1,184 questions with Active Directory Federation Services tags

Sort by: Updated
1 answer

Remove last Exchange server from hybrid environment

Hi, We are Company of 10K mailboxes, and now we haves moved our mailboxes to Office 365, there are no mailboxes in on-prem Exchange. Just being used for Hybrid configuration and SMTP relay. Now we are planning to remove the last server from our…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Microsoft Exchange Hybrid Management
Microsoft Exchange Hybrid Management
Microsoft Exchange: Microsoft messaging and collaboration software.Hybrid Management: Organizing, handling, directing or controlling hybrid deployments.
1,859 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,290 questions
asked 2024-04-04T21:14:40.37+00:00
Rohit Ghosalkar 0 Reputation points
commented 2024-04-11T06:50:39.94+00:00
Akhilesh 4,455 Reputation points Microsoft Vendor
1 answer

How to check if any application uses the IDP-initiated login endpoint in ADFS

Hello everyone, for security reasons, I want to disable the https://domain.com/adfs/ls/idpinitiatedsignon.aspx endpoint in the ADFS proxy servers. However, I need to make sure that no application is using IDP-initiated logins from the external network…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2024-04-08T10:10:26.6966667+00:00
João Vitor Rosa 0 Reputation points
answered 2024-04-09T08:58:39.2733333+00:00
Claudia Dos Santos Haz (CONCENTRIX CORPORATION) 620 Reputation points Microsoft Vendor
0 answers

Failed to create AzureadKerberos (Cloud Kerberos Trust)‎

We are trying to establish cloud Kerberos trust to enable WHFB in our environment. However, it is giving below error. It gives error at command Set-AzureADKerberosServer. Any advise and suggestion will be highly appreciated. We have followed below…

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
601 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,798 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2024-04-08T11:22:38.92+00:00
Ritesh Sharma 256 Reputation points
1 answer

Azure Active Directory (AAD) authentication or aad B2C authentication within a PHP application

My PHP application, which is built on WordPress, currently utilizes WordPress AAD authentication with client ID and client secrets. However, I am looking to discontinue the use of client secrets. Presently, I am using the functionality available on…

Microsoft Graph
Microsoft Graph
A Microsoft programmability model that exposes REST APIs and client libraries to access data on Microsoft 365 services.
10,441 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,798 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Microsoft Entra
asked 2024-03-29T11:58:05.8533333+00:00
Arun Pradhan (MINDTREE LIMITED) 0 Reputation points Microsoft Vendor
commented 2024-04-08T04:50:48.49+00:00
Arun Pradhan (MINDTREE LIMITED) 0 Reputation points Microsoft Vendor
0 answers

Work Folders with AD FS and Web Application Proxy (WAP) - ERROR-ID 0x80072efe

DC, WF, ADFS, WAP - Win Std. 2022 The configuration does not work with an MS WAP. --> https://learn.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders-adfs-overview I get the following error after successfully logging in. It…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Windows Server Storage
Windows Server Storage
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Storage: The hardware and software system used to retain data for subsequent retrieval.
629 questions
asked 2024-04-04T09:29:17.5266667+00:00
Thomas Schäfer 6 Reputation points
edited the question 2024-04-06T14:11:17.7166667+00:00
Thomas Schäfer 6 Reputation points
1 answer

Work Folders with AD FS and Web Application Proxy (WAP) - ERROR-ID 0x80072efe

DC, WF, ADFS, WAP - Win Std. 2022 The configuration does not work with an MS WAP. --> https://learn.microsoft.com/en-us/windows-server/storage/work-folders/deploy-work-folders-adfs-overview I get the following error after successfully logging in. It…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Windows Server Storage
Windows Server Storage
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Storage: The hardware and software system used to retain data for subsequent retrieval.
629 questions
asked 2024-03-31T17:06:38.6366667+00:00
Thomas Schäfer 6 Reputation points
edited the question 2024-04-06T14:10:31.65+00:00
Thomas Schäfer 6 Reputation points
0 answers

ADFS integration with AWS loadbalancers

Hi, i am trying to integrate ADFS server behind AWS load balancers. Proxy server behind application load balancer and ADFs farm server behind network load balancer however i am getting a 502 bad gateway error. Any suggestions?

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2024-04-02T07:47:11.7466667+00:00
Rohan choudhary 26 Reputation points
edited the question 2024-04-02T07:50:47.9833333+00:00
GitaraniSharma-MSFT 46,751 Reputation points Microsoft Employee
0 answers

Issue with locating templates on CAserver

I am running Windows Server 2012 R2 and trying to access the webpage http://localhost/certsrv/certrqxt.asp to request a certificate. However, when I try to select a certificate template, I get an error message saying that the CAserver cannot find any…

Windows Server 2012
Windows Server 2012
A Microsoft server operating system that supports enterprise-level management, data storage, applications, and communications.
1,524 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2024-04-01T08:50:19.2233333+00:00
侯 科技公司 0 Reputation points
1 answer

Enquiry on ADFS event ID MSIS8022 and Using DUO Authenticator for primary authentication

Hi all, We are trying to use DUO Authenticator for primary authentication as we would try using it to replace traditional form based authentication (Passwordless). We have tried testing it with our Shibboleth service provider through SAML2…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2024-03-25T08:21:32.47+00:00
Patrick Fung 0 Reputation points
answered 2024-03-28T07:14:19.3333333+00:00
Patrick Fung 0 Reputation points
1 answer

SMTP AUTHentication is not working after federation of domain configured

after the federation of my domain, the users, who were able to send mail before the federation via SMTP AUTHENTICATION like printers, and firewalls etc, CAN't send emails anymore. the error is: 535 5.7.139 Authentication unsuccessful, the user…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2024-01-06T07:14:49.32+00:00
Yusuf Uzunay 0 Reputation points
commented 2024-03-22T20:05:57.5866667+00:00
Ron Eckert 0 Reputation points
1 answer One of the answers was accepted by the question author.

can we migrate unregistered active directory domains(.local) to azure entra id

I want to migrate .local domain which is not registered to azure entra id

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,798 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Microsoft Exchange Hybrid Management
Microsoft Exchange Hybrid Management
Microsoft Exchange: Microsoft messaging and collaboration software.Hybrid Management: Organizing, handling, directing or controlling hybrid deployments.
1,859 questions
Microsoft Entra External ID
Microsoft Entra External ID
A modern identity solution for securing access to customer, citizen and partner-facing apps and services. It is the converged platform of Azure AD External Identities B2B and B2C. Replaces Azure Active Directory External Identities.
2,628 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,290 questions
asked 2024-03-18T09:02:16.1433333+00:00
Harsha Parasa 20 Reputation points
accepted 2024-03-21T10:00:20.0466667+00:00
Harsha Parasa 20 Reputation points
0 answers

ADFS Custom Primary Authenticator triggers MSIS8022 when user input invalid username

We are developing a custom authenticator for ADFS 2019 and intend to make it work as primary authentication method in Paginated theme. We found that when user input an invalid upn as username and choose our custom authenticator, an error message…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2024-03-20T11:51:40.9233333+00:00
Bill Lam 0 Reputation points
2 answers One of the answers was accepted by the question author.

What ports are require to open between ADFS and WAP

I am going to implement new Azure AD tenant. My primary authentication method will be ADFS and PHS as backup method. For example, the servers name are as below ADFS name- ADFS01 WAP name- WAP01 Connect sync name- AADC01 Please can you help provide me…

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,798 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,290 questions
asked 2023-11-23T10:12:37.5733333+00:00
Mohd Arif 921 Reputation points
accepted 2024-03-20T07:32:58.7433333+00:00
Mohd Arif 921 Reputation points
0 answers

ADFS WAP Redirects to Backend URL on Successful Logon

I have a domain mydomain.local and an ADFS Server adfs.mydomain.local. I've published by ADFS directly and also using WAP with external URL adfs.mydomain.com and backend URL adfs.mydomain.local. When I access the application, I get ADFS Web Form…

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,027 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2024-03-19T19:43:21.7+00:00
MohammedIsmailShareef-6405 0 Reputation points
0 answers

How to migrate a Relying Party Trust in ADFS for Office 365 (EntryID) to a new Forest

We need to migrate ADFS (>5 years old) from an old AD forest to the new Forest. We use ADFS, among other things, for SSO with custom domains for EntraID. For federation and creating the relying party with EntraID (Office 365 / Microsoft 365) I used to…

Microsoft 365
Microsoft 365
Formerly Office 365, is a line of subscription services offered by Microsoft which adds to and includes the Microsoft Office product line.
3,690 questions
Windows Server 2019
Windows Server 2019
A Microsoft server operating system that supports enterprise-level management updated to data storage.
3,430 questions
Microsoft Graph
Microsoft Graph
A Microsoft programmability model that exposes REST APIs and client libraries to access data on Microsoft 365 services.
10,441 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,290 questions
asked 2024-03-14T15:29:21.0033333+00:00
Michael Zahneißen 0 Reputation points
commented 2024-03-18T15:37:52.6066667+00:00
Givary-MSFT 27,336 Reputation points Microsoft Employee
0 answers

Why Entra joined machine need certificatemixed endpoint in ADFS ?

According to this https://learn.microsoft.com/en-us/entra/identity/devices/device-join-plan#federated-environment in ADFS certificatemixed endpoint need to be enabled . Entra Joined machine does not have MFA during machine login and it uses only user…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,290 questions
asked 2024-02-19T13:05:57.9433333+00:00
AJ 20 Reputation points
edited the question 2024-03-18T10:15:54.18+00:00
AJ 20 Reputation points
3 answers

Federation Service Error with Secuirty Event 4625

I got new ADFS service in Domain A and served forest trusted Domain B . The federation service get hung frequently for Domain B only , user logon process wiill roll back to the login page without any error message. Meanwhile, the federation service to…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2022-11-18T05:29:27.193+00:00
斌 陈 1 Reputation point
answered 2024-03-14T08:58:29.46+00:00
Thomas Gabel 0 Reputation points
1 answer

AD FS Tracing/Debug Event 153 - None of the UPNs were successful for S4U Logon call

While trying to login on ADFS page login page, page get refresh and ask for login again (ADFS login loop). When I checked event log in AD FS Tracing/Debug I am getting event 153 with message "None of the UPNs were successful for S4U Logon…

Windows Server 2012
Windows Server 2012
A Microsoft server operating system that supports enterprise-level management, data storage, applications, and communications.
1,524 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2023-01-11T14:34:32.6466667+00:00
Vaman D 5 Reputation points
answered 2024-03-12T09:35:45.7633333+00:00
James, Jonathan 0 Reputation points
2 answers

Unable to verify token signature. The signing key identifier does not match any valid registered keys.

getting this below error for all new starter, and if we change the password on old user they are not able to login on O365. Sign-in error code 5000811 Failure reason Unable to verify token signature. The signing key identifier does not…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
asked 2022-08-29T13:45:22.03+00:00
Naeem Chougle 1 Reputation point
answered 2024-03-11T10:39:40.2366667+00:00
Jordan Pressman 0 Reputation points
1 answer

Do I need a verified domain to federate applications in Entra ID?

I'm trying to integrate an application with my tenant via SAML. It's one of the applications listed in Entra ID's application gallery. One of the steps required in the tutorial is to verify a domain in the application. As I'm not the owner of the…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,184 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,290 questions
asked 2024-03-02T02:47:20.6533333+00:00
Pedro Ignácio 1 Reputation point
commented 2024-03-08T03:15:24.5266667+00:00
Givary-MSFT 27,336 Reputation points Microsoft Employee