1,548 questions with Microsoft Security | Active Directory Federation Services tags

Sort by: Updated
2 answers

How to export and import Advance audit policis setting between different domains

Hi, How can I backup and restore GPO settings, including advanced audit policies, across multiple forests and domains? Thanks.

Microsoft Security | Active Directory Federation Services
asked 2026-08-06T03:20:11.04+00:00
Andrew Ang 40 Reputation points
answered 2026-08-06T11:25:10.47+00:00
林 裕輔 0 Reputation points
1 answer

Why advance Audit polices doesn't work properly after backup and import from different domain

Why advance Audit polices doesn't work properly after backup and import from different domain ,

Microsoft Security | Active Directory Federation Services
asked 2026-08-06T06:20:12.0933333+00:00
Andrew Ang 40 Reputation points
answered 2026-08-06T11:14:46.3466667+00:00
Marcin Policht 101.1K Reputation points MVP Volunteer Moderator
1 answer

power bi connectivity with snowflake

how a user authentificate to powerbi services and access to aws snowflake with sso

Microsoft Security | Active Directory Federation Services
asked 2026-07-30T23:58:48.4633333+00:00
Jay PRAYAG 0 Reputation points
answered 2026-07-30T23:59:05.9633333+00:00

AI answer

1 answer

AD FS cannot find the certificate needed to validate the message or token signature EventCode=371

Post a recent certificate renewal on my ADFS Fed and Proxy servers, we are observing the following failures in logs - Cannot find certificate to validate message/token signature obtained from claims provider. Claims provider:…

Microsoft Security | Active Directory Federation Services
asked 2026-07-21T11:06:42.6233333+00:00
Vikas B Yadav 0 Reputation points
answered 2026-07-28T12:48:02.2+00:00
Christian Weisse 80 Reputation points Microsoft Employee
1 answer

Subject: Issue While Importing Metadata and Configuring ADFS SSO Rules

Hi Support Team, I am facing an issue while configuring SSO on the ADFS server. I have successfully imported the metadata on the ADFS server and configured the required ADFS claim rules for SSO. However, when attempting to test the authentication, I am…

Microsoft Security | Active Directory Federation Services
asked 2026-07-22T17:24:03.49+00:00
Ravinder Makkar 100 Reputation points
answered 2026-07-28T12:32:15.5833333+00:00
Christian Weisse 80 Reputation points Microsoft Employee
0 answers

Support Request: ActiveDirectoryMembershipProvider Authentication Failure with 32-Character Password in .NET Framework 4.0

Subject: Support Request: ActiveDirectoryMembershipProvider Authentication Failure with 32-Character Password in .NET Framework 4.0 Issue Summary We are experiencing an authentication issue with the ActiveDirectoryMembershipProvider class in a .NET…

Microsoft Security | Active Directory Federation Services
asked 2026-07-22T11:34:34.95+00:00
Lakshminarayana Polimera 0 Reputation points
1 answer

In-pace upgrade possibility for ADFS Web application proxy servers

I am writing to know regarding the possibility on in-place upgrade of ADFS Web application proxy servers from Windows 2016 to 2025. I can provide the details required, these servers are not domain joined, are in DMZ, no external application URL…

Microsoft Security | Active Directory Federation Services
asked 2026-07-21T07:53:50.17+00:00
Abhishek Rai 46 Reputation points
answered 2026-07-21T07:54:36.1866667+00:00

AI answer

0 answers

Bug report - "Not a valid Win32 FileTime") on Forms Authentication logins

AD FS defect report: ArgumentOutOfRangeException ("Not a valid Win32 FileTime") on Forms Authentication logins AD FS's Forms Authentication login path can throw an unhandled System.ArgumentOutOfRangeException: Not a valid Win32 FileTime on a…

Microsoft Security | Active Directory Federation Services
asked 2026-07-13T23:36:22.37+00:00
Trond Nilsen 0 Reputation points
edited the question 2026-07-13T23:37:03.04+00:00
Trond Nilsen 0 Reputation points
1 answer One of the answers was accepted by the question author.

ADFS 2022 Smart Card Authentication No Longer Recognized as MFA After Upgrade from Windows Server 2016

We are currently investigating a behavioral difference between AD FS on Windows Server 2016 and on Windows Server 2022 regarding smart card/certificate-based authentication. In our Windows Server 2016 AD FS environment, all relying parties (RPs)…

Microsoft Security | Active Directory Federation Services
asked 2026-07-01T09:56:49.07+00:00
Bishnu Baliyase 150 Reputation points
edited a comment 2026-07-09T11:52:51.7266667+00:00
Christian Weisse 80 Reputation points Microsoft Employee
1 answer

On-premise AD FS and Windows RDS (RDWeb) integration

We have on-premises AD FS with MFA Setup, and recently we deployed Windows RDS to provide RemoteApp access to users, we are using the Classic RDWeb access, want to integrate the RDS with AD FS so the users are authenticated by AD FS, we require…

Microsoft Security | Active Directory Federation Services
asked 2026-07-09T04:55:08.78+00:00
Mohammed Alsomali 0 Reputation points
answered 2026-07-09T04:56:16.09+00:00

AI answer

1 answer

Require help on Migrating an ADFS-Dependent Application from On-Premises to Microsoft Entra ID

Hello Everyone, I am looking for guidance on migrating an application that currently relies on Active Directory Federation Services (ADFS) for authentication to Microsoft Entra ID. Our current environment includes: An on-premises Active Directory. …

Microsoft Security | Active Directory Federation Services
asked 2026-07-02T09:27:14.2833333+00:00
Somashekar TM 0 Reputation points
answered 2026-07-02T09:27:39.24+00:00

AI answer

0 answers

Wia vs. local user application - authorize process

I have an application that authorizes users to ADFS using the /adfs/oauth2/authorize/wia command. The application also stores local users in the database. When a local user logs in, they receive a 401 "WWW-Authenticate NTLM" error. ADFS won't…

Microsoft Security | Active Directory Federation Services
asked 2026-06-26T14:43:13.2766667+00:00
Michał Matczak 0 Reputation points
1 answer

not working bluetooth problem

not connecting bluetooth airbuds since from the 5months not connecting weell issue not understand what isthe problem please slove connecting the bluetooth devics easily possible i

Microsoft Security | Active Directory Federation Services
asked 2026-06-21T17:02:26.4366667+00:00
sagar shiva 0 Reputation points
answered 2026-06-21T17:02:42.0866667+00:00

AI answer

0 answers

Best Approach to Migrate from ADFS to Azure Entra ID with External MFA [DUO] Without User Disruption

Hi, I am looking for guidance and best practices for migrating our authentication flow from ADFS to Microsoft Entra ID while continuing to use Duo MFA. Current Authentication Flow User → Entra ID → ADFS Server → Duo MFA → Approved Original Target…

Microsoft Security | Active Directory Federation Services
asked 2026-06-20T06:51:37.58+00:00
Durgesh Mishra 60 Reputation points
0 answers

AD FS Azure MFA — "Exception calling SAS" — Production Outage

Environment: AD FS Farm Behavior Level 4 (Server 2016), Federated to M365/Entra ID Problem All M365 browser sign-ins fail after primary auth with: Exception calling SAS AD FS successfully authenticates the user (password), then fails when invoking the…

Microsoft Security | Active Directory Federation Services
asked 2026-06-15T21:34:08.62+00:00
Neil Aragon 6 Reputation points
1 answer One of the answers was accepted by the question author.

Staged Rollout Cleanup After Federated-to-Managed Domain Migration – Is Group Removal Required and Will It Trigger User Reauthentication?

We are migrating Microsoft 365 authentication from ADFS (Federated) to Microsoft Entra ID using Staged Rollout and Duo MFA through a Conditional Access Custom Control. Our migration plan is: Move users to Staged Rollout. Validate authentication…

Microsoft Security | Active Directory Federation Services
asked 2026-06-12T17:45:38.6533333+00:00
Durgesh Mishra 60 Reputation points
accepted 2026-06-14T12:55:05.0433333+00:00
Durgesh Mishra 60 Reputation points
1 answer

my account got locked

I am got locked out of my Microsoft email account (kh********@hotmail.com) due to an automated security block. Because I don't have access to my original recovery options, Microsoft required me to fill out an identity verification form. but the system's…

Microsoft Security | Active Directory Federation Services
asked 2026-06-11T15:56:43.6166667+00:00
khaled essam 0 Reputation points
answered 2026-06-11T15:57:20.8233333+00:00

AI answer

6 answers

ADFS access giving HTTP 400 error

Hello, I'm migrating our ADFS server from Windows Server 2012 R2 to Windows Server 2019. I managed to add the new server to the farm and to get it to work, but I'm getting some trouble while accessing the /adfs/ls/Idpinitiatedsignon.aspx page. …

Microsoft Security | Active Directory Federation Services
asked 2022-12-22T10:04:39.767+00:00
Houssem Hamdoun 6 Reputation points
answered 2026-06-02T13:49:28.45+00:00
Bauzone, Jonathan 21 Reputation points
1 answer

Azure AD tenant completely locked out - federated domain moved from GoDaddy to NameCheap, federation broken

My Azure AD tenant (tenant ID: bf04ef93-ce73-46c1-b72b-72830d9efa52, subscription ID: f1100c68-bef9-4ff5-8e70-3ed1d67c9628) is completely inaccessible. The domain lawsofrobots.net was previously federated to GoDaddy as the identity provider. The domain…

Microsoft Security | Active Directory Federation Services
asked 2026-05-28T21:39:30.49+00:00
Allan Watkins 0 Reputation points
commented 2026-05-28T22:29:39.45+00:00
Allan Watkins 0 Reputation points
1 answer

I had a federated account via GoDaddy and setup Azure with one email then lost access to an external tenant

I created an Azure with federated account via GoDaddy then used this account to setup a primary tenant then created an external tenant that does CIAM authentication and lost access to the external tenant and trying to get access back to external tenant. …

Microsoft Security | Active Directory Federation Services
asked 2026-05-28T16:43:15.01+00:00
Greg Hansen 0 Reputation points
answered 2026-05-28T16:43:39.6233333+00:00

AI answer