1,316 questions with Microsoft Security | Active Directory Federation Services tags

Sort by: Updated
2 answers

ADFS - ADFS doesn't seem to adhere to the SAML2.0 specification with regards to AssertionConsumerServiceURL (MSIS3200)

Hi, I have successfully installed and configured the ADFS service on Windows 2012 R2. I've also setup a relying party trust and logging in with SSO works perfectly. However according to the SAML2.0 specification the AuthRequest may optionally contain a…

Microsoft Security | Active Directory Federation Services
asked 2020-09-24T16:42:00.267+00:00
EnginZ 1 Reputation point
answered 2020-10-06T07:12:30.3+00:00
EnginZ 1 Reputation point
1 answer One of the answers was accepted by the question author.

Azure AD connect Single Sign On ADFS

If ADFS is installed but not being used for Office 365/Azure AD authentication and there is no existing Azure AD Connect installation - can I perform a fresh install of Azure Active Directory Connect and enable single sign on without using the existing…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-10-04T22:46:40.823+00:00
jpcapone 1,776 Reputation points
accepted 2020-10-05T00:43:32.233+00:00
jpcapone 1,776 Reputation points
1 answer

Single forest Mutiple Domain - ADFS 2016

we have a multidomain forest Root.local - root doman mydomain.com - Child domain. ADFS installed and configured in "mydomain.com", however, the users from root domain are not able to get authenticated with ADFS relying party. (Exchange…

Microsoft Security | Active Directory Federation Services
asked 2020-09-27T23:55:19.917+00:00
Sandheep Unnikrishnan 1 Reputation point
answered 2020-10-01T22:57:51.193+00:00
Alfredo Revilla - Upwork Top Talent | IAM SWE SWA 27,526 Reputation points Moderator
0 answers

MSIS9459: Unable to use the enrollment certificate ADFS

Our ADFS 2016 server is getting the below event id 1021 Log Name: Source: AD FS Date: 10/1/2020 4:58:01 PM Event ID: 1021 Task Category: None Level: Error Keywords: AD FS User: Computer: Description: Encountered error during OAuth…

Microsoft Security | Active Directory Federation Services
asked 2020-10-01T21:01:48.213+00:00
vferna 1 Reputation point
2 answers

Chrome Sharepoint ADFS the same client browser session has made 6 requests

Weird issue. Any insight is highly appreciated. A handful of users complaining about errors when trying to login from chrome to the sharepoint portal via adfs 3.0 sso. Reports started coming after migration to 2016 sharepoint portal. One user had this …

Microsoft 365 and Office | SharePoint Server | For business
Microsoft Security | Active Directory Federation Services
asked 2020-07-28T16:04:25.32+00:00
Huck Finn 1 Reputation point
commented 2020-10-01T00:29:37.467+00:00
Huck Finn 1 Reputation point
2 answers One of the answers was accepted by the question author.

Rollback ADFS Farm Behavior Level to 1 from 4

Hi We are planning to raise ADFS Farm Behavior Level (FBL) to ADFS 4.0. Both the ADFS servers are 2016 VMs. In case of any issue with new FBL version, shall we revert to the snapshot taken before raising the FBL or is there a better way to revert? …

Microsoft Security | Active Directory Federation Services
asked 2020-09-14T14:25:02.327+00:00
LMS 156 Reputation points
accepted 2020-09-29T09:08:52.87+00:00
LMS 156 Reputation points
1 answer One of the answers was accepted by the question author.

ADFS Migration

My existing ADFS farm was setup by others who left. The OS is 2012R2. So I assume I am on ADFS 3.0. My DC is still on 2008R2. Both Forest Functional Level & Domain Functional Level are still on 2008R2. I want to migrate to a new ADFS farm to…

Microsoft Security | Active Directory Federation Services
asked 2020-09-24T03:25:23.35+00:00
Lim Chong Sun 531 Reputation points
accepted 2020-09-29T02:51:29.467+00:00
Lim Chong Sun 531 Reputation points
1 answer

HSTS on ADFS

We're running ADFS on Windows Server 2019, with the appropriate headers enabled. Much like this prior question, we need to have ADFS return a header, showing HSTS enabled, rather than a 404, if the root is called -- i.e., https://adfs.url.com. HSTS shows…

Microsoft Security | Active Directory Federation Services
asked 2020-09-22T19:52:00.9+00:00
BRYAN BURNETT 16 Reputation points
commented 2020-09-25T01:26:32.433+00:00
BRYAN BURNETT 16 Reputation points
1 answer

Migrate ADFS to Azure using Azure Site Recovery

I am searching for documentation detailing the steps required to migrate ADFS on prem to Azure VMs within an existing AAD tenant. I am not finding a lot of information in my google searches on this topic. Can someone here assist?

Azure Site Recovery
Azure Site Recovery
An Azure native disaster recovery service. Previously known as Microsoft Azure Hyper-V Recovery Manager.
825 questions
Microsoft Security | Active Directory Federation Services
asked 2020-09-14T15:31:39.677+00:00
jpcapone 1,776 Reputation points
commented 2020-09-25T00:36:25.797+00:00
olufemia-MSFT 2,861 Reputation points
1 answer One of the answers was accepted by the question author.

Migrate Office 365 domain federation

We're about to migrate one Office 365 domain from our old SAML federation to a new ADFS setup, however, when trying to update the domain, we get the following error: PS C:\Windows\system32> Update-MsolFederatedDomain -DomainName example.com…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-09-14T05:59:05.313+00:00
Robin Helgelin 21 Reputation points
commented 2020-09-24T13:51:26.983+00:00
Robin Helgelin 21 Reputation points
1 answer

ADFS 2016 - requirements - does it work with 2003 domain and forest functional levels?

Hello, We're looking to upgrade our ADFS from 2012 to 2016. Currently we have 2012 DCs running at 2003 domain and forest functionality level. Can ADFS 2016 work with 2012 DCs running at 2003 domain and forest functionality levels? Looking…

Microsoft Security | Active Directory Federation Services
asked 2020-09-24T11:34:48.447+00:00
peter siffredi 41 Reputation points
commented 2020-09-24T13:46:11.503+00:00
Anonymous
3 answers One of the answers was accepted by the question author.

need to clean up Federated domain

Hi Members, Good day, We have a federated domain in Azure. -> eg. fed.dom.lo.com the AD Connect was set up and it had synchronized all the users in our on-prem domain controller to the Azure. Assume we had 20k users in the specific OU, which…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-09-16T09:44:30.453+00:00
Venugopal B 21 Reputation points
answered 2020-09-22T11:48:50.743+00:00
Venugopal B 21 Reputation points
0 answers

Azure Data Factory mysql & CRM 365 Integration Issue

I want to integrate mysql with CRM 365. I am unable to change the data type of source so it would be same as destination data type. Conversion from int 64 to int 32. Please answer this query. Thanks

Microsoft Security | Active Directory Federation Services
asked 2020-09-21T18:54:57.507+00:00
Akif Malik 1 Reputation point
0 answers

Azure AD B2C token endpoint retruns 404

We use Azure AD B2C as identity provider in one of our applications. We want users to login using their organizational account (Any Azure AD – Multitenant) and personal Microsoft accounts. Also, we use Custom Policies and relevant ClaimsProvider is…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra External ID
asked 2020-09-15T16:42:01.197+00:00
Sampath Dilhan 56 Reputation points
commented 2020-09-21T09:29:17.52+00:00
Sampath Dilhan 56 Reputation points
0 answers

ADFS SAML Artifact Resolution Response Missing Signature

I'm trying to integrate ADFS with our Service Provider (SP). I've enabled the Artifact Resolution (SOAP) mechanism in ADFS and ADFS does response to an ArtifactRequest message with an ArtifactResponse message, but the ArtifactResponse is missing a…

Microsoft Security | Active Directory Federation Services
asked 2020-09-03T19:27:39.993+00:00
Eric Swenson 6 Reputation points
commented 2020-09-17T16:21:35.757+00:00
Daniel Scannell 1 Reputation point
4 answers

publish active sync with adfs

dears, i configured since a while active sync and published it using adfs and wap. it was working great. relying party trust created type : non claims aware publishing on wap using adfs: rich clients starting the last night, it stopped…

Microsoft Security | Active Directory Federation Services
asked 2020-09-02T13:08:33.697+00:00
eg1995 1,156 Reputation points
answered 2020-09-17T07:10:42.44+00:00
eg1995 1,156 Reputation points
1 answer

Federated Azure AD - Student Authentication Query

I am contacting on behalf of a Multi-Academy trust who are wishing to setup their federated Azure AD to allow sign in to their Capita Reading Cloud library systems using O365 credentials. This MAT contains several schools all with their own separate RC…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2020-09-10T10:11:27.25+00:00
Elliot Stansfield 1 Reputation point
commented 2020-09-16T17:22:52.84+00:00
Shashi Shailaj 7,631 Reputation points Microsoft Employee Moderator
1 answer

ADFS SAML Assertions

I've setup an AD FS server on Windows Server 2012 R2. I've gotten claims rules to work so that a user can logon to AD FS and then assume a role in AWS based on AD group membership and a mapping between the group and a role. This method is documented…

Microsoft Security | Active Directory Federation Services
asked 2020-09-15T23:36:52.77+00:00
Richard Long 1 Reputation point
answered 2020-09-16T16:45:43.713+00:00
Pierre Audonnet - MSFT 10,191 Reputation points Microsoft Employee
0 answers

Windows Authentication Silent Login with ADFS on Edge Chromium / Chrome

Hi I have read up on https://learn.microsoft.com/en-us/answers/questions/64583/how-to-bypass-sso-screen-when-using-saml-20-via-ad.html And have done all the changes needed, e.g Set-AdfsPRoperties to add "Mozilla/5.0" into…

Microsoft Security | Active Directory Federation Services
asked 2020-09-11T03:34:51.237+00:00
kytay 6 Reputation points
1 answer

ADFS authentication (intranet) for Cloud Users

Hi Guys, I have a sitution, we have a situation in which we want to use ADFS authentication for users accessing Office online. We only want users who are a part of Intranet ( either connected to LAN or VPN ) to access office apps outside of it is not…

Microsoft Security | Active Directory Federation Services
asked 2020-09-08T14:56:32.393+00:00
Parin Das 2 Reputation points
commented 2020-09-10T10:03:53.807+00:00
AmanpreetSingh-MSFT 56,876 Reputation points Moderator