Enterprise applications - On-premise application published with pass-through but still prompted for password

theodorbrander 51 Reputation points
2019-12-10T15:11:31.61+00:00

Hi,

I'm attempting to publish our intranet as an enterprise application with SSO. This works like a charm and I'm able to access it via office.com and also as a published web link via Intune and my phone. But - I have to sign-in each time which is not what I want.

alt text

My settings in application proxy is as follows:

alt text

The end result I wish for is to open the web site from office.com only by logging in the first time. From my phone I wish to use either PIN or bio-metrics, not password.

Any suggestions how to solve this?

With kind regards

Theodor

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,473 questions
{count} votes

2 answers

Sort by: Most helpful
  1. FrankHu-MSFT 976 Reputation points
    2019-12-11T02:48:42.3+00:00

    Hey TheOdorBrander,

    It sounds like you're trying to get your AAD proxy to properly perform Single Sign On. There is actually a chart you can follow that is documented here on how to get SSO to work with your intranet application : https://learn.microsoft.com/en-us/azure/active-directory/manage-apps/what-is-single-sign-on#choosing-a-single-sign-on-method

    alt text

    It looks like you most likely want to setup a linked sign on scenario :https://learn.microsoft.com/en-us/azure/active-directory/manage-apps/what-is-single-sign-on#linked-sign-on

    Please remember to mark one of the responses as answer if your question has been answered. If not please let us know if there are anymore questions.


  2. theodorbrander 51 Reputation points
    2019-12-17T09:25:02.267+00:00

    Anyone have any tips?

    0 comments No comments