using Azure MFA on on-premise ADFS application

HK G 511 Reputation points
2021-09-10T15:23:08.407+00:00

We use ADFS 4 (server 2016) for O365 and on-premise applications for SSO. We recently enable MFA for Office 365 applications using Azure AD conditional access.

We would like to use the same conditional access rule for the on-premise apps (SAML replying party). Is this possible? If so, how we can do that.

Thanks.

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,186 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,379 questions
0 comments No comments
{count} votes

Accepted answer
  1. HK G 511 Reputation points
    2021-09-14T16:36:29.79+00:00

    To correct that, the application that is in ADFS is SAAS based.

    I need to trigger the MFA using Azure Conditional Access on that particular application. As far as I know, login to those apps are not recognized by Azure CA.


1 additional answer

Sort by: Most helpful
  1. Pierre Audonnet - MSFT 10,166 Reputation points Microsoft Employee
    2021-09-10T16:08:37.09+00:00

    You can do some access control on premises using Access Policies. But it would be much easier to move your ADFS Relying Party Trusts to Azure AD Enterprise Application.

    Have a look here: