Microsoft Q&A

Active Directory Federation Services

1,113 questions

An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.

Browse all Windows tags

1,113 questions with Active Directory Federation Services tags

Sort by: Updated
0 answers

AD FS behavior from domain-joined computer

AD FS is present in an environment for SSO into various supported sites/apps once a user authenticates to the AD FS site - if a user logs into active directory on a computer joined to the same domain that AD FS uses for its claim provider, then opens a…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2023-12-06T13:02:09.7533333+00:00
Jon Hall 0 Reputation points
2 answers

What ports are require to open between ADFS and WAP

I am going to implement new Azure AD tenant. My primary authentication method will be ADFS and PHS as backup method. For example, the servers name are as below ADFS name- ADFS01 WAP name- WAP01 Connect sync name- AADC01 Please can you help provide me…

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,163 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
17,582 questions
asked 2023-11-23T10:12:37.5733333+00:00
Mohd Arif 901 Reputation points
commented 2023-12-05T20:23:37.6833333+00:00
JamesTran-MSFT 34,216 Reputation points Microsoft Employee
1 answer One of the answers was accepted by the question author.

Failed: federation between Google Workspace and Microsoft Entra ID

Hi! I'm trying to implement "federation between Google Workspace and Microsoft Entra ID" following this link: https://learn.microsoft.com/en-us/education/windows/configure-aad-google-trust but I keep getting the error…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2023-11-24T08:54:09.58+00:00
Ammar Aganovic 40 Reputation points
commented 2023-12-03T07:53:36.4033333+00:00
Akhilesh 1,525 Reputation points Microsoft Vendor
1 answer

Federated domain

Hi, We have a few custom domain names in Azure, but only one is Federated. How can we make another domain Federated?

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2023-11-09T21:32:19.7533333+00:00
Alik Kislitsa 0 Reputation points
commented 2023-12-02T20:59:05.76+00:00
Konstantinos Passadis 13,766 Reputation points
1 answer One of the answers was accepted by the question author.

Multiple AD FS servers linked to same domain

Hi We have an existing AD FS 2012 R2 server that is federated with a custom domain in Azure AD, lets say "MyDomain.com" used to perform Office 365 licensing via Citrix. I have built a new AD FS 2019 server and a Web Application Proxy (WAP)…

Microsoft Office Online Server
Microsoft Office Online Server
Microsoft on-premises server product that runs Office Online. Previously known as Office Web Apps Server.
521 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Office Management
Office Management
Office: A suite of Microsoft productivity software that supports common business tasks, including word processing, email, presentations, and data management and analysis.Management: The act or process of organizing, handling, directing or controlling something.
1,855 questions
Microsoft Entra
asked 2023-11-15T16:03:36.2066667+00:00
Mark Bavington 60 Reputation points
edited the question 2023-12-01T06:35:05.2233333+00:00
Emi Zhang-MSFT 19,046 Reputation points Microsoft Vendor
0 answers

How do I configure IWA with ADFS 4.0 for G Suite?

Greetings, We have G Suite Sign-in configured to be federated with ADFS. Form-based authentication is working. We are unable to configure Integrated Windows Authentication (IWA). Kindly provide us with the steps to configure IWA. Steps followed …

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2020-09-02T06:59:39.427+00:00
Sudhakar Ramasamy 1 Reputation point
commented 2023-11-30T07:07:52.2966667+00:00
Vahid Ghafarpour 8,545 Reputation points
1 answer

Adding ADFS to existing AD Application

We have an existing .NET application that uses Active Directory to authenticate users and search for user/OU data using DirectorySearcher object. Our customer has several AD servers and would like our existing application to authenticate/search from a…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2020-09-01T18:40:19.307+00:00
SteveB 1 Reputation point
answered 2023-11-30T07:05:17.1133333+00:00
Vahid Ghafarpour 8,545 Reputation points
1 answer

ADFS oAuth 2.0 Client Credential Grant, AD as authorizations(scope) store

Our scenario could be described this way. A back-end webapp service (in linux) uses the OAuth 2.0 Client Credential Flow (CCF) to request a token from ADFS. It passes its client_id and client_secret. Even if the BE service is considered…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2020-08-27T21:46:12.167+00:00
Jeff Raymond (Nter) 1 Reputation point
edited an answer 2023-11-30T07:04:17.7533333+00:00
Vahid Ghafarpour 8,545 Reputation points
2 answers

Configure federation between Google Workspace and Microsoft Entra ID error AADSTS51004

Hello, After follow the steps of this guide https://learn.microsoft.com/en-us/education/windows/configure-aad-google-trust I'm testing the login. I am getting the redirect to google when try to sign in but after that I get this error: Request Id:…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
17,582 questions
asked 2023-11-17T13:12:22.49+00:00
Davide Orbitello 0 Reputation points
commented 2023-11-28T21:33:08.2033333+00:00
JamesTran-MSFT 34,216 Reputation points Microsoft Employee
0 answers

Windows 10 Hybrid Join Automatic registration failed

Hello, I am having troubles to let Windows 10 Hybrid Join on startup. It is only working right now when the computer object is synchronised. Because the Windows 10 is a non-persistent VDI it needs to join on startup. I am getting the below error. The…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2021-02-08T06:52:00.347+00:00
MJ 21 Reputation points
edited the question 2023-11-28T19:03:58.7033333+00:00
JamesTran-MSFT 34,216 Reputation points Microsoft Employee
1 answer

How to migrate users from on-prem environment to another on-prem environment?

Hello, I want to know how to migrate users from one on-prem environment to another on-prem environment? As in our scenarios we want to migrate lots of users from one on-prem environment to another on-prem environment. So can you please suggest and help…

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,163 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2023-11-20T12:27:20.7466667+00:00
Khushi 0 Reputation points
commented 2023-11-28T11:58:24.6766667+00:00
Dave Patrick 417.4K Reputation points MVP
1 answer One of the answers was accepted by the question author.

How to perform Decommission of federation with password hash sync after migrated to cloud authentication

In office365 environment, we are going to migrate "federation with password hash sync" to "Cloud Authentication". After migrate to "Cloud Authentication", on premise AD will be removed, so we will perform Decommission of…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
17,582 questions
asked 2023-11-24T03:35:46.1666667+00:00
louis cheung 20 Reputation points
edited the question 2023-11-27T11:20:48.0533333+00:00
Sandeep G-MSFT 11,331 Reputation points Microsoft Employee
0 answers

Establish federated identity credential / required RBAC role

Which Azure RBAC role is required to establish federated identity credential? https://learn.microsoft.com/en-us/azure/aks/learn/tutorial-kubernetes-workload-identity#establish-federated-identity-credential Following the error message this action is…

Azure Role-based access control
Azure Role-based access control
An Azure service that provides fine-grained access management for Azure resources, enabling you to grant users only the rights they need to perform their jobs.
557 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2023-06-26T14:01:06.07+00:00
JC 15 Reputation points
commented 2023-11-27T06:57:11.82+00:00
Rinesh Varghese Kappil 0 Reputation points
1 answer

ADFS 4 - set REMOTE_USER from value of claim or claim store lookup

I have a web application that does auto-logon using REMOTE_USER http value that maps to a LDAP user of the same name. my issue is that the partner IDP is ADFS and i would like to use ADFS on my side of the trust in front of the web application (SP) I…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2020-08-22T22:00:53.167+00:00
Daniel Fung 1 Reputation point
answered 2023-11-25T04:04:23.05+00:00
Vahid Ghafarpour 8,545 Reputation points
1 answer

ADFS 3.0 Logout - allow two SAML Logout Endpoints

Hello, I have searched low and high for a solution but could not find a definitive answer if my problem can be solved. Even just knowing that it cannot be solved would be extremely helpful. We have a single identity service that has two DNS names…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
asked 2020-08-23T22:03:21.107+00:00
FS 21 Reputation points
answered 2023-11-25T04:03:32.6433333+00:00
Vahid Ghafarpour 8,545 Reputation points
0 answers

How to configure Enhanced Security Admin Environment (ESAE) architecture (red forest)??

Hi, I want to know how to configure Enhanced Security Admin Environment (ESAE) architecture (red forest)? Actually I want to configure and test it first and then move to the current Microsoft’s recommendation method. But unfortunately I have not found…

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,163 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,611 questions
asked 2023-11-23T03:12:54.39+00:00
Khushi 0 Reputation points
2 answers

Mailbox type is unable to change from user to office365 in the on-premises exchange portal.

Mailbox type is unable to change from user to office365 in the on-premises exchange portal. The mailbox type in Online Exchange Admin Center is user mailbox. though would like the mailbox type in the on-premises exchange portal to switch from user to…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Microsoft Exchange Online Management
Microsoft Exchange Online Management
Microsoft Exchange Online: A Microsoft email and calendaring hosted service.Management: The act or process of organizing, handling, directing or controlling something.
3,889 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,025 questions
Microsoft Exchange
Microsoft Exchange
Microsoft messaging and collaboration software.
287 questions
asked 2023-11-14T09:41:39.1633333+00:00
Diana Piloya 20 Reputation points
commented 2023-11-22T08:10:20.1833333+00:00
Yuki Sun-MSFT 37,366 Reputation points
3 answers

Azure MFA to On-premises applications without ADFS and AzADAppProxy

Hi. I need to know what options do I have to force my internal apps to request Azure MFA when my clients access internally (or externally, published in the firewall). I don't want that my on-premises apps needs to go via application proxy via azure,…

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
520 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
17,582 questions
asked 2023-06-17T15:00:56.0166667+00:00
Miguel Gonçalves 76 Reputation points
edited an answer 2023-11-21T22:22:11.5433333+00:00
Canming Jiang 1 Reputation point
0 answers

Bi-directional trust in multi-forest and separation of a domain as two separate company

Hi, I have an environment where there is a domain which needs to be separated into 2 tenants. Currently the domains have been the same and there is a single azure tenant. Now, this needs to be separated into two, and there is bi-directional trust in…

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,163 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,605 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,611 questions
asked 2023-11-20T08:09:53.9+00:00
Khushi 0 Reputation points
edited the question 2023-11-21T03:25:09.8933333+00:00
Khushi 0 Reputation points
1 answer One of the answers was accepted by the question author.

What are the ways to migrate on-premise ADFS to Azure Cloud?

Please let me know what are the ways to migrate ADFS server to Azure cloud?

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,163 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,113 questions
Microsoft Entra
asked 2023-11-20T07:08:33.8966667+00:00
Durai, Ganesh 20 Reputation points
commented 2023-11-21T02:41:44.26+00:00
Durai, Ganesh 20 Reputation points