Enabling /adfs/services/trust/13/windowstransport endpoint on ADFS

Chabango 61 Reputation points
2021-03-25T17:00:24.107+00:00

I will be rolling out Hybrid Azure AD Join for Federated domains and one of the requirements is to enable the internal endpoint, /adfs/services/trust/13/windowstransport. Currently that is disabled in my production environment. I have been trying to research what the affects are if I enable this internally and disable on the Proxy. I understand this is a requirement for Hybrid Azure AD JOin, but want to make sure I don't break anything when I enable it. Thoughts?

Microsoft Security | Active Directory Federation Services
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Pierre Audonnet - MSFT 10,201 Reputation points Microsoft Employee Moderator
    2021-04-03T17:43:54.167+00:00

    You can't break things by enabling it.

    You can break things by disabling it later on... Once you actually started using it.

    It should be disabled and remain disabled on the proxies.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.