none
ADFS 4.0 MFA - A selected authentication method is not available RRS feed

  • Question

  • Hi guys, 

    Recently a customer wanted from me to test ADFS with MFA with their on-prem WebSite. Immediately we decided to try Windows 2016 ADFS capabilities with Azure MFA. 

    So far so good . Authentication works and web site too. We are receiving MFA prompt and user can use authenticate to the system.

    The problem is this . Lets have for example User called admin.xxx

    What is the process for enabling MFA on that user : Another admin is logging in Azure portal and enables two factor auth  to the admin.xxx

    Admin.xxx does not receive a notification , so he tries to login into the web app. He types https://app.domain.com and the ADFS is starting to handle the MFA process

    But the user receives this error (picture bellows)

    The next step is to open "portal.azure.com" or some other MS public website and enables his account for two-factor authentication. Is there any way to achieve this in the ADFS landing page like the old "Multi-Factor Authentication server" ?

    Wednesday, March 15, 2017 12:04 PM

All replies

  • I am also facing same error ?

    Is it resolved ? Can you please share your findings ?

    Monday, July 15, 2019 12:43 PM
  • You need to "proof-up" -

    https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/operations/configure-ad-fs-and-azure-mfa#registering-users-for-azure-mfa-with-ad-fs

    In terms of the ADFS page - yes you can -

    https://docs.microsoft.com/en-us/windows-server/identity/ad-fs/operations/configure-ad-fs-and-azure-mfa#customize-the-ad-fs-web-page-to-guide-users-to-register-mfa-verification-methods

    Monday, July 15, 2019 9:58 PM
    Moderator
  • In my case , Alternate ID was issue.

    ADFS MFA adapter does not work with alternate login ID, and I was doing a test the only working case if we have the UPN in the cloud equal to alternate login ID which in your case “mail”

    Friday, July 19, 2019 1:24 PM