1,192 questions with Active Directory Federation Services tags

Sort by: Updated
0 answers

How to access ADFS externally with web app

Hello! I really need someone to help me out now since i spent days learning and doing labs and i finally made it but not completely. I have 3 VMs, 1 DC, ADFS server and ADFS proxy server with 2 NICs. Internally i can reach the ADFS login page with…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-03-19T14:45:51.913+00:00
Tuff Gong 6 Reputation points
commented 2020-03-25T21:19:45.367+00:00
Pierre Audonnet - MSFT 10,166 Reputation points Microsoft Employee
2 answers One of the answers was accepted by the question author.

Select domain at ADFS login page

My ADFS connect to two AD Domain for authentication, can I let users select the domain they belong instead of typing the domain name?

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-03-23T08:36:36.393+00:00
Hau Kit Wong 71 Reputation points
commented 2020-03-25T11:17:52.857+00:00
Hau Kit Wong 71 Reputation points
1 answer One of the answers was accepted by the question author.

ADFS 3.0 error 364 (msis 7042) on ADFS + error 224 on ADFS PROXY maybe after windows update

Hi all! Dynamics on premise, exposed with ADFS 3.0 and ADFS PROXY So i have this scenario: 1 vm x sql (lan) 1 vm x dynamics (lan) 2 vm x dns and dc (lan) 1 vm x adfs (lan) 1 vm x adfs proxy (Dmz) After windows update for windows 2012 r2 on…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-03-24T13:59:29.21+00:00
Mattia Minervini 101 Reputation points
accepted 2020-03-24T18:22:23.003+00:00
Mattia Minervini 101 Reputation points
0 answers

adfs exchange

dears, i have 2 2016 exchange servers configured in dag mode. external urls are not published. users can connect just internally. the client recently asked to publish it externally using web app proxy. i have seen that this needs an adfs server to…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-03-18T17:37:14.917+00:00
eg1995 1,131 Reputation points
commented 2020-03-23T16:28:42.177+00:00
Pierre Audonnet - MSFT 10,166 Reputation points Microsoft Employee
0 answers

ADFS idpinitiatedsignon SAML assertion not signed

I am trying to extract SAMLResponse assertion via https://<adfs_domain>/adfs/ls/idpinitiatedsignon using a webview. The problem is that the SAMLResponse assertion is not signed and the signature is not included inside the assertion. As a result…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-03-12T10:27:05.86+00:00
Alexander Kalavitis 1 Reputation point
commented 2020-03-20T17:16:04.06+00:00
Pierre Audonnet - MSFT 10,166 Reputation points Microsoft Employee
1 answer

ADFS - AAD integration - No AzureAD Connect - SAML ImmutableID error

Hello everyone, I'm working on enabling login to an adfs-federated Enterprise Web App through AAD SAML. I haven't found any good documentation on the matter (or blogpost) which describes my specific usecase so I'm mostly doing trial and error. I know…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,545 questions
asked 2020-03-18T09:47:55.573+00:00
Domenico Bochicchio 16 Reputation points
commented 2020-03-18T12:02:25.64+00:00
Domenico Bochicchio 16 Reputation points
2 answers One of the answers was accepted by the question author.

Authentication Loop use ADFS with CRM

I posted this in CRM Dynamics to no avail so I'm trying here. I have two users (one being me) who get an authentication loop when attempting to access our CRM system via our intranet. I used a SAML inspection program and I get ws-fed error …

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-02-27T19:48:52.477+00:00
David Kafrissen 96 Reputation points
accepted 2020-03-11T15:14:42.667+00:00
David Kafrissen 96 Reputation points
1 answer One of the answers was accepted by the question author.

Claims rule to get WindowsAccountName

I have configured Claims Provider Trust in ADFS and I am getting only Email in NameID. I can not make changes to Third party Claims Provider Trust, so I have to get WindowsAccountName using Email which I received in NameID from Third Party IDP and…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-03-07T06:24:40.623+00:00
Mayur Dighe 21 Reputation points
commented 2020-03-10T08:47:00.273+00:00
Oskar S 1 Reputation point
3 answers One of the answers was accepted by the question author.

ADFS - WAP traficc handle

Hi! My ADFS solution idea looks like this: Internet to FW to NLB to WAP1 and WAP2 to FW to ADFS1/ADFS2/ADFS3/ADFS4 to AD. The NLB distribute the incoming traffic to the WAP servers (Round-robin) and the WAP servers distribute the traffic to…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-02-28T08:44:03.727+00:00
LinPro 21 Reputation points
accepted 2020-03-06T07:28:45.69+00:00
LinPro 21 Reputation points
1 answer

Automatic device join in single AD - multiple Azure topology

Hi all, Our customer is considering implementing topology with single onprem AD synchronized to multiple Azure AD tenants, using a single ADFS farm. The customer needs availability of Autopilot with Hybrid AD join for devices in all Azure AD tenants.…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,545 questions
asked 2020-02-25T08:29:16.72+00:00
Ruslan Nalivaika 106 Reputation points
commented 2020-02-26T08:25:06.083+00:00
Ruslan Nalivaika 106 Reputation points
1 answer One of the answers was accepted by the question author.

How to send comma separated AD attribute value as separate ADFS role claims?

Our business roles from ERP are populated into extensionAttribute5 AD attribute. The value of this attribute may look like: SAXTechs PrimaTechs SAXTechs,PrimaTechs How can we send these values as separate role claims using ADFS 4…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
asked 2020-02-25T00:20:05.213+00:00
joym8 86 Reputation points
accepted 2020-02-25T20:50:21.263+00:00
joym8 86 Reputation points
2 answers One of the answers was accepted by the question author.

Import SSL into ADFS for linking Azure AD to Local AD.

So I am attempting to test a huge connection of my azure AD to my Local AD but I need an ADFS in my environment for Federated logins from AzureI am attempting to deploy one but it's asking for an SSL cert I need support importing an SSL cert into my…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,192 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,545 questions
asked 2019-12-04T18:38:17.377+00:00
Agolphin 96 Reputation points
accepted 2019-12-06T14:34:40.09+00:00
Agolphin 96 Reputation points