1,219 questions with Active Directory Federation Services tags

Sort by: Updated
1 answer

antivirus and WAP

hi! Are there any concerns for installing antivirus on a couple of load balanced wap servers that are the front ends to the adfs 3? Thanks!

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-05-13T18:58:35.89+00:00
Ask Always 41 Reputation points
answered 2020-05-13T20:14:45.073+00:00
Thierry DEMAN-BARCELO 491 Reputation points MVP
1 answer One of the answers was accepted by the question author.

ADFS Dedicated Server

Can ADFS server be installed on a machine with other server roles installed or non-MS application services? Or is should be dedicated to ADFS only? I'm trying to look for article or documentation that will support this scenario but could not find any.…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-24T08:19:32.82+00:00
James Escober 81 Reputation points
accepted 2020-05-13T10:42:36.083+00:00
James Escober 81 Reputation points
2 answers One of the answers was accepted by the question author.

ADFS windows 2016 -An error occurred during an attempt to read the federation metadata while configuring Zoom as Relying party trust

I am trying to select the first option to add zoom as relying party trust but getting attached error. i am using ADFS windows 2016. Relying party trust is Zoom. Can any one assist?

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-03T05:39:34.19+00:00
Muhammad Akther 21 Reputation points
commented 2020-05-11T21:45:41.47+00:00
Pierre Audonnet - MSFT 10,171 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

2 ADFS Farms 1 SQL Server

I'm currently planning on rebuilding my ADFS farm from scratch and point it to a new domain (sts.example2.com) My current ADFS Farm (sts.example1.com) uses SQL server for the configuration and artifact databases. The configuration database will not…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-05-08T15:01:08.587+00:00
Fernando Sousa 21 Reputation points
accepted 2020-05-11T07:58:51.36+00:00
Fernando Sousa 21 Reputation points
4 answers One of the answers was accepted by the question author.

ADFS successful login doesn't show in the event viewer

I enabled the ADFS log according the doc https://video2.skills-academy.com/en-us/windows-server/identity/ad-fs/troubleshooting/ad-fs-tshoot-logging. I can see the failed login but the successful login doesn't show in the event viewer. Any idea why this…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-20T18:56:39.753+00:00
HK G 516 Reputation points
answered 2020-05-06T11:43:34.667+00:00
ppinero 1 Reputation point
1 answer One of the answers was accepted by the question author.

ADFS 3.0 move database to 2016 SQL clister

Hello all We are running ADFS 3.0 farm on windows 201R2. We currently have 4 nodes in the farm. Currently the ADFS database is pointing to an old 2008 sql cluster and we need to move the artifactdbconnection to a 2016 sql always on availability…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-27T22:34:34.363+00:00
skip hofmann 46 Reputation points
accepted 2020-05-04T17:02:49.867+00:00
skip hofmann 46 Reputation points
1 answer One of the answers was accepted by the question author.

AAD Sign-Ins, but no Local AD sign-ins

We are configured with Azure AD Sync and ADFS for authentication. When a user signs in, they're directed to ADFS for authentication, and then back to the O354/Azure application. This records a Sign-In in the Azure Sign-Ins log, and it updates the…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-27T20:56:21.36+00:00
Jinseng 41 Reputation points
commented 2020-05-01T02:50:22.567+00:00
Jinseng 41 Reputation points
1 answer

Seamless Single sign on on MAC/Safari using Azure AD/ADFS

Hi Team, Is there a way to achieve seamless SSO on MAC os safari browser, we have below WIASupportedUserAgents added as ADFS properties. MSAuthHost/1.0/In-Domain MSIE 6.0 MSIE 7.0 MSIE 8.0 MSIE 9.0 MSIE 10.0 Trident/7.0 MSIPC Windows…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,315 questions
asked 2020-04-29T12:15:34.71+00:00
Rahul Kaim 21 Reputation points
answered 2020-04-29T13:12:24.343+00:00
AmanpreetSingh-MSFT 56,481 Reputation points
2 answers

ADFS Authentication with Multiple Forests for Remote Desktop Services

Hello, How can I do ADFS Authentication with Multiple Forests for Remote Desktop Services? I have an on-premises Remote Desktop environment and now we are merged with other company and they want to access our Remote Desktop Environment with their AD…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-15T05:49:34.347+00:00
Hardeep Singh 1 Reputation point
commented 2020-04-23T20:25:52.483+00:00
Pierre Audonnet - MSFT 10,171 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

How to clear login_hint (user_hint)?

We have an application that performs HRD based on the users e-mail address that they enter. Then (in some cases) it either redirects the user to ADFS WAP for authentication or another IdP. The redirect includes the e-mail address entered by the user…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-09T11:51:12.797+00:00
MolokoVelocette 21 Reputation points
commented 2020-04-23T08:49:26.827+00:00
MolokoVelocette 21 Reputation points
3 answers

ADFS - possibility to determine to which application user has logged in

Hello, In our environment we use ADFS for authentication to various applications and we would like to have report about how many users logged in through ADFS to specific application. On basic logging level I was able to find only events 4624 and 4648…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-21T06:11:08.847+00:00
Spenserq 1 Reputation point
answered 2020-04-21T23:05:34.72+00:00
Pierre Audonnet - MSFT 10,171 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Active Directory Federation Service - Office365

Hi For O365 relying party trust: the Encryption Certificate is blank? is it normal? can we setup certificat? if yes How? For Token Decrypting and Token signing Certificates are by default self-signed. (not issued by a CA). May be issued by a CA?…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-20T17:19:12.877+00:00
Ines 21 Reputation points
commented 2020-04-21T15:59:19.367+00:00
Ines 21 Reputation points
0 answers

Persistent SSO with OnPrem ADFS for smartphones

We have an OnPrem ADFS setup for a web application. The web application is targeting windows 10 clients (kerberos) and smartphones (forms authentication). Smartphones could connect from the internal network or the internet. The Problem is that the…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-21T13:54:19.59+00:00
Tobias Heeb 1 Reputation point
commented 2020-04-21T15:14:06.867+00:00
Tobias Heeb 1 Reputation point
1 answer One of the answers was accepted by the question author.

ADFS authentication

Hi, Our users are having what seems like an ADFS authentication error code: Reference number: d270fca6-e14e-4af0-80eb-efb29c74e535" When I explored further it seems it has to do with authentication certificate as I received this message…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-02-06T11:15:54.14+00:00
Peter Osazuwa 21 Reputation points
commented 2020-04-21T13:03:48.693+00:00
Peter Osazuwa 21 Reputation points
4 answers

ADFS RP to Azure AD RP Migration

Hello, We are in the process of moving our Relay Parties trusts from on prem ADFS to Azure AD. I have a party trust setup with WebEx and it inlcudes some custom claim rules. Can someone help me in the proper formatting of these claims in Azure AD SSO? …

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,315 questions
asked 2020-04-09T13:27:36.313+00:00
DT_Support 21 Reputation points
answered 2020-04-17T18:15:12.137+00:00
DT_Support 21 Reputation points
2 answers One of the answers was accepted by the question author.

Private Personal Identifier with 2 nodes ADFS : how generate same PPID from both servers ?

I try to generate a PPID claim on ADFS windows 2019 with the rule (from https://video2.skills-academy.com/en-us/windows-server/identity/ad-fs/technical-reference/when-to-use-a-custom-claim-rule) : c:[Type ==…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-03-09T10:28:27.22+00:00
DS 106 Reputation points
commented 2020-04-16T17:06:34.277+00:00
DS 106 Reputation points
1 answer

ADFS via Internet

Dear Technet, hope you can help me moving forward. I have a WebApp Proxy with ADFS (V4) in place. Is it possible to use SSO via Internet: take my laptop (AD member) outside of the network, connect it via mobile phone to the Internet and access then a…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-16T11:15:26.807+00:00
Christoph Thurnheer 81 Reputation points
answered 2020-04-16T13:12:54.667+00:00
Pierre Audonnet - MSFT 10,171 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

ADFS - Append String to End of Attribute Passed

Good morning, I'm dealing with a challenge with the value passed by ADFS to an application in a particular attribute. Here is what he have for the value passed in the Claim Rule: c:[Type ==…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-15T15:58:33.3+00:00
Greg 26 Reputation points
accepted 2020-04-15T19:14:46.823+00:00
Greg 26 Reputation points
1 answer

Bypass MFA for Apple DEP+Intune enrollment at on-prem ADFS 2016

Hello there, Looking for an advise on how to best overcome the following limitation. We're trying to enroll Mac devices with DEP enrollment and Intune. When binding the Mac to a user during install, it tries to log on and verify membership and…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-03-27T10:09:06.873+00:00
Denys Dmytrenko 1 Reputation point
commented 2020-04-15T09:38:37.09+00:00
Denys Dmytrenko 1 Reputation point
1 answer One of the answers was accepted by the question author.

If i set an EnrollmentAgentCertificateTemplate

Hi All, If i set an EnrollmentAgentCertificateTemplate does this effect all my Relying party trust? I like todo this: windows-virtual-desktop-sso

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
asked 2020-04-07T21:13:14.717+00:00
Clinton van Axel 21 Reputation points
accepted 2020-04-14T17:35:37.86+00:00
Clinton van Axel 21 Reputation points