Hello @Jacob Cunningham ,
From the description you just shared this is similar to issues documented https://learn.microsoft.com/en-us/microsoft-365/troubleshoot/sign-in/federated-users-sign-in-error-ad-fs.
This issue may occur for one of the following reasons:
- The setup of single sign-on (SSO) through AD FS wasn't completed.
- The AD FS token-signing certificate expired.
- The AD FS client access policy claims are set up incorrectly.
- The relying party trust with Azure Active Directory (Azure AD) is missing or is set up incorrectly.
- The AD FS federation proxy server is set up incorrectly or exposed incorrectly.
- The AD FS IUSR account doesn't have the "Impersonate a client after authentication" user permission.
- Hash Algorithm to be updated to SHA-256
Kindly validate the solution given and if the issue persist please do let me know in the comments section.
Thanks,
Akshay Kaushik
Please "Accept the answer", "Upvote" and rate your experience if the suggestion works as per your business need. This will help us and others in the community as well.