AD FS Chaining Step-by-Step

Sunday, November 8, 2015

Hello everyone, Recently I managed to create a very interesting design of authentication flow for Office 365. *This configuration is not supported because of the limitations of passive Outlook and ActiveSync authentication mechanisms, but this will be resolved in the upcoming Modern Authentication for Office 365* Let’s say you have one domain name but two different forests and you sync the users to Office 365. In the case of Password Hash sync, you won’t have any problems managing this configuration. However, if you convert this domain (ex. to federated domain this means you will be connected to only one AD FS...
