How to check if any application uses the IDP-initiated login endpoint in ADFS

João Vitor Rosa 0 Reputation points
2024-04-08T10:10:26.6966667+00:00

Hello everyone, for security reasons, I want to disable the https://domain.com/adfs/ls/idpinitiatedsignon.aspx endpoint in the ADFS proxy servers.

However, I need to make sure that no application is using IDP-initiated logins from the external network before change it.

I found this endpoint listed in the logs, but I cannot find any information about the users or which relying party trust is being used.

Do you have any idea how can I check if any application is using the IDP-initiated login endpoint in ADFS from external networks?

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,207 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Claudia Dos Santos Haz (CONCENTRIX CORPORATION) 775 Reputation points Microsoft Vendor
    2024-04-09T08:58:39.2733333+00:00

    Hello João Vitor Rosa,

     

    Thank you for reaching out to Microsoft Q&A forum!

    I hope the following article will be of help to you:

    Troubleshoot Active Directory Federation Services Idp-initiated sign-on | Microsoft Learn

    Best regards,

    0 comments No comments