SPN error with new ADFS 3.0 farm.
Hello all, I have a new adfs 3 farm which I'm using for a range of internal services. it's running great, but now trying to also introduce our SP initiated SSO for Zscaler.com. It's failing out with...
View ArticleADFS Taleo Relying Party Configuration
Hi, I'm trying to configure Oracle Taleo as a relying party for AD FS and the AD FS as identity provider for Taleo. AD FS Configuration I have uploaded XML Taleo federation metadata in relying party...
View ArticleHow to properly setup LB probe for ADFS 3.0 servers
We are facing a problem during ADFS 3.0 (Windows Server 2012 R2), because we do not find a suitable URL for hardware Load Balancer probe to test ADFS nodes.When tried with IE browser, the URL...
View ArticleADFS + WAP + Sharepoint2010 How to publish only one sharepoint site ?
Hello ADFS WAP specialists, I have successfully setup ADFS WAP and done additional setup on our Sharepoint portal. I am able to access the root of our Sharepoint site , portal.contoso.com .Ideally I...
View ArticleMigrate ADFS 2.0 to ADFS 3.0 on different servers/farm
Hello,We have to migrate an adfs 2.0 farm which federates an on-prem AD with the company's Office 365 tenant AD.I read through the following technet article...
View ArticleFederated authentication application that also reads Forms cookie
At our company we are planning to move our IIS applications from forms based authentication to federated authentication. We want to move one application first (big bang is difficult). All applications...
View ArticleADFS 3.0 want to change logout landing url
HiI have recently deployed ADFS 3 on Windows 2012 R2. We are using it for Office 365. It is running smoothly. However this is what we want to achieve:(1) When a user logs out, ADFS logout landing url...
View ArticleADFS Custom Authentication Policies
I am trying to setup MFA authentication based on individual relaying parties but it doesn't seem to take effect. When I enable MFA globally it works. In ADFS Management > Authentication Policies...
View ArticleCannot log in to OBIEE relying party trust
Hello everyone!I have deployed an environment in two locations.The first one contains:2 x Domain Controllers (let's name it DC1 and DC2)- both are connected through vpn to the 3rd domain controler(...
View ArticleADFS 3.0 Relying Party Trust
To Whom It May Concern,I have setup a new ADFS 3.0 dev environment and added a relying party trust for a vendor we are working with. The relying party has been configured and the proper claims are...
View ArticleADFS 3.0 Forms Authentication not continuing after proper sign in.
I have ADFS deployed and setup and it's working great. It is also connected to Azure. With internet explorer I can sign on via windows auth. I cannot sign on with chrome or firefox with forms. If I...
View ArticleAuthenticate users with Microsoft Dynamics CRM 2011 (IFD) through code (C#).
I have internet facing Dynamics CRM 2011 deployment on Rollup 17 hosted in Azure. The deployment of CRM and ADFS was configured according to the guide provided on Microsoft website...
View ArticleMS-SQL Permissions to Install \ Configure ADFS 3
G'Day All,I have been searching the specific MS-SQL permissions to install ADFS 3 and to configure it, but I have not found anything specific.Does any one knows what MS-SQL permission are required for...
View ArticleADFS 3.0 Multi Factor Authentication
I have setup RSA as multi factor authentication in ADFS 3.0 (windows server 2012 R2). I have 2 "Claims Provider Trust":1. Active Directory (so I can log in using windows credentials)2. Thinktecture...
View ArticleDoes ADFS server require Internet access?
Hello,I have two Adfs 3.0 server in intranet and two adfs proxy in DMZ. For the firewall setting in two adfs 3.0 server, I set the default outbound connection as block and create a custom outbound...
View Articleproblem with passing unixHomeDirectory attribute in AD FS
Hello,I am using AD FS 3.0 as IDP. one of the service provider ask me to send the value of unixHomeDirectory to them. I send the value to the service provider and the result is strange. I read this...
View ArticleValidation of viewstate MAC failed
I have an ADFS environment with a load balancer going to 2 proxies and another load balancer going to 2 issuers. If both of the proxy servers are in the pool, I am getting the error below when routing...
View ArticleClient Authentication certificate not working in ADFS3.0
Hi,I am currently working on integrating ADFS 3.o for Single Sign On to some 3rd party services along with PKI solution. The basic requirement is that I should be able to choose client authentication...
View ArticleADFS 3.0 SAP Fiori SSO shows login prompt upon redirection
We have up and running ADFS 3.0 setup with 2 internal ADFS servers (2012 R2 patched) and 2 WAP. We have configured a trust with SAP Fiori, but when we access the URL the SAP side shows a Login prompt...
View ArticleWIF 4.5 cannot verify signature of Saml2 token that have white spaces
Hi,I use Saml2SecurityTokenHandler to read and verify Saml2 assertion:var handler = new Saml2SecurityTokenHandler(...);handler.ReadAssertion(reader);If the assertion element has no white spaces, WIF...
View Article