Enquiry on ADFS event ID MSIS8022 and Using DUO Authenticator for primary authentication

Patrick Fung 0 Reputation points
2024-03-25T08:21:32.47+00:00

Hi all,

We are trying to use DUO Authenticator for primary authentication as we would try using it to replace traditional form based authentication (Passwordless). We have tried testing it with our Shibboleth service provider through SAML2 protocol.

However, during the testing, we found the below error happen when we are using an invalid user (i.e. not exist in AD). Is it a bug or any way to avoid this error?

The ADFS event ID is MSIS8022.

Thanks a lot.

Regards,
Patrick

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Patrick Fung 0 Reputation points
    2024-03-28T07:14:19.3333333+00:00

    The problem seems happen on Service Provider (SP) initialized URL only.

    No problem if it's Identity Provider (IDP) initialized.

    e.g. https://sts.contoso.com/adfs/ls/idpinitiatedsignon.aspx

    0 comments No comments