Issue with Azure AD single sign on

Shravan 101 Reputation points
2023-05-24T08:06:42.99+00:00

Hi team. While users try to login to the sso app. Browser promoting to enter user name and password. It's SSO app. It's only happening for few users not for all. Why it's asking user name and password. Do you guys have any idea, help me to resolve this problem

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,582 questions
{count} votes

Accepted answer
  1. Sandeep G-MSFT 14,646 Reputation points Microsoft Employee
    2023-05-29T08:47:23.5666667+00:00

    @Shravan

    This issue can happen in the scenario where users devices are Hybrid Azure AD joined in Azure AD and when the device doesn't have a PRT. PRT is a primary refresh token that is given to a device when hybrid registration happens for a device in Azure AD.

    Next time whenever user tries to login to any azure services, PRT is given to Azure AD. Azure AD validates the PRT and let's the user in without any credentials.

    In your situation it looks like issue is with PRT. Or PRT itself is not issued while device joined to Azure AD.

    You can follow below troubleshooting article to look into this issue from PRT side,

    https://learn.microsoft.com/en-us/azure/active-directory/devices/troubleshoot-device-dsregcmd

    If you are still facing issues we can work on this offline.

    Please send us an email on azcommunity [at] microsoft [dot] com with Sub - Attn: Sandeg and following details in the email body:

    Link to this thread/post

    We can connect offline and discuss further on this.

    Let me know if you have any further questions on this.

    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    0 comments No comments

0 additional answers

Sort by: Most helpful