Hi,
We have ADFS 4.0 deployed within a AD 2012 forest and we have to add a second forest ( without trust) to provide authentication for other category of users.
it's not possible to configure trust between forests .
We configured the second AD forest 2016 as a Local LDAP store, witha specific suffix. but we didn't able to authenticate users from this forest based on the following article:
https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/operations/configure-ad-fs-to-authenticate-users-stored-in-ldap-directories
But we receive an error when we use an account with upn suffixe from this domain.
are there other settings to force authentication form this second store?
Thanks
Lourh