locked
Getting "ADFS User Group" screen when ADFS 2.0 trunk hits inactivity timeout??? RRS feed

  • Question

  • Getting the

    >>>>>>>>>>>>>>>>>>>>

    ADFS User Group

    You have authenticated successfully using AD FS, but your user name or group cannot be located in a Forefront UAG Local Group

    >>>>>>>>>>>>>>>>>>>>

    This is an error and what should be showing up is the "You have been logged out" screen.

    The trunk is an AD FS 2.0 trunk working with a federated ID SSO Openam server.  The DNS name that the user connects to is a CNAME for the AD FS 2.0 trunk.  I didn't see any errors in the UAG Monitor or any of the event logs.  The user had been logged in and not active, just letting the screen set there until the inactivity timeout was reached and the UAG logged her out.

    Suggestions?

    Thanks,

    John

    Saturday, March 10, 2012 12:06 AM