To set StrongAuthenticationMethods as the default using PowerShell, you can use the following command:
Set-ADFSRelyingPartyTrust -TargetName "RelyingPartyName" `
-ClaimsProviderName @("Active Directory") `
-AuthenticationMethod @("urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport") `
-AlternateAuthenticationMethods @("urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport","http://schemas.microsoft.com/ws/2008/06/identity/authenticationmethod/windows") `
-Enabled $true `
-SigningCertificateThumbprint "CertificateThumbprint" `
-EncryptionCertificateThumbprint "EncryptionCertificateThumbprint"
Replace "RelyingPartyName" with the name of the relying party trust you want to update, "CertificateThumbprint" with the thumbprint of the signing certificate specified in the relying party trust, and "EncryptionCertificateThumbprint" with the thumbprint of the encryption certificate specified in the relying party trust.
This command sets StrongAuthenticationMethods as the default authentication method for the relying party trust by specifying it as the first value in the AlternateAuthenticationMethods array. This ensures that users are prompted for MFA before falling back to other authentication methods.
Please start posting anonymously - your entry will be published after you log in or create a new account. This space is reserved only for answers. If you would like to engage in a discussion, please instead post a comment under the question or an answer that you would like to discuss
Asked: 2023-06-19 11:51:39 +0000
Seen: 11 times
Last updated: Jun 19 '23
What are the Cordapp Certificates used for in terms of signing and interacting?
How can SSL be used with CqlSessionFactoryBean in Springboot Cassandra?
How to set up Database First configuration in Entity Framework 7 for MVC 6?
How can I address the issue of Content Security Policy blocking more than I had anticipated?
How do I resolve a 502 error when attempting to call an HTTPS REST API from an HTTP REST API?
What does borrowing or moving a value from `stdout` mean?