1,288 questions with Active Directory Federation Services tags

Sort by: Updated
0 answers

How can I migrate from federation to cloud authentication?

My environment is: 1 domain (e.g. XXXX.com) on 1 on-prem AD (with 2 OU) 2 Entra ID tenants with each domain (e.g. YYYY.com and ZZZZ.com) 1 ADFS 1 Entra ID Connect Now, I login Microsoft 365 via Entra ID and ADFS. One OU members belong to YYYY.com…

Microsoft 365
Microsoft 365
Formerly Office 365, is a line of subscription services offered by Microsoft which adds to and includes the Microsoft Office product line.
5,583 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,041 questions
asked 2025-01-23T08:28:20.9866667+00:00
Toru Nakanishi 40 Reputation points
commented 2025-01-24T00:06:33.7666667+00:00
Toru Nakanishi 40 Reputation points
2 answers

Future of Federation Service in Windows Server

Is the Federation Service still expected to be available in future versions of Windows Server? What is the information regarding the end of support for the Federation Service on Windows Server?

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2025-01-22T22:44:28.2633333+00:00
MamadouCoulibali-4946 526 Reputation points
edited the question 2025-01-23T01:47:17.3366667+00:00
Raja Pothuraju 11,610 Reputation points Microsoft Vendor
1 answer

Configure a domain controller to be isolated

I want to validate what I think I need to do. Here is the situation. Company is selling a location that has an onprem Domain Controller, this domain controller has no schema roles assigned to it. It is the DHCP and DNS server locally as well. The…

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
13,609 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,826 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2025-01-22T17:47:26.5466667+00:00
Nicholas Franko 0 Reputation points
answered 2025-01-22T18:14:56.9166667+00:00
Marcin Policht 32,735 Reputation points MVP
0 answers

The Federation Service could not satisfy a token request because the accompanying credentials do not meet the authentication type requirement of 'urn:oasis:names:tc:SAML:1.0:am:password

We have a Relying Party setup for SSO for a client to our application, however they are unable to log in using SSO. Upon investigation, i have found the below messages within ADFS event logs: The Federation Service could not satisfy a token request…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2025-01-21T10:24:20.31+00:00
Benollins-5339 0 Reputation points
0 answers

adfs "token" endpoint for grant_type = refresh_token return only access_token and id_token

Hi , when user authanticate with "Authorization code grant flow" on browser responded refresh_token with access_token. but if i wan't to renew access_token with "Refresh Token Grant Flow" adfs server don't return refresh_token.…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2021-03-24T20:48:29.397+00:00
Tolga Ahıskalıoğlu 6 Reputation points
commented 2025-01-21T07:04:06.78+00:00
Pinnow, Simon 0 Reputation points
1 answer

windows 11 pro 24h2 version can not use AD account

1 I joined the AD domain on my windows 11pro version 24h2 computer, but I can't join the administrator user to the local administrators group on the administrator computer. Every time I enter my password it prompts me with the wrong username password,…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
Windows 11
Windows 11
A Microsoft operating system designed for productivity, creativity, and ease of use.
10,573 questions
asked 2024-12-13T07:29:58.3933333+00:00
Wu, Zhiwei 5 Reputation points
commented 2025-01-17T01:58:36.11+00:00
Wu, Zhiwei 5 Reputation points
1 answer

Migrate ADFS from Windows 2012 R2 to 2019

I have a Windows 2012 R2 server with ADFS installed on it. However, I am unsure about the farm config as the cmdlet "Get-AdfsFarmInformation" does not work, and instead spits out an error about the cmdlet not being recognised. I am unsure…

Windows
Windows
A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.
5,748 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2025-01-07T17:12:18.1733333+00:00
Shamik Ghosh 21 Reputation points
answered 2025-01-09T08:56:44.0366667+00:00
Zunhui Han 2,865 Reputation points Microsoft Vendor
0 answers

how we can add aws ec2 instnace to Azure entra

Customer is having two environment one is on azure and another one aws. on Azure there is entra ID. on AWS customer has created the two ec2 instances. which he wanted to be authenticated using the Azure Entra ID . could you please help us what all things…

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,826 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
Microsoft Entra
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,041 questions
asked 2024-12-23T17:27:44.5766667+00:00
N Wakchaure, Jagdish 175 Reputation points
commented 2025-01-09T06:38:44.09+00:00
BANDELA Siri Chandana 1,400 Reputation points Microsoft Vendor
1 answer

Federation Trust Unable to access Federation Metadata

Hello, I have been trying to run the Hybrid Configuration Wizard on our Exchange Server. I know TLS 1.2 is running because I am able to login with my Tenant admin account(at least through IE) in the beginning of the HCW. I have checked all registry keys…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
Microsoft Exchange Hybrid Management
Microsoft Exchange Hybrid Management
Microsoft Exchange: Microsoft messaging and collaboration software.Hybrid Management: Organizing, handling, directing or controlling hybrid deployments.
2,210 questions
asked 2024-12-04T03:04:26.1866667+00:00
Matthew Turney 0 Reputation points
commented 2025-01-09T01:17:03.0166667+00:00
Alex Zhang-MSFT 3,940 Reputation points Microsoft Vendor
2 answers

ADFS 3.0 Service won't start because certificate has expired

Hi, I have a fairly urgent issue with ADFS service not starting. The infrastructure is all Server 2019 and the service account password had expired so the ADFS could not auto renew the token signing and decrypting certificate. I know, I should have…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2020-05-22T09:23:53.263+00:00
Ukkaapie 31 Reputation points
commented 2025-01-08T14:50:51.3133333+00:00
Martin Sobek 0 Reputation points
1 answer

How to verify the AAD Connect is using ADFS for sign-in

Hi Support, We will migrate the ADFS from Win2012R2 to new Win2019 server. The ADFS farm is in another network subnet, so we need to configure the firewall rules for the new ADFS server. Since we have a AAD Connect server, we are not sure any connection…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,041 questions
asked 2025-01-06T08:48:17.0133333+00:00
Chong 871 Reputation points
commented 2025-01-06T09:06:01.2866667+00:00
Deepanshu katara 12,965 Reputation points
1 answer

How to achieve cross app sso with ADFS not entra ID

Based on this article https://learn.microsoft.com/en-us/entra/identity-platform/msal-android-single-sign-on How to achieve Cross APP SSO with ADFS Account? I have my environment running full on premise with ADFS 2019, Exchange server 2019 CU 14. I've…

Exchange Server
Exchange Server
A family of Microsoft client/server messaging and collaboration software.
1,423 questions
Microsoft Authenticator
Microsoft Authenticator
A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation.
7,837 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,826 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2024-12-03T07:48:09.0233333+00:00
Bayu Aji Setyawan 0 Reputation points
commented 2025-01-05T12:12:39.93+00:00
Bayu Aji Setyawan 0 Reputation points
1 answer One of the answers was accepted by the question author.

Create custom CloudAP plugin to authenticate to windows machine which is entra Joined?

My domain is federated with custom inhouse IDP and when the user tries to login in the entra joined machine as IDP CloudAP authenticates the user right? Is it possible to create custom CloudAP Plugin so after user enters the password our idp can enforce…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,041 questions
asked 2024-02-07T12:04:04.42+00:00
AJ 30 Reputation points
commented 2025-01-03T03:24:27.08+00:00
CheeWill 0 Reputation points
1 answer

ADFS external facing site error with 'Service Unavailable HTTP Error 503. The service is unavailable.'

Hi All, We have 2 AD FS (2016) servers, and 2 WAP servers (2016) and recently renewed SSL certificate for ADFS. During the same time, ADFS service account password expired and we updated that as well. SSL renewal steps: Installed the cert with…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2023-02-09T05:03:43.8+00:00
Shekar-1755 5 Reputation points
edited an answer 2024-12-31T16:14:52.9366667+00:00
Kevin Mawhinney 0 Reputation points
3 answers

The ADFS standard login page shows 503 service unavailable

ADFS running on Windows 2019 in a cluster containing two hosts. After changing the certificate for SSL and Service-Communications using the following commands: Set-AdfsSslCertificate –Thumbprint XXX Set-AdfsCertificate -CertificateType…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2021-05-20T11:11:26.473+00:00
ducmre 6 Reputation points
edited an answer 2024-12-31T16:12:30.06+00:00
Kevin Mawhinney 0 Reputation points
1 answer One of the answers was accepted by the question author.

OWA/ECP Exchange Server site error after configuring AD FS as an authentication method

Good day! Given: Hyper-V VM running Windows Server 2022 Exchange Server 2019 CU9 is installed on it The SSL certificate is universal: *.chuc228.ru Addresses: https://mail.chuc228.ru/owa/ https://mail.chuc228.ru/ecp/ I have configured AD FS as an…

Exchange Server
Exchange Server
A family of Microsoft client/server messaging and collaboration software.
1,423 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2024-12-17T18:50:38.03+00:00
accepted 2024-12-27T07:23:36.2633333+00:00
2 answers

New-MgDomainFederationConfiguration is failing with 409

It seems that New-MgDomainFederationConfiguration is broken. We need to set federation for a domain which is what this command used to work in past. Now. We registered a new Entra, registered a new domain and set all the verification things. We added the…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,041 questions
asked 2024-12-12T10:20:25.3433333+00:00
Ladislav Čapka 0 Reputation points
edited the question 2024-12-26T02:22:39.84+00:00
Raja Pothuraju 11,610 Reputation points Microsoft Vendor
4 answers

How to fix ADFS missing endpoints

The endpoints /token and /authorize for OAuth2 are not available in AD FS Management -> Services -> Endpoints, making it impossible to use OAuth2 with third-party applications. The only endpoints related to OAuth2 are: OAuth2: …

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,826 questions
Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2024-12-09T11:37:13.4633333+00:00
answered 2024-12-18T08:42:24.8533333+00:00
Marti Peig 880 Reputation points Microsoft Employee
2 answers

ADFS 2016 login using Azure MFA encountered error

I've set up Azure MFA with ADFS following https://learn.microsoft.com/en-us/windows-server/identity/ad-fs/operations/configure-ad-fs-and-azure-mfa. To test, I browsed to https://[myadfs].com/adfs/ls/idpinitiatedsignon Clicked "Azure…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
23,041 questions
asked 2020-09-03T11:21:03.783+00:00
Poh Tze Siang 6 Reputation points
answered 2024-12-17T15:38:52.0766667+00:00
David Trevor 311 Reputation points
0 answers

"Certificate Templates" container missing in Certification Authority (Local) MMC snap-in

I'm trying to follow the directions here to set up an SSL Certificate for AD FS: https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2012-r2-and-2012/dn781428(v=ws.11) In the "Assign a template to a CA" section…

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,288 questions
asked 2024-12-13T14:13:36.9633333+00:00
Andrew Wine 0 Reputation points