ADFS Administrator Account

Derek Harbun 6 Reputation points

Good morning,

I'm trying to update our Azure AD Connect to allow hybrid join of devices through ADFS. However, no matter what account I use, whether it is a local admin on the adfs server, or a domain admin, enterprise admin, schema admin, etc I cannot get past the Federation Services login. I have even tried the service account that ADFS runs as. We had a third party set this up for us, and they have been unresponsive.

Any hints as to where I can find what account needs to be used, and the context for that account?



Azure Active Directory
Azure Active Directory
An Azure enterprise identity service that provides single sign-on and multi-factor authentication.
14,767 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,035 questions
{count} vote

1 answer

Sort by: Most helpful
  1. AmanpreetSingh-MSFT 55,541 Reputation points

    @Derek Harbun In such scenarios, I have seen Error: Failed to connect primary ADFS Server from the Azure AD Connect server. This generally happens when Enterprise admin account fails to connect to ADFS Console via WS-Management Listener. To resolve this error, you need to add the enterprise admin account to Local Administrators group on ADFS Server and try again.

    Since you have not provided any error details in you question, I have answered it on assumption basis. If this doesn't help, please share what error/message you get on screen, when you say "I cannot get past the Federation Services login". Also, check and share if you are getting any relevant event logged in event viewer at that time.


    Please "Accept as answer" wherever the information provided helps you to help others in the community.

    1 person found this answer helpful.
    0 comments No comments