Recent DiscussionsMost RecentNewest TopicsMost LikesSolutionsTagged:TagRe: Federation Issues - No protocol handlers? I'm running into the same issue with v2.4.27.0 of Entra Connect. v2.3.8.0 works fine.
Recent Blog ArticlesMost RecentMost LikesRe: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices jameswonderguyTAP can be used for both getting the user to the My Security Info page wherein they can add a security key, and to sign in to Win11 Entra joined devices using Web sign-in Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices excellent point,-_RH_- Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices Deleted, for a user, check the Smart card is required for interactive logon (SCRIL) flag in active directory.When this option is set, Active Directory changes the affected user's password to a rand...Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices jmcz1/G-At-Work/Niels Klein/JamelElajjouri We have seen cases where with Hybrid FIDO2 sign-in on Windows 10 devices, the first time the key is used, the login fails, but succeeds upon ...Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices bbs2web/DaSvenThe event ID 35 is a true positive. To reiterate, an event id 35 will be logged if the Kerberos ticket does not contain aPAC_ATTRIBUTES buffer, which is the current behavior with ti...Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices G-At-WorkI ran a test on a similar setup (hybrid join, federated domain) after 2 weeks of the Windows 10 device being offline, and I was able to log on using cached credentials using a FIDO 2 securi...Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices SaidulShakil, can you open a support ticket for this issue? Additional logs will need to be collected to identify root cause. If the 2016/2019 DCs and Win10/11 clients are all fully patched, I am ...Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices DaSven/SaschaSeipp, The Kerberos ticket from Azure AD does contain a PAC and a PAC_REQUESTOR buffer, but not aPAC_ATTRIBUTES buffer. Therefore, authentication will still succeed using FIDO2 sec...Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices Niels Klein, I haven't tested it myself, but yes, it is listed as released as part of the C release, and so should be inSeptember 20, 2022—KB5017380 (OS Builds 19042.2075, 19043.2075, and 19044.207...Re: How-to: Password-less FIDO2 Security Key Sign-in to Windows 10 HAADJ Devices -_RH_-/fb_jim, I completely understand... I have notified the teams internally and am trying to see if we can have this issue documented on a docs page.