use adfs to publish owa

eg1995 1,131 Reputation points
2020-08-27T10:10:21.977+00:00

dears,

i have a deployment consisting of exchange server 2016, adfs 2016 and wap 2016.
i am trying to publish outlook on the web using wap.
i have followed microsoft documentation, and everything was working fine.
recenlty, the behavior has changed, when i try to access owa, it is redirecting to adfs page ( thats right) but after signing in it is redirecting again to owa login page in order to insert the credentials again. however, it should after adfs redirect me automatically to the mailbox.

i dont know what has changed, i checked the config again ( claim rules are created, claim based created too, wap config is green)
in addition, there is no errors in event viewer.

im lost i dont know how to proceed
any suggestions

thank you

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,194 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,356 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Andy David - MVP 142.2K Reputation points MVP
    2020-08-27T11:06:53.523+00:00

    I would verify that the OWA and EAC virtual directories are enabled for ADFS and not set to another auth scheme

    Verify Steps 6.-8 again:
    https://learn.microsoft.com/en-us/exchange/clients/outlook-on-the-web/ad-fs-claims-based-auth?view=exchserver-2019#step-5c-publish-the-claims-relying-party-trusts-for-outlook-on-the-web-and-the-eac-in-web-application-proxy

    If that still doesnt fix it, walk through the entire doc

    https://learn.microsoft.com/en-us/exchange/clients/outlook-on-the-web/ad-fs-claims-based-auth?view=exchserver-2019

    P.S.
    You have asked a lot of questions in the forums here, but have not marked any as accepted. Its important that you do that if you expect people to help you.

    Please return to these threads and mark any answers as accepted and close those out. Thank you

    https://learn.microsoft.com/en-us/answers/questions/75964/exchange-dag-and-witness-practice.html
    https://learn.microsoft.com/en-us/answers/questions/60625/can-i-add-a-session-host-2016-to-my-environment-if.html
    https://learn.microsoft.com/en-us/answers/questions/60625/can-i-add-a-session-host-2016-to-my-environment-if.html

    0 comments No comments

  2. Eric Yin-MSFT 4,386 Reputation points
    2020-08-28T07:49:36.177+00:00

    I wonder if you search the Event Viewer at right pane and please try enabling logging for ADFS, see if you could find some clues from this:https://learn.microsoft.com/en-us/windows-server/identity/ad-fs/troubleshooting/ad-fs-tshoot-logging#admin-log