Skip to main content
Question

Microsoft ADFS on mac

  • November 16, 2018
  • 12 replies
  • 70 views

Forum|alt.badge.img+10

Our infrastructure is using adfs but is not working on mac.
Anyone know How client settings should be on mac to get this working ?

12 replies

Forum|alt.badge.img+3
  • New Contributor
  • November 17, 2018

We use ADFS with both Windows, Mac and iOS clients, a very smooth system. What services are you using with ADFS?


Forum|alt.badge.img+1
  • New Contributor
  • November 17, 2018

If you AD-join the Mac and log in with AD-credentials the SSO with ADFS will work.


Forum|alt.badge.img+10
  • Author
  • Contributor
  • November 17, 2018

It is single sign on i am Hoping to get working on mac. They are joined ad, but running nomad


Forum|alt.badge.img+1
  • New Contributor
  • November 17, 2018

If you running NoMAD, I guess you are not AD-joined. Thats the whole point of the product, not to be bound to AD. Yes, I see problem with that too, I does not work properly. I hope JAMF will work it out with JAMF Connect in the future.


Forum|alt.badge.img+10
  • Author
  • Contributor
  • November 18, 2018

Sorry - there Should have been stranding NOT joined ad.
So without AD the adfs sso is not possible ?


Forum|alt.badge.img+1
  • New Contributor
  • November 19, 2018

ADFS is working fine but you will be prompted for login, no SSO


Forum|alt.badge.img+3
  • New Contributor
  • April 30, 2019

Have a problem with ADFS were an AD bound Mac the ADFS prompts for credentials in safari for office 365 will not accept the credentials. Chrome works fine. When the mac is unbound using a local account the ADFS credentials prompts are accepted within safari it's just when you bind to AD it appears to stop working.


Forum|alt.badge.img+15
  • Esteemed Contributor
  • April 30, 2019

Look into adding "Mozilla/5.0 (Macintosh" to your WIA Supported User Agents string in ADFS.

Example:

Set-ADFSProperties -WIASupportedUserAgents @("MSAuthHost/1.0/In-Domain", "MSIE 6.0", "MSIE 7.0", "MSIE 8.0", "MSIE 9.0", "MSIE 10.0", "Trident/7.0", "MSIPC", "Windows Rights Management Client", "MS_WorkFoldersClient", "Mozilla/5.0 (Macintosh", "Mozilla/5.0 (Windows NT")

Forum|alt.badge.img+3
  • New Contributor
  • June 17, 2019

Thank you will check, sorry for the delay am visiting this issue again and the strange thing with Centrify and NoMad Login this works fine with the SSO adfs sign on prompt. It only stops working when you AD bound the Mac with it's built in AD plugin with ADFS sso prompts.


Forum|alt.badge.img+3
  • New Contributor
  • June 17, 2019

Just checked, "Mozilla/5.0 (Macintosh" has already been added to the Agents string and Safari is still not playing ball with ADFS SSO prompts not accepting credententials, am reaching out for any other further possible solutions.


Forum|alt.badge.img+3
  • New Contributor
  • September 18, 2019


Forum|alt.badge.img+3
  • New Contributor
  • September 18, 2019

still no joy, any assistance be greatly received.