1,316 questions with Microsoft Security | Active Directory Federation Services tags
ADFS - ADFS doesn't seem to adhere to the SAML2.0 specification with regards to AssertionConsumerServiceURL (MSIS3200)
Hi, I have successfully installed and configured the ADFS service on Windows 2012 R2. I've also setup a relying party trust and logging in with SSO works perfectly. However according to the SAML2.0 specification the AuthRequest may optionally contain a…
Microsoft Security | Active Directory Federation Services
Azure AD connect Single Sign On ADFS
If ADFS is installed but not being used for Office 365/Azure AD authentication and there is no existing Azure AD Connect installation - can I perform a fresh install of Azure Active Directory Connect and enable single sign on without using the existing…
Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
Single forest Mutiple Domain - ADFS 2016
we have a multidomain forest Root.local - root doman mydomain.com - Child domain. ADFS installed and configured in "mydomain.com", however, the users from root domain are not able to get authenticated with ADFS relying party. (Exchange…
Microsoft Security | Active Directory Federation Services


MSIS9459: Unable to use the enrollment certificate ADFS
Our ADFS 2016 server is getting the below event id 1021 Log Name: Source: AD FS Date: 10/1/2020 4:58:01 PM Event ID: 1021 Task Category: None Level: Error Keywords: AD FS User: Computer: Description: Encountered error during OAuth…
Microsoft Security | Active Directory Federation Services
Chrome Sharepoint ADFS the same client browser session has made 6 requests
Weird issue. Any insight is highly appreciated. A handful of users complaining about errors when trying to login from chrome to the sharepoint portal via adfs 3.0 sso. Reports started coming after migration to 2016 sharepoint portal. One user had this …
Microsoft 365 and Office | SharePoint Server | For business

Microsoft Security | Active Directory Federation Services
Rollback ADFS Farm Behavior Level to 1 from 4
Hi We are planning to raise ADFS Farm Behavior Level (FBL) to ADFS 4.0. Both the ADFS servers are 2016 VMs. In case of any issue with new FBL version, shall we revert to the snapshot taken before raising the FBL or is there a better way to revert? …
Microsoft Security | Active Directory Federation Services
ADFS Migration
My existing ADFS farm was setup by others who left. The OS is 2012R2. So I assume I am on ADFS 3.0. My DC is still on 2008R2. Both Forest Functional Level & Domain Functional Level are still on 2008R2. I want to migrate to a new ADFS farm to…
Microsoft Security | Active Directory Federation Services
HSTS on ADFS
We're running ADFS on Windows Server 2019, with the appropriate headers enabled. Much like this prior question, we need to have ADFS return a header, showing HSTS enabled, rather than a 404, if the root is called -- i.e., https://adfs.url.com. HSTS shows…
Microsoft Security | Active Directory Federation Services
Migrate ADFS to Azure using Azure Site Recovery
I am searching for documentation detailing the steps required to migrate ADFS on prem to Azure VMs within an existing AAD tenant. I am not finding a lot of information in my google searches on this topic. Can someone here assist?
Azure Site Recovery
Microsoft Security | Active Directory Federation Services

Migrate Office 365 domain federation
We're about to migrate one Office 365 domain from our old SAML federation to a new ADFS setup, however, when trying to update the domain, we get the following error: PS C:\Windows\system32> Update-MsolFederatedDomain -DomainName example.com…
Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
ADFS 2016 - requirements - does it work with 2003 domain and forest functional levels?
Hello, We're looking to upgrade our ADFS from 2012 to 2016. Currently we have 2012 DCs running at 2003 domain and forest functionality level. Can ADFS 2016 work with 2012 DCs running at 2003 domain and forest functionality levels? Looking…
Microsoft Security | Active Directory Federation Services
need to clean up Federated domain
Hi Members, Good day, We have a federated domain in Azure. -> eg. fed.dom.lo.com the AD Connect was set up and it had synchronized all the users in our on-prem domain controller to the Azure. Assume we had 20k users in the specific OU, which…
Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID


Azure Data Factory mysql & CRM 365 Integration Issue
I want to integrate mysql with CRM 365. I am unable to change the data type of source so it would be same as destination data type. Conversion from int 64 to int 32. Please answer this query. Thanks
Microsoft Security | Active Directory Federation Services
Azure AD B2C token endpoint retruns 404
We use Azure AD B2C as identity provider in one of our applications. We want users to login using their organizational account (Any Azure AD – Multitenant) and personal Microsoft accounts. Also, we use Custom Policies and relevant ClaimsProvider is…
Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra External ID
ADFS SAML Artifact Resolution Response Missing Signature
I'm trying to integrate ADFS with our Service Provider (SP). I've enabled the Artifact Resolution (SOAP) mechanism in ADFS and ADFS does response to an ArtifactRequest message with an ArtifactResponse message, but the ArtifactResponse is missing a…
Microsoft Security | Active Directory Federation Services
publish active sync with adfs
dears, i configured since a while active sync and published it using adfs and wap. it was working great. relying party trust created type : non claims aware publishing on wap using adfs: rich clients starting the last night, it stopped…
Microsoft Security | Active Directory Federation Services
Federated Azure AD - Student Authentication Query
I am contacting on behalf of a Multi-Academy trust who are wishing to setup their federated Azure AD to allow sign in to their Capita Reading Cloud library systems using O365 credentials. This MAT contains several schools all with their own separate RC…
Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
ADFS SAML Assertions
I've setup an AD FS server on Windows Server 2012 R2. I've gotten claims rules to work so that a user can logon to AD FS and then assume a role in AWS based on AD group membership and a mapping between the group and a role. This method is documented…
Microsoft Security | Active Directory Federation Services

Windows Authentication Silent Login with ADFS on Edge Chromium / Chrome
Hi I have read up on https://learn.microsoft.com/en-us/answers/questions/64583/how-to-bypass-sso-screen-when-using-saml-20-via-ad.html And have done all the changes needed, e.g Set-AdfsPRoperties to add "Mozilla/5.0" into…
Microsoft Security | Active Directory Federation Services
ADFS authentication (intranet) for Cloud Users
Hi Guys, I have a sitution, we have a situation in which we want to use ADFS authentication for users accessing Office online. We only want users who are a part of Intranet ( either connected to LAN or VPN ) to access office apps outside of it is not…
Microsoft Security | Active Directory Federation Services
