1,540 questions with Microsoft Security | Active Directory Federation Services tags

Sort by: Updated
1 answer

Require help on Migrating an ADFS-Dependent Application from On-Premises to Microsoft Entra ID

Hello Everyone, I am looking for guidance on migrating an application that currently relies on Active Directory Federation Services (ADFS) for authentication to Microsoft Entra ID. Our current environment includes: An on-premises Active Directory. …

Microsoft Security | Active Directory Federation Services
asked 2026-07-02T09:27:14.2833333+00:00
Somashekar TM 0 Reputation points
answered 2026-07-02T09:27:39.24+00:00

AI answer

0 answers

AD FS 2022 Smart Card Authentication No Longer Recognized as MFA After Upgrade from Windows Server 2016

We are currently investigating a behavioral difference between AD FS on Windows Server 2016 and on Windows Server 2022 regarding smart card/certificate-based authentication. In our Windows Server 2016 AD FS environment, all relying parties (RPs)…

Microsoft Security | Active Directory Federation Services
asked 2026-07-01T09:56:49.07+00:00
Bishnu Baliyase 130 Reputation points
0 answers

Wia vs. local user application - authorize process

I have an application that authorizes users to ADFS using the /adfs/oauth2/authorize/wia command. The application also stores local users in the database. When a local user logs in, they receive a 401 "WWW-Authenticate NTLM" error. ADFS won't…

Microsoft Security | Active Directory Federation Services
asked 2026-06-26T14:43:13.2766667+00:00
Michał Matczak 0 Reputation points
1 answer

not working bluetooth problem

not connecting bluetooth airbuds since from the 5months not connecting weell issue not understand what isthe problem please slove connecting the bluetooth devics easily possible i

Microsoft Security | Active Directory Federation Services
asked 2026-06-21T17:02:26.4366667+00:00
sagar shiva 0 Reputation points
answered 2026-06-21T17:02:42.0866667+00:00

AI answer

0 answers

Best Approach to Migrate from ADFS to Azure Entra ID with External MFA [DUO] Without User Disruption

Hi, I am looking for guidance and best practices for migrating our authentication flow from ADFS to Microsoft Entra ID while continuing to use Duo MFA. Current Authentication Flow User → Entra ID → ADFS Server → Duo MFA → Approved Original Target…

Microsoft Security | Active Directory Federation Services
asked 2026-06-20T06:51:37.58+00:00
Durgesh Mishra 60 Reputation points
0 answers

AD FS Azure MFA — "Exception calling SAS" — Production Outage

Environment: AD FS Farm Behavior Level 4 (Server 2016), Federated to M365/Entra ID Problem All M365 browser sign-ins fail after primary auth with: Exception calling SAS AD FS successfully authenticates the user (password), then fails when invoking the…

Microsoft Security | Active Directory Federation Services
asked 2026-06-15T21:34:08.62+00:00
Neil Aragon 6 Reputation points
answered 2026-06-15T21:34:27.6766667+00:00

AI answer

1 answer One of the answers was accepted by the question author.

Staged Rollout Cleanup After Federated-to-Managed Domain Migration – Is Group Removal Required and Will It Trigger User Reauthentication?

We are migrating Microsoft 365 authentication from ADFS (Federated) to Microsoft Entra ID using Staged Rollout and Duo MFA through a Conditional Access Custom Control. Our migration plan is: Move users to Staged Rollout. Validate authentication…

Microsoft Security | Active Directory Federation Services
asked 2026-06-12T17:45:38.6533333+00:00
Durgesh Mishra 60 Reputation points
accepted 2026-06-14T12:55:05.0433333+00:00
Durgesh Mishra 60 Reputation points
1 answer

my account got locked

I am got locked out of my Microsoft email account (kh********@hotmail.com) due to an automated security block. Because I don't have access to my original recovery options, Microsoft required me to fill out an identity verification form. but the system's…

Microsoft Security | Active Directory Federation Services
asked 2026-06-11T15:56:43.6166667+00:00
khaled essam 0 Reputation points
answered 2026-06-11T15:57:20.8233333+00:00

AI answer

6 answers

ADFS access giving HTTP 400 error

Hello, I'm migrating our ADFS server from Windows Server 2012 R2 to Windows Server 2019. I managed to add the new server to the farm and to get it to work, but I'm getting some trouble while accessing the /adfs/ls/Idpinitiatedsignon.aspx page. …

Microsoft Security | Active Directory Federation Services
asked 2022-12-22T10:04:39.767+00:00
Houssem Hamdoun 6 Reputation points
answered 2026-06-02T13:49:28.45+00:00
Bauzone, Jonathan 21 Reputation points
1 answer

Azure AD tenant completely locked out - federated domain moved from GoDaddy to NameCheap, federation broken

My Azure AD tenant (tenant ID: bf04ef93-ce73-46c1-b72b-72830d9efa52, subscription ID: f1100c68-bef9-4ff5-8e70-3ed1d67c9628) is completely inaccessible. The domain lawsofrobots.net was previously federated to GoDaddy as the identity provider. The domain…

Microsoft Security | Active Directory Federation Services
asked 2026-05-28T21:39:30.49+00:00
Allan Watkins 0 Reputation points
commented 2026-05-28T22:29:39.45+00:00
Allan Watkins 0 Reputation points
1 answer

I had a federated account via GoDaddy and setup Azure with one email then lost access to an external tenant

I created an Azure with federated account via GoDaddy then used this account to setup a primary tenant then created an external tenant that does CIAM authentication and lost access to the external tenant and trying to get access back to external tenant. …

Microsoft Security | Active Directory Federation Services
asked 2026-05-28T16:43:15.01+00:00
Greg Hansen 0 Reputation points
answered 2026-05-28T16:43:39.6233333+00:00

AI answer

1 answer

Hello Microsoft Team,

My Microsoft account has been completely hijacked. The attacker: - Removed my primary email - Added their own emails - Changed my password and locked me out of my Xbox/Minecraft account I have tried: - The automated recovery form (doesn't recognize my…

Microsoft Security | Active Directory Federation Services
asked 2026-05-22T00:43:54.5+00:00
Ashok Anand, Prathyush 0 Reputation points
answered 2026-05-22T00:44:10.83+00:00

AI answer

1 answer One of the answers was accepted by the question author.

Secure Boot Implementation

Are there any issues implementing "Secure Boot" in group policy to all workstations/servers?

Microsoft Security | Active Directory Federation Services
asked 2026-05-19T14:20:06.16+00:00
Dennis Wells 20 Reputation points
accepted 2026-05-19T14:22:09.85+00:00
Dennis Wells 20 Reputation points
1 answer

User got this message "The trust relationship between this workstation and the primary domain failed"

Dear Community, Kindly note that a user in my domain got this error. After he restarted the machine, the error disappeared. The user's machine is domain joined. But it is the second time that he got the error in last few months. Why did this user got the…

Microsoft Security | Active Directory Federation Services
asked 2026-05-11T05:37:56.6533333+00:00
Seema Kanwal Gurmani 341 Reputation points
answered 2026-05-11T05:38:16.1466667+00:00

AI answer

1 answer

Configure redirect for failed silent SAML login in Azure AD

When a silent SAML auth request against Azure Active Directory fails, the result is bad requests. The error is "AADSTS50058: A silent sign-in request was sent but no user is signed in". We were migrating from ADFS to Azure AD. With ADFS,…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2022-10-10T07:38:57.497+00:00
Artu Sa 26 Reputation points
edited a comment 2026-05-08T10:16:44.42+00:00
George-0304 20 Reputation points
4 answers

How do I fix a Microsoft Account that I can't log into?

How do I fix a Microsoft Account that I can't log into?

Microsoft Security | Active Directory Federation Services
asked 2026-02-17T16:35:28.7366667+00:00
Scott Skinner 10 Reputation points
answered 2026-05-04T22:20:40.0166667+00:00
Don Varnau 19,840 Reputation points Volunteer Moderator
3 answers

New-MgDomainFederationConfiguration is failing with 409

It seems that New-MgDomainFederationConfiguration is broken. We need to set federation for a domain which is what this command used to work in past. Now. We registered a new Entra, registered a new domain and set all the verification things. We added the…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2024-12-12T10:20:25.3433333+00:00
Ladislav Čapka 5 Reputation points
answered 2026-05-04T08:31:00.47+00:00
subash panda 0 Reputation points
1 answer One of the answers was accepted by the question author.

Phone otp in Entra External ID

Does Entra External ID support phone number (SMS OTP) as a primary sign-up/sign-in method (not MFA)? If not, is it on the roadmap?

Microsoft Security | Active Directory Federation Services
asked 2026-05-01T13:46:02.48+00:00
Sanjarbek Ganiev 20 Reputation points
accepted 2026-05-01T13:47:11.0533333+00:00
Sanjarbek Ganiev 20 Reputation points
1 answer

Error message: interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity.

Error message: interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity. To learn more about tenant lifecycle policies, see https://aka.ms/TenantLifecycle Trace ID: 6a6c5c32-4022-4554-9b78-9c53176fb000 Correlation ID:…

Microsoft Security | Active Directory Federation Services
asked 2026-04-15T16:40:09.4033333+00:00
Yuvraj 0 Reputation points
edited a comment 2026-04-28T10:13:32.4433333+00:00
Ana M 0 Reputation points Moderator
1 answer

Receive an sms

What is this? is this coming from you? this is the second time I receive this sms..

Microsoft Security | Active Directory Federation Services
asked 2026-04-22T08:25:57.59+00:00
Richard Lammerts 0 Reputation points
answered 2026-04-22T08:26:19.0466667+00:00

AI answer