a new ADFS setup, however, when trying to update the domain, we get the following error: PS C:\Windows\system32> Update-MsolFederatedDomain -DomainName example.com…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,214 questions
asked 2020-09-14T05:59:05.313+00:00
Robin H 21 Reputation points
commented 2020-09-24T13:51:26.983+00:00
Robin H 21 Reputation points
1 answer

ADFS 2016 - requirements - does it work with 2003 domain and forest functional levels?

Hello, We're looking to upgrade our ADFS from 2012 to 2016. Currently we have 2012 DCs running at 2003 domain and forest functionality level. Can ADFS 2016 work with 2012 DCs running at 2003 domain and forest functionality levels? Looking…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-24T11:34:48.447+00:00
peter siffredi 41 Reputation points
commented 2020-09-24T13:46:11.503+00:00
Anonymous
3 answers One of the answers was accepted by the question author.

need to clean up Federated domain

Hi Members, Good day, We have a federated domain in Azure. -> eg. fed.dom.lo.com the AD Connect was set up and it had synchronized all the users in our on-prem domain controller to the Azure. Assume we had 20k users in the specific OU, which…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
21,214 questions
asked 2020-09-16T09:44:30.453+00:00
Venugopal B 21 Reputation points
answered 2020-09-22T11:48:50.743+00:00
Venugopal B 21 Reputation points
0 answers

Azure Data Factory mysql & CRM 365 Integration Issue

I want to integrate mysql with CRM 365. I am unable to change the data type of source so it would be same as destination data type. Conversion from int 64 to int 32. Please answer this query. Thanks

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-21T18:54:57.507+00:00
Akif Malik 1 Reputation point
0 answers

Azure AD B2C token endpoint retruns 404

We use Azure AD B2C as identity provider in one of our applications. We want users to login using their organizational account (Any Azure AD – Multitenant) and personal Microsoft accounts. Also, we use Custom Policies and relevant ClaimsProvider is…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,833 questions
asked 2020-09-15T16:42:01.197+00:00
SamD 151 Reputation points
commented 2020-09-21T09:29:17.52+00:00
SamD 151 Reputation points
0 answers

ADFS SAML Artifact Resolution Response Missing Signature

I'm trying to integrate ADFS with our Service Provider (SP). I've enabled the Artifact Resolution (SOAP) mechanism in ADFS and ADFS does response to an ArtifactRequest message with an ArtifactResponse message, but the ArtifactResponse is missing a…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-03T19:27:39.993+00:00
Eric Swenson 6 Reputation points
commented 2020-09-17T16:21:35.757+00:00
Daniel Scannell 1 Reputation point
4 answers

publish active sync with adfs

dears, i configured since a while active sync and published it using adfs and wap. it was working great. relying party trust created type : non claims aware publishing on wap using adfs: rich clients starting the last night, it stopped…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,240 questions
asked 2020-09-02T13:08:33.697+00:00
eg1995 1,136 Reputation points
answered 2020-09-17T07:10:42.44+00:00
eg1995 1,136 Reputation points