SAML with integrated windows authentication

JoeS-0122 41 Reputation points
2020-11-09T18:27:20.317+00:00

Hello, I successfully got SAML setup with ADFS with a third party site. I am attempting to have someone login to windows and access the thirdparty site and auto logins to ADFS. To do this, I read that i needed to enable WIA and make sure the browsers are configured to allow it.

These were the articles I followed:
Below are the articles I followed:
https://help.hcltechsw.com/domino/11.0.1/admin/secu_creating_the_spn.html
https://help.hcltechsw.com/domino/11.0.1/admin/secu_enabling_iwa_adfs30.html
https://help.hcltechsw.com/domino/11.0.1/admin/secu_preparing_ie_for_adfs.html
https://help.hcltechsw.com/domino/11.0.1/admin/secu_creating_the_spn.html
https://support.classlink.com/hc/en-us/articles/360010601593-ADFS-Windows-Integrated-Authentication-WIA-

When i go to the thirdparty site after making the configurations, I get redirected to our ADFS client page and prompted for signin.

Below are some screenshots of changes I made:

38472-1.png

38473-2.png38474-3.png

38399-4.png

Can someone provide some assistance? Is there a step I am missing? I set this up in windows 2019, I am using a windows 10 client with IE11 and edge. Both do the same.

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,264 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Pierre Audonnet - MSFT 10,191 Reputation points Microsoft Employee
    2020-11-10T18:49:13.013+00:00

    Make sure the FQDN of your ADFS farm is a A record and not a CNAME.


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.