1,534 questions with Microsoft Security | Active Directory Federation Services tags

Sort by: Updated
1 answer

Staged Rollout Cleanup After Federated-to-Managed Domain Migration – Is Group Removal Required and Will It Trigger User Reauthentication?

We are migrating Microsoft 365 authentication from ADFS (Federated) to Microsoft Entra ID using Staged Rollout and Duo MFA through a Conditional Access Custom Control. Our migration plan is: Move users to Staged Rollout. Validate authentication…

Microsoft Security | Active Directory Federation Services
asked 2026-06-12T17:45:38.6533333+00:00
Durgesh Mishra 20 Reputation points
answered 2026-06-12T17:45:58.5466667+00:00

AI answer

1 answer

my account got locked

I am got locked out of my Microsoft email account (kh********@hotmail.com) due to an automated security block. Because I don't have access to my original recovery options, Microsoft required me to fill out an identity verification form. but the system's…

Microsoft Security | Active Directory Federation Services
asked 2026-06-11T15:56:43.6166667+00:00
khaled essam 0 Reputation points
answered 2026-06-11T15:57:20.8233333+00:00

AI answer

6 answers

ADFS access giving HTTP 400 error

Hello, I'm migrating our ADFS server from Windows Server 2012 R2 to Windows Server 2019. I managed to add the new server to the farm and to get it to work, but I'm getting some trouble while accessing the /adfs/ls/Idpinitiatedsignon.aspx page. …

Microsoft Security | Active Directory Federation Services
asked 2022-12-22T10:04:39.767+00:00
Houssem Hamdoun 6 Reputation points
answered 2026-06-02T13:49:28.45+00:00
Bauzone, Jonathan 21 Reputation points
1 answer

Azure AD tenant completely locked out - federated domain moved from GoDaddy to NameCheap, federation broken

My Azure AD tenant (tenant ID: bf04ef93-ce73-46c1-b72b-72830d9efa52, subscription ID: f1100c68-bef9-4ff5-8e70-3ed1d67c9628) is completely inaccessible. The domain lawsofrobots.net was previously federated to GoDaddy as the identity provider. The domain…

Microsoft Security | Active Directory Federation Services
asked 2026-05-28T21:39:30.49+00:00
Allan Watkins 0 Reputation points
commented 2026-05-28T22:29:39.45+00:00
Allan Watkins 0 Reputation points
1 answer

I had a federated account via GoDaddy and setup Azure with one email then lost access to an external tenant

I created an Azure with federated account via GoDaddy then used this account to setup a primary tenant then created an external tenant that does CIAM authentication and lost access to the external tenant and trying to get access back to external tenant. …

Microsoft Security | Active Directory Federation Services
asked 2026-05-28T16:43:15.01+00:00
Greg Hansen 0 Reputation points
answered 2026-05-28T16:43:39.6233333+00:00

AI answer

1 answer

Hello Microsoft Team,

My Microsoft account has been completely hijacked. The attacker: - Removed my primary email - Added their own emails - Changed my password and locked me out of my Xbox/Minecraft account I have tried: - The automated recovery form (doesn't recognize my…

Microsoft Security | Active Directory Federation Services
asked 2026-05-22T00:43:54.5+00:00
Ashok Anand, Prathyush 0 Reputation points
answered 2026-05-22T00:44:10.83+00:00

AI answer

1 answer One of the answers was accepted by the question author.

Secure Boot Implementation

Are there any issues implementing "Secure Boot" in group policy to all workstations/servers?

Microsoft Security | Active Directory Federation Services
asked 2026-05-19T14:20:06.16+00:00
Dennis Wells 20 Reputation points
accepted 2026-05-19T14:22:09.85+00:00
Dennis Wells 20 Reputation points
1 answer

User got this message "The trust relationship between this workstation and the primary domain failed"

Dear Community, Kindly note that a user in my domain got this error. After he restarted the machine, the error disappeared. The user's machine is domain joined. But it is the second time that he got the error in last few months. Why did this user got the…

Microsoft Security | Active Directory Federation Services
asked 2026-05-11T05:37:56.6533333+00:00
Seema Kanwal Gurmani 341 Reputation points
answered 2026-05-11T05:38:16.1466667+00:00

AI answer

1 answer

Configure redirect for failed silent SAML login in Azure AD

When a silent SAML auth request against Azure Active Directory fails, the result is bad requests. The error is "AADSTS50058: A silent sign-in request was sent but no user is signed in". We were migrating from ADFS to Azure AD. With ADFS,…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2022-10-10T07:38:57.497+00:00
Artu Sa 26 Reputation points
edited a comment 2026-05-08T10:16:44.42+00:00
George-0304 20 Reputation points
4 answers

How do I fix a Microsoft Account that I can't log into?

How do I fix a Microsoft Account that I can't log into?

Microsoft Security | Active Directory Federation Services
asked 2026-02-17T16:35:28.7366667+00:00
Scott Skinner 5 Reputation points
answered 2026-05-04T22:20:40.0166667+00:00
Don Varnau 19,810 Reputation points Volunteer Moderator
3 answers

New-MgDomainFederationConfiguration is failing with 409

It seems that New-MgDomainFederationConfiguration is broken. We need to set federation for a domain which is what this command used to work in past. Now. We registered a new Entra, registered a new domain and set all the verification things. We added the…

Microsoft Security | Active Directory Federation Services
Microsoft Security | Microsoft Entra | Microsoft Entra ID
asked 2024-12-12T10:20:25.3433333+00:00
Ladislav Čapka 5 Reputation points
answered 2026-05-04T08:31:00.47+00:00
subash panda 0 Reputation points
1 answer One of the answers was accepted by the question author.

Phone otp in Entra External ID

Does Entra External ID support phone number (SMS OTP) as a primary sign-up/sign-in method (not MFA)? If not, is it on the roadmap?

Microsoft Security | Active Directory Federation Services
asked 2026-05-01T13:46:02.48+00:00
Sanjarbek Ganiev 20 Reputation points
accepted 2026-05-01T13:47:11.0533333+00:00
Sanjarbek Ganiev 20 Reputation points
1 answer

Error message: interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity.

Error message: interaction_required: AADSTS5000225: This tenant has been blocked due to inactivity. To learn more about tenant lifecycle policies, see https://aka.ms/TenantLifecycle Trace ID: 6a6c5c32-4022-4554-9b78-9c53176fb000 Correlation ID:…

Microsoft Security | Active Directory Federation Services
asked 2026-04-15T16:40:09.4033333+00:00
Yuvraj 0 Reputation points
edited a comment 2026-04-28T10:13:32.4433333+00:00
Ana M 0 Reputation points Moderator
1 answer

Receive an sms

What is this? is this coming from you? this is the second time I receive this sms..

Microsoft Security | Active Directory Federation Services
asked 2026-04-22T08:25:57.59+00:00
Richard Lammerts 0 Reputation points
answered 2026-04-22T08:26:19.0466667+00:00

AI answer

0 answers

AD FS OIDC ID_TOKEN sub changed after patching

I have AD FS running on a Server 2019 machine that was patched over the weekend (KB5083769 and KB5082417). A user that was previously reporting a specific sub in the id_token that would come from AD FS for an OAuth2 / OIDC based login was unable to log…

Microsoft Security | Active Directory Federation Services
asked 2026-04-21T20:56:18.0566667+00:00
Jay Myers 0 Reputation points
answered 2026-04-21T20:56:31.21+00:00

AI answer

1 answer

Unable to configure flexible federated credential with issuer : https://token.actions.abc-xyz.ghe.com

While setting flexible federated credential with issuer : https://token.actions.abc-xyz.ghe.com getting attached error so suggest correct way to configure this similar permission.

Microsoft Security | Active Directory Federation Services
asked 2026-04-21T13:42:10.0133333+00:00
Salman Kadaya 0 Reputation points
answered 2026-04-21T13:42:41.24+00:00

AI answer

1 answer

strange device on my account QQ

there is a surface pro (desktop - TIBR3EU) ON MY ACCOUNT AND idk know why and i cant seem to remove it, if you can tell me why i cant remove it that would be nice.

Microsoft Security | Active Directory Federation Services
asked 2025-11-04T11:24:56.4366667+00:00
Isaiah Bryant 0 Reputation points
answered 2026-04-21T05:40:15.2733333+00:00
Catherine Kyalo 3,100 Reputation points Microsoft Employee
0 answers

ComponentSpace SAML 6.1.0 - "SAML configuration has not been specified" in ASP.NET Core

Hi, I am implementing SAML authentication using ComponentSpace.Saml2 (version 6.1.0) in an ASP.NET Core MVC application. I am facing the following error: "SAML configuration has not been specified" "LocalServiceProvider configuration not…

Microsoft Security | Active Directory Federation Services
asked 2026-04-18T06:26:20.0033333+00:00
Jubin Shah 5 Reputation points
1 answer

Domain Controller continuous reboot after installing update KB5082198

We have installed the update KB5082198 on one of our Domain Controller hosted on a Virtual Machine. Since then, the Domain Controller is rebooting again and again : each time trying to install the update for some times and then rebooting. Has anyone…

Microsoft Security | Active Directory Federation Services
asked 2026-04-17T08:02:10.6533333+00:00
Mayoraz Nicolas 0 Reputation points
answered 2026-04-17T08:02:22.0533333+00:00

AI answer

1 answer

Unknown account attached to my number

Hello, I used the Microsoft username recovery tool with my phone number and it shows three Microsoft accounts associated with it. I recognize one of the accounts, but the other two are not mine and I do not recognize them. For privacy reasons the tool…

Microsoft Security | Active Directory Federation Services
asked 2026-03-14T08:20:50.1766667+00:00
simran malhotra 0 Reputation points
answered 2026-04-14T20:40:32.0566667+00:00
Pauline Mbabu 1,840 Reputation points Microsoft Employee