ADFS via Internet

Christoph Thurnheer 81 Reputation points
2020-04-16T11:15:26.807+00:00

Dear Technet, hope you can help me moving forward.

I have a WebApp Proxy with ADFS (V4) in place. Is it possible to use SSO via Internet: take my laptop (AD member) outside of the network, connect it via mobile phone to the Internet and access then a resources of the company. ADFS is then asking for credentials (login with username & password is working (manually entered)). Can I delegate my creds I used to sing in on the laptop to ADFS?

Thanks for your input,

Chris

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,189 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Pierre Audonnet - MSFT 10,166 Reputation points Microsoft Employee
    2020-04-16T13:12:54.667+00:00

    First of all, if the goal is to have SSO with Azure AD (and Office 365), you don't even need ADFS to make it work seamlessly from outside the organization. So if that's the case, let us know we'll explain!

    Then, you can use different authentication methods to log on to ADFS. For example, you could use certificate based authentication as a primary authentication method.
    Or, in the same spirit, you could use Azure MFA as a first factor for authentication too. And when you connect to ADFS, you will just have to accept the notification on your phone (no password involved).

    0 comments No comments