Azure virtual Desktop SSO with ADFS error token is invalid

Mintenbeck, Sascha 6 Reputation points
2022-05-12T09:24:47.96+00:00

Hi,

i tried to configure ADFS single sign on for our Azure Virtual Desktop Host pool an used the following documentation:
https://learn.microsoft.com/en-us/azure/virtual-desktop/configure-adfs-sso

The certificates are issued correctly and are also stored on the session host but i get the error "The authentication token is invalid" on different Windows 10 clients.
On the session host i get evenid 16 in security-kerberos:
The kerberos SSPI package failed to find the smartcard certificate in the certificate store. To remedy, logon as user domain\sessionhost$ and insert the smartcard into your smartcard reader, then use the Certificates snap-in to verify that the smartcard certificate is in the user's personal certificate store.

Azure Virtual Desktop
Azure Virtual Desktop
A Microsoft desktop and app virtualization service that runs on Azure. Previously known as Windows Virtual Desktop.
1,377 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,203 questions
{count} vote