ADFS Administrator Account

Derek Harbun 6 Reputation points
2020-01-23T18:44:48.56+00:00

Good morning,

I'm trying to update our Azure AD Connect to allow hybrid join of devices through ADFS. However, no matter what account I use, whether it is a local admin on the adfs server, or a domain admin, enterprise admin, schema admin, etc I cannot get past the Federation Services login. I have even tried the service account that ADFS runs as. We had a third party set this up for us, and they have been unresponsive.

Any hints as to where I can find what account needs to be used, and the context for that account?

Thanks,

D

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,187 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,388 questions
{count} vote

1 answer

Sort by: Most helpful
  1. AmanpreetSingh-MSFT 56,301 Reputation points
    2020-01-24T09:40:45.56+00:00

    @Derek Harbun In such scenarios, I have seen Error: Failed to connect primary ADFS Server from the Azure AD Connect server. This generally happens when Enterprise admin account fails to connect to ADFS Console via WS-Management Listener. To resolve this error, you need to add the enterprise admin account to Local Administrators group on ADFS Server and try again.

    Since you have not provided any error details in you question, I have answered it on assumption basis. If this doesn't help, please share what error/message you get on screen, when you say "I cannot get past the Federation Services login". Also, check and share if you are getting any relevant event logged in event viewer at that time.

    -----------------------------------------------------------------------------------------------------------

    Please "Accept as answer" wherever the information provided helps you to help others in the community.

    1 person found this answer helpful.
    0 comments No comments